首页> 外文会议>International Conference on Distributed Computing Systems >Implementation and Performance Study of a New NAT/Firewall Signaling Protocol
【24h】

Implementation and Performance Study of a New NAT/Firewall Signaling Protocol

机译:新NAT /防火墙信令协议的实施与绩效研究

获取原文

摘要

The NAT/Firewall NSIS Signaling Layer Protocol (NAT/Firewall NSLP) is a path-coupled signaling protocol for explicit Network Address Translator and firewall configuration within an extensible IP signaling framework currently being developed by the IETF Next Steps in Signaling (NSIS) working group. This new protocol allows end hosts to signal along a path to configure NATs and firewalls according to the data flow needs. In this paper we present a first open source implementation and performance evaluation of NAT/Firewall NSLP. The performance study shows that our implementation scales well and is able to support firewall signaling for up to tens of thousands of flows in parallel even in a low-end PC testbed environment. The overall performance bottleneck is found to lie in the utilized firewall implementation, not depending on the NAT/Firewall NSLP implementation.
机译:NAT /防火墙NSIS信令层协议(NAT /防火墙NSLP)是用于明确的网络地址转换器和防火墙配置的路径耦合的信令协议,以及当前正在由信号(NSIS)工作组中的IETF下一步的可扩展IP信令框架内的可扩展IP信令框架内。此新协议允许沿着路径向结束主机根据数据流需求配置NAT和防火墙。在本文中,我们提供了NAT /防火墙NSLP的第一个开源实现和性能评估。性能研究表明,即使在低端PC测试平环境中,我们的实现良好地展示了良好的尺度,并且能够支持最多数千个流量的防火墙信号。发现整体性能瓶颈位于利用的防火墙实现中,而不是根据NAT /防火墙NSLP实现。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号