首页 > 最新文献

2013 IEEE 2nd International Conference on Cloud Networking (CloudNet)最新文献

英文 中文
Virtual network embedding with collocation: Benefits and limitations of pre-clustering 带配置的虚拟网络嵌入:预聚类的优点与局限性
Pub Date : 2013-11-01 DOI: 10.1109/CloudNet.2013.6710562
Carlo Fuerst, S. Schmid, A. Feldmann
Given that mechanisms for resource isolation are in place, the collocation of virtual network (VNet) nodes is attractive as it reduces the inter-machine communication and hence improves the VNet embedding. However, existing VNet embedding algorithms either do not support the collocation of virtual nodes of the same VNet, or only support it implicitly by referring to the possibility to pre-cluster the VNet topology: this pre-clustered network forms the new VNet request and is embedded accordingly. This paper presents a pre-clustering algorithm OPTCUT that is optimal in the sense that it minimizes the amount of link resources needed for the embedding. It is based on a smart linear program formulation that ensures fast solutions. OPTCUT can be used together with any existing VNet embedding algorithms, and we show that it can greatly improve the state-of-the-art embedding algorithm SecondNet [16]. The paper also describes a simple algorithm LoCo that directly supports collocation. This algorithm is part of a novel and generic VNet embedding framework METATREE which may be of independent interest. We compare the performance of the pre-clustering approaches with the direct VNet embeddings by LoCo, and find that preclustering also has its limitations. In particular, the information gap between the pre-clustering and the actual algorithm, as well as an inaccurate estimation of the distribution of remaining substrate resources, may lead to a low network utilization.
考虑到资源隔离机制的存在,虚拟网络(VNet)节点的配置是有吸引力的,因为它减少了机器间的通信,从而改善了VNet嵌入。然而,现有的VNet嵌入算法要么不支持同一VNet的虚拟节点的并置,要么仅通过参考对VNet拓扑进行预聚类的可能性来隐式地支持,这种预聚类网络形成新的VNet请求并相应地嵌入。本文提出了一种预聚类算法OPTCUT,它是最优的,因为它最小化了嵌入所需的链接资源量。它是基于一个智能的线性程序公式,确保快速解决方案。OPTCUT可以与任何现有的VNet嵌入算法一起使用,并且我们表明它可以大大改进最先进的嵌入算法SecondNet[16]。本文还介绍了一种直接支持并置的简单算法LoCo。该算法是一个新颖的通用VNet嵌入框架METATREE的一部分,它可能是一个独立的兴趣。我们将预聚类方法的性能与通过LoCo直接嵌入VNet的方法进行了比较,发现预聚类也有其局限性。特别是,预聚类与实际算法之间的信息差距,以及对剩余底层资源分布的不准确估计,可能导致网络利用率低。
{"title":"Virtual network embedding with collocation: Benefits and limitations of pre-clustering","authors":"Carlo Fuerst, S. Schmid, A. Feldmann","doi":"10.1109/CloudNet.2013.6710562","DOIUrl":"https://doi.org/10.1109/CloudNet.2013.6710562","url":null,"abstract":"Given that mechanisms for resource isolation are in place, the collocation of virtual network (VNet) nodes is attractive as it reduces the inter-machine communication and hence improves the VNet embedding. However, existing VNet embedding algorithms either do not support the collocation of virtual nodes of the same VNet, or only support it implicitly by referring to the possibility to pre-cluster the VNet topology: this pre-clustered network forms the new VNet request and is embedded accordingly. This paper presents a pre-clustering algorithm OPTCUT that is optimal in the sense that it minimizes the amount of link resources needed for the embedding. It is based on a smart linear program formulation that ensures fast solutions. OPTCUT can be used together with any existing VNet embedding algorithms, and we show that it can greatly improve the state-of-the-art embedding algorithm SecondNet [16]. The paper also describes a simple algorithm LoCo that directly supports collocation. This algorithm is part of a novel and generic VNet embedding framework METATREE which may be of independent interest. We compare the performance of the pre-clustering approaches with the direct VNet embeddings by LoCo, and find that preclustering also has its limitations. In particular, the information gap between the pre-clustering and the actual algorithm, as well as an inaccurate estimation of the distribution of remaining substrate resources, may lead to a low network utilization.","PeriodicalId":262262,"journal":{"name":"2013 IEEE 2nd International Conference on Cloud Networking (CloudNet)","volume":"1 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2013-11-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"130949739","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 25
