首页> 外文期刊>IEEE Journal on Selected Areas in Communications >BigMaC: Reactive Network-Wide Policy Caching for SDN Policy Enforcement
【24h】

BigMaC: Reactive Network-Wide Policy Caching for SDN Policy Enforcement

机译:BigMaC:响应式网络范围的策略缓存,用于SDN策略执行

获取原文
获取原文并翻译 | 示例
           

摘要

Enforcing network policies is critical for service deployments over software-defined networks (SDN). Most existing studies suggest proactively compiling policies into flow entries in the data plane and updating the installed entries when necessary. With a growing amount of applications, taking a proactive approach may overflow underlying switch memory. Meanwhile, certain policies can be frequently updated. Such updates may propagate across configurations in the network, leading to a long time for correctness validation. To improve both the scalability and the flexibility of SDN policy enforcement, we advocate reactively deploying network policies in the data plane. To this end, we propose a network-wide policy enforcement framework named BigMaC. BigMaC advertises a neat policy model for network managers to specify various network policies as rules. It then caches the rules as flow entries in the switches reactively on demand. One major challenge for the BigMaC design is to guarantee the consistency of defined policies and cached entries in the network. To maintain consistency with efficient table usage and simple updates, we group rules into buckets and perform rule caching in the unit of buckets. With trace-driven simulations, we verify that BigMaC can significantly save table space and reduce update complexity compared to prior proposals.
机译:实施网络策略对于通过软件定义的网络(SDN)进行服务部署至关重要。大多数现有研究建议将策略主动编译到数据平面中的流条目中,并在必要时更新已安装的条目。随着应用程序数量的增加,采取主动的方法可能会使底层的开关内存溢出。同时,某些策略可以经常更新。此类更新可能会在网络中的配置之间传播,从而导致长时间进行正确性验证。为了提高SDN策略执行的可伸缩性和灵活性,我们主张在数据平面中反应性地部署网络策略。为此,我们提出了一个名为BigMaC的全网络策略实施框架。 BigMaC宣传一种简洁的策略模型,供网络管理员将各种网络策略指定为规则。然后,它根据需要将规则作为流条目缓存在交换机中。 BigMaC设计的主要挑战是如何保证网络中已定义策略和缓存条目的一致性。为了保持表使用效率和简单更新的一致性,我们将规则分组到存储桶中,并以存储桶为单位执行规则缓存。通过跟踪驱动的仿真,我们证实与以前的建议相比,BigMaC可以大大节省表空间并减少更新的复杂性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号