首页> 外文期刊>International journal of communication systems >Stateful firewall-enabled software-defined network with distributed controllers: A network performance study
【24h】

Stateful firewall-enabled software-defined network with distributed controllers: A network performance study

机译:具有状态的启用防火墙的软件定义网络和分布式控制器:网络性能研究

获取原文
获取原文并翻译 | 示例
       

摘要

Software-defined network (SDN) is constructed by decoupling the control and data plane from the forwarding devices. The control plane operations are managed by centralized or distributed controllers, and the data plane operation is managed by respective forwarding devices. SDN provides an easy and efficient management solutions for software-programmed consolidated middlebox in virtual machines. Additionally, SDN with centralized controller faces complications like scalability, network bottle neck, and single point failure. In this study, a stateful inspection firewall acts as a middlebox in distributed SDN-controlled network. The controller is programmed with a failure detection and recovery mechanism to provide reliability and redundancy and enhance the overall performance of the network. The objective of stateful firewall on SDN architecture is to secure the network by monitoring the current connections and maintain its state information until the connection is active. In this paper, the performance of firewall-enabled SDN with centralized and distributed controllers are measured, compared, and analyzed. The experiments are done using POX controller, and the results are verified by Mininet network emulation tool. The results show that the stateful firewall-enabled SDN with distributed controller network improves the security, reliability, availability, and overall performance of the network. In the proposed SDN, average network throughput is improved by 43%, average network delay is reduced by 4%, average channel utilization is increased by 40%, average network overhead is reduced by 26%, and average network response time is reduced by 23%.
机译:通过将控制平面和数据平面与转发设备分离,可以构建软件定义网络(SDN)。控制平面操作由集中式或分布式控制器管理,数据平面操作由相应的转发设备管理。 SDN为虚拟机中的软件编程的整合中间盒提供了简单高效的管理解决方案。此外,具有集中控制器的SDN面临可扩展性,网络瓶颈和单点故障等复杂问题。在本研究中,状态检查防火墙充当分布式SDN控制的网络中的中间盒。该控制器采用故障检测和恢复机制进行编程,以提供可靠性和冗余性,并增强网络的整体性能。 SDN架构上的状态防火墙的目的是通过监视当前连接并保持其状态信息直到连接处于活动状态来保护网络安全。在本文中,对具有集中式和分布式控制器的启用防火墙的SDN的性能进行了测量,比较和分析。实验使用POX控制器完成,并通过Mininet网络仿真工具验证了结果。结果表明,具有状态的启用了防火墙的SDN与分布式控制器网络可以提高网络的安全性,可靠性,可用性和整体性能。在拟议的SDN中,平均网络吞吐量提高了43%,平均网络延迟减少了4%,平均信道利用率提高了40%,平均网络开销减少了26%,平均网络响应时间减少了23 %。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号