Towards software defined ICN based edge-cloud services 迈向基于软件定义ICN的边缘云服务
Pub Date : 2013-11-01 DOI: 10.1109/CloudNet.2013.6710583
R. Ravindran, Xuan Liu, A. Chakraborti, Xinwen Zhang, Guoqiang Wang
ICN deployment will be based on the grounds of saving CAPEX/OPEX and/or enabling new services. This paper makes a case for the latter leveraging, emerging technologies such as network function virtualization (NFV) and software defined networking (SDN). We propose a framework to enable ICN based service platform as virtualized network functions to enable several edge-cloud services such as enterprise applications, big data analytic, or M2M/IoT services. This platform is generic to support several ICN protocols and corresponding real-time and non-real time services leveraging ICN features such as name based routing, caching, multicasting, and flexible security techniques. As an implementation of this architecture, we discuss how a scalable network based conferencing solution can be realized over the proposed ICN platform and compare it with a peer-to-peer design through a performance analysis.
ICN的部署将基于节省CAPEX/OPEX和/或启用新服务的理由。本文为后者提供了一个案例,利用新兴技术,如网络功能虚拟化(NFV)和软件定义网络(SDN)。我们提出了一个框架,使基于ICN的服务平台成为虚拟化网络功能,以实现多种边缘云服务,如企业应用、大数据分析或M2M/IoT服务。该平台是通用的,可以支持多种ICN协议和相应的实时和非实时服务,利用ICN特性,如基于名称的路由、缓存、多播和灵活的安全技术。作为该体系结构的实现,我们讨论了如何在提议的ICN平台上实现可扩展的基于网络的会议解决方案,并通过性能分析将其与点对点设计进行比较。
{"title":"Towards software defined ICN based edge-cloud services","authors":"R. Ravindran, Xuan Liu, A. Chakraborti, Xinwen Zhang, Guoqiang Wang","doi":"10.1109/CloudNet.2013.6710583","DOIUrl":"https://doi.org/10.1109/CloudNet.2013.6710583","url":null,"abstract":"ICN deployment will be based on the grounds of saving CAPEX/OPEX and/or enabling new services. This paper makes a case for the latter leveraging, emerging technologies such as network function virtualization (NFV) and software defined networking (SDN). We propose a framework to enable ICN based service platform as virtualized network functions to enable several edge-cloud services such as enterprise applications, big data analytic, or M2M/IoT services. This platform is generic to support several ICN protocols and corresponding real-time and non-real time services leveraging ICN features such as name based routing, caching, multicasting, and flexible security techniques. As an implementation of this architecture, we discuss how a scalable network based conferencing solution can be realized over the proposed ICN platform and compare it with a peer-to-peer design through a performance analysis.","PeriodicalId":262262,"journal":{"name":"2013 IEEE 2nd International Conference on Cloud Networking (CloudNet)","volume":"1 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2013-11-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"128499401","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 60
Performance vs cost for windows and linux platforms in Windows Azure cloud windows Azure云中windows和linux平台的性能与成本
Pub Date : 2013-11-01 DOI: 10.1109/CloudNet.2013.6710581
S. Ristov, M. Gusev
The cloud resources can be efficiently utilized using different parallelization methods and techniques. However, most of them depend on the operating system and its runtime environment. In this paper we perform series of experiments to analyze the performance of dense matrix-matrix multiplication algorithm on the same hardware infrastructure using parallel threads on different platforms in Windows Azure, i.e., different operating systems and runtime environments. Contrary to the hypothesis that Linux platform provides better performance, the results of the experiments show that Windows platform runs up to 3.01 times better, especially for problem size that can be placed in last level cache and will not generate a lot of cache misses. We also determine the regions where a particular operating system is a better solution if cost or performance are considered.
