Systems and Means of Informatics
2018, Volume 28, Issue 1, pp 123-138
SDN LOAD BALANCING FOR SECURE NETWORKS
- O. Yu. Guzev
- I. V. Chizhov
Abstract
The software-defined networking (SDN) technology in comparison with traditional IP networks allows programming the network's behavior using a centralized controller. In this case, forwarding devices deal only with forwarding frames based on flow tables loaded into them by the controller. Flow tables are built on the controller during the processing of information about traffic flows arriving at forwarding devices. The above properties of the technology were used to create the SDN load balancer for devices of secure networks. The article discusses the architecture and software of the balancer. Descriptions of schemes and results of experiments on load balancing for such devices as L3-VPN (Level 3 Virtual Private Network) gateway, TLS (Transport Layer Security) gateway, and IDS (Intrusion Detection System) are given.
[+] References (9)
- Feamster, N., and H. Balakrishnan. 2005. Detecting BGP configuration faults with static analysis. 2nd Conference on Symposium on Networked Systems Design and Implementation Proceedings. 2:43-56.
- Sherry, J., and S. Ratnasamy. 2012. A survey of enterprise middlebox deployments: Berkeley, CA: Univ. California, Electr. Eng. Comput. Sci. Dept. Technical Report UCB/EECS-2012-24.
- Kim, H., and N. Feamster. 2013. Improving network management with software defined networking. IEEE Commun. Mag. 51 (2): 114-119.
- Kreutz, D., F. M. V. Ramos, P. Verissimo, C. E. Rothenberg, S. Azodolmolky, and
S. Uhlig. 2015. Software-defined networking: A comprehensive survey. P. IEEE 103(1): 14-76.
- Nazarov, M. A. 2015. Opredelenie, osnovnye ponyatiya i arkhitektury programmno- konfiguriruemykh setey - SDN (Software Defined Networking) [Determination, the basic concepts, and architecture of the program defined networks]. Informatizatsiya
i svyaz' [Informatization and Communication] 4:82-87.
- Greene, K. 2009. TR10: Software-defined networking. 10 Breakthrough Technologies: MIT Technology Review. Available at: http://www2.technologyreview.com/ article/412194/tr10-software-defined-networking (accessed February 24, 2018).
- Erickson, D. 2013. The Beacon OpenFlow controller. 2nd ACM SIGCOMM Workshop on Hot Topics in Software Defined Networking Proceedings. 13-18.
- Shalimov, A., D. Zuikov, D. Zimarina, V. Pashkov, and R. Smeliansky. 2013. Advanced study of SDN/OpenFlow controllers. 9th Central & Eastern European Software Engineering Conference in Russia Proceedings. Article No. 1. Availableat: https://www.researchgate.net/publication/262155093_Advanced_ study_of_SDNOpenFlow_controllers/overview (accessed February 24, 2018).
- Infotecs. Produkty [Products]. Available at: http://infotecs.ru/product/all/?line= vipnet-network-security (accessed February 24, 2018).
[+] About this article
Title
SDN LOAD BALANCING FOR SECURE NETWORKS
Journal
Systems and Means of Informatics
Volume 28, Issue 1, pp 123-138
Cover Date
2018-03-30
DOI
10.14357/08696527180110
Print ISSN
0869-6527
Publisher
Institute of Informatics Problems, Russian Academy of Sciences
Additional Links
Key words
software-defined networking (SDN); controller; OpenFlow; VPN gateway; TLS; intrusion detection system; IDS; load balancing; DPDK; Open vSwitch; Beacon
Authors
O. Yu. Guzev and I. V. Chizhov ,
Author Affiliations
Research and Development Center, JSC "InfoTeCS," 1/23, b. 1 Staryy Petrovsko-Razumovskiy Pr., Moscow 127287, Russian Federation
Faculty of Computational Mathematics and Cybernetics, M. V. Lomonosov Moscow State University, 2nd Education Building, Faculty CMC, GSP-1, Leninskie Gory, Moscow 119991, Russian Federation
Institute of Informatics Problems, Federal Research Center "Computer Science and Control", Russian Academy of Sciences, 44-2 Vavilov Str., Moscow 119333, Russian Federation
|