首页> 外文会议>IFIP/IEEE Symposium on Integrated Network and Service Management >Highlighting the Gap Between Expected and Actual Behavior in P4-enabled Networks
【24h】

Highlighting the Gap Between Expected and Actual Behavior in P4-enabled Networks

机译:突出显示P4支持网络中的预期和实际行为之间的差距

获取原文

摘要

Modern networks increasingly rely on Software-defined Networking (SDN) and Network Function Virtualization (NFV) to augment their flexibility in high load scenarios. To further enhance the performance, a part of the functionality is often offloaded to forwarding devices, which are used as hardware accelerators and are configured by high level programming languages such as P4. However, hardware vendors use sophisticated technologies to implement these standards, which need to be understood by the programmer to avoid unintended behavior. In this demonstration we highlight the severe consequences of only relying on the network programming language when ignoring the device-specific limitations. We show this by the example of a Denial of Service attack against a P4-enabled SmartNIC. Finally, we discuss possible mitigations to this attack and stress the importance of an overall understanding of the entire system.
机译:现代网络越来越依赖于软件定义的网络(SDN)和网络功能虚拟化(NFV),以增加其在高负载方案中的灵活性。为了进一步增强性能,一部分功能通常卸载到转发设备,该设备被用作硬件加速器,并由高级编程语言(如P4)配置。然而,硬件供应商使用复杂的技术来实现这些标准,该标准需要由程序员理解,以避免意外行为。在这示范中,我们在忽略设备特定限制时突出仅依赖网络编程语言的严重后果。我们通过针对支持P4的Smartnic拒绝服务攻击的示例来展示这一点。最后,我们讨论可能的缓解,并强调整体理解整个系统的重要性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号