使用不同的并行化方法和技术可以有效地利用云资源。但是,它们中的大多数依赖于操作系统及其运行时环境。本文在Windows Azure的不同平台(即不同的操作系统和运行时环境)上使用并行线程,通过一系列实验来分析密集矩阵-矩阵乘法算法在相同硬件基础设施上的性能。与Linux平台提供更好的性能的假设相反,实验结果表明,Windows平台的运行性能提高了3.01倍,特别是对于可以放在最后一级缓存中并且不会产生大量缓存丢失的问题大小。如果考虑到成本或性能,我们还会确定特定操作系统在哪些区域是更好的解决方案。
{"title":"Performance vs cost for windows and linux platforms in Windows Azure cloud","authors":"S. Ristov, M. Gusev","doi":"10.1109/CloudNet.2013.6710581","DOIUrl":"https://doi.org/10.1109/CloudNet.2013.6710581","url":null,"abstract":"The cloud resources can be efficiently utilized using different parallelization methods and techniques. However, most of them depend on the operating system and its runtime environment. In this paper we perform series of experiments to analyze the performance of dense matrix-matrix multiplication algorithm on the same hardware infrastructure using parallel threads on different platforms in Windows Azure, i.e., different operating systems and runtime environments. Contrary to the hypothesis that Linux platform provides better performance, the results of the experiments show that Windows platform runs up to 3.01 times better, especially for problem size that can be placed in last level cache and will not generate a lot of cache misses. We also determine the regions where a particular operating system is a better solution if cost or performance are considered.","PeriodicalId":262262,"journal":{"name":"2013 IEEE 2nd International Conference on Cloud Networking (CloudNet)","volume":"4 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2013-11-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"117341556","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 9
Autonomic scaling of Cloud Computing resources using BN-based prediction models 使用基于bn的预测模型的云计算资源的自主缩放
Pub Date : 2013-11-01 DOI: 10.1109/CloudNet.2013.6710578
A. Bashar
The recent surge in the popularity and usage of Cloud Computing services by both the enterprise and individual consumers has necessitated efficient and proactive management of data center resources which host services having varied characteristics. One of the major issues concerning both the cloud service providers and consumers is the automatic scalability of resources (i.e., compute, storage and bandwidth) in response to the highly unpredictable demands. To this end, an opportunity exists to harness the predictive and diagnostic capabilities of machine learning approaches to incorporate dynamic scaling up and scaling down of resources without violating the Service Level Agreements (SLA) and simultaneously ensuring adequate revenue to the providers. This paper proposes, implements and evaluates a Bayesian Networks based predictive modeling framework to provide for an autonomic scaling of utility computing resources in the Cloud Computing scenario. In essence, the BN-based model captures the historical behavior of the system involving various performance metrics (indicators) and predicts the desired unknown metric (e.g. SLA parameter). Initial simulated experiments involving random demand scenarios provide insights into the feasibility and applicability of the proposed approach for improving the management of present data center facilities.
