{"title":"Extending the Network Service Descriptor to Capture User Isolation Intents for Network Slices","authors":"Nour Gritli, F. Khendek, M. Toeroe","doi":"10.1109/FNWF55208.2022.00066","DOIUrl":null,"url":null,"abstract":"The network slicing paradigm allows for partitioning a common network infrastructure into logical networks, i.e. network slices, tailored to specific user intents, including intents for isolation, security or performance reasons. A user may require isolation at different scopes: for the entire network slice, for the network slice subnets or for its composing network functions. Considering the relation between network slicing and Network Function Virtualization (NFV), the intents for isolation need to be mapped to and reflected in the descriptor(s) of network service(s) supporting the network slice(s). However, the network service descriptor (NSD) as defined today cannot capture all the network slice isolation requirements to be enforced during instantiation and at runtime. To overcome some of these limitations we propose extensions to the NSD based on our mapping of different isolation intents of the user to the NSD. We also show how to process the NSD extensions at instantiation and at runtime.","PeriodicalId":300165,"journal":{"name":"2022 IEEE Future Networks World Forum (FNWF)","volume":"99 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2022-10-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"1","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2022 IEEE Future Networks World Forum (FNWF)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/FNWF55208.2022.00066","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 1
Abstract
The network slicing paradigm allows for partitioning a common network infrastructure into logical networks, i.e. network slices, tailored to specific user intents, including intents for isolation, security or performance reasons. A user may require isolation at different scopes: for the entire network slice, for the network slice subnets or for its composing network functions. Considering the relation between network slicing and Network Function Virtualization (NFV), the intents for isolation need to be mapped to and reflected in the descriptor(s) of network service(s) supporting the network slice(s). However, the network service descriptor (NSD) as defined today cannot capture all the network slice isolation requirements to be enforced during instantiation and at runtime. To overcome some of these limitations we propose extensions to the NSD based on our mapping of different isolation intents of the user to the NSD. We also show how to process the NSD extensions at instantiation and at runtime.
网络切片范式允许将公共网络基础设施划分为逻辑网络,即网络切片,根据特定的用户意图进行定制,包括出于隔离、安全或性能原因的意图。用户可能需要在不同的范围内进行隔离:对整个网络切片、对网络切片子网或对其组成网络功能进行隔离。考虑到网络切片和NFV (network Function Virtualization)之间的关系,隔离的意图需要映射到支持网络切片的网络服务的描述符中,并反映在描述符中。然而,目前定义的网络服务描述符(NSD)不能捕获在实例化和运行时实施的所有网络片隔离需求。为了克服其中的一些限制,我们根据用户到NSD的不同隔离意图的映射,提出了对NSD的扩展。我们还将展示如何在实例化和运行时处理NSD扩展。