最近云计算服务在企业和个人消费者中的普及和使用激增,因此需要对数据中心资源进行有效和主动的管理,这些数据中心资源托管具有各种特征的服务。涉及云服务提供商和消费者的主要问题之一是资源(即计算、存储和带宽)的自动可伸缩性,以响应高度不可预测的需求。为此,有机会利用机器学习方法的预测和诊断能力,在不违反服务水平协议(SLA)的情况下,将资源的动态扩展和缩小纳入其中,同时确保提供商获得足够的收入。本文提出、实现并评估了一个基于贝叶斯网络的预测建模框架,以提供云计算场景中效用计算资源的自主扩展。本质上,基于bn的模型捕获涉及各种性能度量(指标)的系统的历史行为,并预测所需的未知度量(例如SLA参数)。涉及随机需求情景的初步模拟实验提供了对改进现有数据中心设施管理的拟议方法的可行性和适用性的见解。
{"title":"Autonomic scaling of Cloud Computing resources using BN-based prediction models","authors":"A. Bashar","doi":"10.1109/CloudNet.2013.6710578","DOIUrl":"https://doi.org/10.1109/CloudNet.2013.6710578","url":null,"abstract":"The recent surge in the popularity and usage of Cloud Computing services by both the enterprise and individual consumers has necessitated efficient and proactive management of data center resources which host services having varied characteristics. One of the major issues concerning both the cloud service providers and consumers is the automatic scalability of resources (i.e., compute, storage and bandwidth) in response to the highly unpredictable demands. To this end, an opportunity exists to harness the predictive and diagnostic capabilities of machine learning approaches to incorporate dynamic scaling up and scaling down of resources without violating the Service Level Agreements (SLA) and simultaneously ensuring adequate revenue to the providers. This paper proposes, implements and evaluates a Bayesian Networks based predictive modeling framework to provide for an autonomic scaling of utility computing resources in the Cloud Computing scenario. In essence, the BN-based model captures the historical behavior of the system involving various performance metrics (indicators) and predicts the desired unknown metric (e.g. SLA parameter). Initial simulated experiments involving random demand scenarios provide insights into the feasibility and applicability of the proposed approach for improving the management of present data center facilities.","PeriodicalId":262262,"journal":{"name":"2013 IEEE 2nd International Conference on Cloud Networking (CloudNet)","volume":"36 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2013-11-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"114577765","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 38
Classification of applications in HTTP tunnels HTTP隧道中的应用分类
Pub Date : 2013-11-01 DOI: 10.1109/CloudNet.2013.6710559
Gajen Piraisoody, Changcheng Huang, B. Nandy, N. Seddigh
Accurate traffic classification is an essential element of emergent cloud and datacenter architectures. Increasingly, however, different types of application traffic from the cloud are tunnelled over HTTP, thereby making accurate classification a challenge. Applications tunnelled over HTTP are wide in scope and diverse in nature, and include mapping, email, video, image, audio and file. This paper presents a novel approach for the accurate and effective classification of the dominant types of HTTP tunnelled applications, namely video, audio and file-transfer. The classification is carried out using information that is only available from flow-based protocols such as NetFlow v5. The proposed scheme is tested on live data traffic in a small enterprise network with a realistic mixture of regular HTTP and non-HTTP traffic. Outsourcing enterprise networks to cloud is a major cloud application. For the scenarios tested, the proposed algorithm accurately classifies at least 70% of the HTTP tunnelled traffic, and in some cases, up to 90%. In comparison to the results from approaches based on NaiveBayes algorithm and Support-Vector-Machine, the proposed scheme outperforms them by at least 10% as per performance measures.
准确的流量分类是新兴云和数据中心架构的基本要素。然而,来自云的不同类型的应用程序流量越来越多地通过HTTP进行隧道传输,从而使准确分类成为一项挑战。在HTTP上建立隧道的应用程序范围广泛,性质多样,包括映射、电子邮件、视频、图像、音频和文件。本文提出了一种新的方法来准确有效地对主要类型的HTTP隧道应用进行分类,即视频、音频和文件传输。分类使用的信息只能从基于流的协议(如NetFlow v5)中获得。该方案在一个小型企业网络的实时数据流量中进行了测试,该网络实际混合了常规HTTP和非HTTP流量。将企业网络外包到云端是一种主要的云应用。在测试的场景中,所提出的算法可以准确地对至少70%的HTTP隧道流量进行分类,在某些情况下可以达到90%。与基于NaiveBayes算法和Support-Vector-Machine的方法的结果相比,根据性能度量,该方案的性能优于它们至少10%。
{"title":"Classification of applications in HTTP tunnels","authors":"Gajen Piraisoody, Changcheng Huang, B. Nandy, N. Seddigh","doi":"10.1109/CloudNet.2013.6710559","DOIUrl":"https://doi.org/10.1109/CloudNet.2013.6710559","url":null,"abstract":"Accurate traffic classification is an essential element of emergent cloud and datacenter architectures. Increasingly, however, different types of application traffic from the cloud are tunnelled over HTTP, thereby making accurate classification a challenge. Applications tunnelled over HTTP are wide in scope and diverse in nature, and include mapping, email, video, image, audio and file. This paper presents a novel approach for the accurate and effective classification of the dominant types of HTTP tunnelled applications, namely video, audio and file-transfer. The classification is carried out using information that is only available from flow-based protocols such as NetFlow v5. The proposed scheme is tested on live data traffic in a small enterprise network with a realistic mixture of regular HTTP and non-HTTP traffic. Outsourcing enterprise networks to cloud is a major cloud application. For the scenarios tested, the proposed algorithm accurately classifies at least 70% of the HTTP tunnelled traffic, and in some cases, up to 90%. In comparison to the results from approaches based on NaiveBayes algorithm and Support-Vector-Machine, the proposed scheme outperforms them by at least 10% as per performance measures.","PeriodicalId":262262,"journal":{"name":"2013 IEEE 2nd International Conference on Cloud Networking (CloudNet)","volume":"80 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2013-11-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"122396459","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 6
Vulnerability evaluation for securely offloading mobile apps in the cloud 安全卸载云端移动应用的漏洞评估
Pub Date : 2013-11-01 DOI: 10.1109/CloudNet.2013.6710564
He Zhu, Changcheng Huang, James Yan
The increasing complexity and explosive growth of smartphone applications, together with the more prevalent use of cloud computing, have inspired strong motivation for offloading computation of mobile apps to the cloud. However, there exist vulnerabilities in apps if they are offloaded in public cloud environment. In this paper, we argue that keeping sensitive information to a local device with other information offloaded would significantly reduce threats from the cloud while enjoy the benefits of cloud computing. Our mechanism divides an app into multiple parts and offloads the less vulnerable parts. To decide which parts should be kept locally to a mobile device, we develop an approach that can decide the impact of a component part (down to an individual object) on the overall vulnerability of an app. We demonstrate how our approach can be implemented with real mobile cloud applications.
智能手机应用程序的日益复杂和爆炸性增长,加上云计算的更普遍使用,激发了将移动应用程序的计算卸载到云上的强烈动机。但是,如果应用程序在公有云环境下卸载,则存在漏洞。在本文中,我们认为将敏感信息保存在本地设备上,并卸载其他信息将大大减少来自云的威胁,同时享受云计算的好处。我们的机制将应用分成多个部分,并卸载不那么脆弱的部分。为了决定哪些部分应该保留在移动设备上,我们开发了一种方法,可以决定组件部分(到单个对象)对应用程序整体漏洞的影响。我们演示了如何使用真实的移动云应用程序实现我们的方法。
{"title":"Vulnerability evaluation for securely offloading mobile apps in the cloud","authors":"He Zhu, Changcheng Huang, James Yan","doi":"10.1109/CloudNet.2013.6710564","DOIUrl":"https://doi.org/10.1109/CloudNet.2013.6710564","url":null,"abstract":"The increasing complexity and explosive growth of smartphone applications, together with the more prevalent use of cloud computing, have inspired strong motivation for offloading computation of mobile apps to the cloud. However, there exist vulnerabilities in apps if they are offloaded in public cloud environment. In this paper, we argue that keeping sensitive information to a local device with other information offloaded would significantly reduce threats from the cloud while enjoy the benefits of cloud computing. Our mechanism divides an app into multiple parts and offloads the less vulnerable parts. To decide which parts should be kept locally to a mobile device, we develop an approach that can decide the impact of a component part (down to an individual object) on the overall vulnerability of an app. We demonstrate how our approach can be implemented with real mobile cloud applications.","PeriodicalId":262262,"journal":{"name":"2013 IEEE 2nd International Conference on Cloud Networking (CloudNet)","volume":"43 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2013-11-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"129941388","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 8
A Software defined Cloud-Gateway automation system using OpenFlow 一个使用OpenFlow的软件定义云网关自动化系统
Pub Date : 2013-11-01 DOI: 10.1109/CloudNet.2013.6710582
S. Natarajan, A. Ramaiah, Mayan Mathen
The notion of programming the forwarding device using an open protocol is a key feature of Software-defined Networks (SDN). This improves network visibility and control thereby reducing vendor dependency. OpenFlow protocol provides a standardized approach to realize these goals of SDN. In this paper, we illustrate our progress with a Software-defined Cloud-Gateway automation system using OpenFlow. In addition, based on our deployment experience, we highlight two technical challenges when using OpenFlow. First, with the standardization being an evolving effort, we highlight some of the programming challenges and missing features within the OpenFlow protocol. Secondly, existing OpenFlow-based network stack lacks some architectural components that reduces the level of flexibility we achieve when programming the network. Most SDN controllers expose limited abstractions to build network applications thereby primarily functioning as an OpenFlow driver. This imposes an application programmer to work with several OpenFlow primitives. To address this problem, we elaborate our current work in extending the SDN stack to improve our overall network programmability experience.
使用开放协议对转发设备进行编程的概念是软件定义网络(SDN)的一个关键特征。这提高了网络可见性和控制,从而减少了对供应商的依赖。OpenFlow协议为实现SDN的这些目标提供了一种标准化的方法。在本文中,我们通过使用OpenFlow的软件定义云网关自动化系统说明了我们的进展。此外,根据我们的部署经验,我们强调了使用OpenFlow时的两个技术挑战。首先,随着标准化的不断发展,我们重点介绍了OpenFlow协议中存在的一些编程挑战和缺失的特性。其次,现有的基于openflow的网络堆栈缺乏一些架构组件,这降低了我们在网络编程时实现的灵活性。大多数SDN控制器暴露有限的抽象来构建网络应用程序,因此主要充当OpenFlow驱动程序。这迫使应用程序程序员使用几个OpenFlow原语。为了解决这个问题,我们详细阐述了我们目前在扩展SDN堆栈方面的工作,以改善我们的整体网络可编程性体验。
{"title":"A Software defined Cloud-Gateway automation system using OpenFlow","authors":"S. Natarajan, A. Ramaiah, Mayan Mathen","doi":"10.1109/CloudNet.2013.6710582","DOIUrl":"https://doi.org/10.1109/CloudNet.2013.6710582","url":null,"abstract":"The notion of programming the forwarding device using an open protocol is a key feature of Software-defined Networks (SDN). This improves network visibility and control thereby reducing vendor dependency. OpenFlow protocol provides a standardized approach to realize these goals of SDN. In this paper, we illustrate our progress with a Software-defined Cloud-Gateway automation system using OpenFlow. In addition, based on our deployment experience, we highlight two technical challenges when using OpenFlow. First, with the standardization being an evolving effort, we highlight some of the programming challenges and missing features within the OpenFlow protocol. Secondly, existing OpenFlow-based network stack lacks some architectural components that reduces the level of flexibility we achieve when programming the network. Most SDN controllers expose limited abstractions to build network applications thereby primarily functioning as an OpenFlow driver. This imposes an application programmer to work with several OpenFlow primitives. To address this problem, we elaborate our current work in extending the SDN stack to improve our overall network programmability experience.","PeriodicalId":262262,"journal":{"name":"2013 IEEE 2nd International Conference on Cloud Networking (CloudNet)","volume":"9 3","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2013-11-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"132836951","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 18
New control plane in 3GPP LTE/EPC architecture for on-demand connectivity service 3GPP LTE/EPC架构中的新控制平面,用于按需连接服务
Pub Date : 2013-11-01 DOI: 10.1109/CloudNet.2013.6710579
S. B. H. Said, Malla Reddy Sama, K. Guillouard, L. Suciu, G. Simon, X. Lagrange, J. Bonnin
The on-demand connectivity service is one of the main requirements of the cellular data network. It consists in moving sessions transparently and temporarily from one network equipment to another without causing user session interruption. This service enables networks to cope with the ever-changing network condition such as sudden congestion or arbitrary network equipment failure. In this paper, we argue that the cellular data networks such as LTE/EPC lack the network visibility and control elasticity that enable the on-demand connectivity service. The Software Defined Networking (SDN) is an emerging trend that should be considered to overcomes the above drawback. As a first step, we propose an OpenFlow-based control plane for LTE/EPC architectures. Using resiliency and load balancing use cases, we show that our proposal guarantees the on-demand connectivity service.
按需连接服务是蜂窝数据网络的主要需求之一。它包括透明地、临时地将会话从一个网络设备移动到另一个网络设备,而不会导致用户会话中断。该服务使网络能够应对突发拥塞或任意网络设备故障等不断变化的网络状况。在本文中,我们认为蜂窝数据网络,如LTE/EPC缺乏网络可见性和控制弹性,使按需连接服务。软件定义网络(SDN)是一种新兴趋势,应该考虑克服上述缺点。作为第一步,我们提出了一个基于openflow的LTE/EPC架构控制平面。使用弹性和负载平衡用例,我们展示了我们的建议保证了按需连接服务。
{"title":"New control plane in 3GPP LTE/EPC architecture for on-demand connectivity service","authors":"S. B. H. Said, Malla Reddy Sama, K. Guillouard, L. Suciu, G. Simon, X. Lagrange, J. Bonnin","doi":"10.1109/CloudNet.2013.6710579","DOIUrl":"https://doi.org/10.1109/CloudNet.2013.6710579","url":null,"abstract":"The on-demand connectivity service is one of the main requirements of the cellular data network. It consists in moving sessions transparently and temporarily from one network equipment to another without causing user session interruption. This service enables networks to cope with the ever-changing network condition such as sudden congestion or arbitrary network equipment failure. In this paper, we argue that the cellular data networks such as LTE/EPC lack the network visibility and control elasticity that enable the on-demand connectivity service. The Software Defined Networking (SDN) is an emerging trend that should be considered to overcomes the above drawback. As a first step, we propose an OpenFlow-based control plane for LTE/EPC architectures. Using resiliency and load balancing use cases, we show that our proposal guarantees the on-demand connectivity service.","PeriodicalId":262262,"journal":{"name":"2013 IEEE 2nd International Conference on Cloud Networking (CloudNet)","volume":"1 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2013-11-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"134121254","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 84
A comparative study of applying real-time encryption in cloud computing environments 云计算环境下实时加密应用的比较研究
Pub Date : 2013-11-01 DOI: 10.1109/CloudNet.2013.6710575
Faraz Fatemi Moghaddam, Omidreza Karimi, Maen T. Alrashdan
The rapid growth of cloud computing as a newfound technology and many unclear security issues in it cause many challenges. These challenges are specified in service provider's cloud servers and transmission processes. Accordingly, this paper presents a model based on separate data and key cloud servers and a client-based data encryption service for increasing the reliability in cloud computing environments. In the proposed model, the key generation process is done in a separate cloud application and public and private keys are stored in key cloud servers. Moreover, the encryption and decryption processes are done in client side by a service that named “data encryption service”. For applying this encryption system a comparative study was done by analyzing the strengths and weaknesses of six popular asymmetric key encryption algorithms (i.e. Original RSA, RSA Small-e, RSA Small-d, MREA, E-RSA, and EAMRSA) according to time, key size and security parameters. These algorithms were briefly described and redeveloped in the same situation for the simulation process to investigate the performance in client-based data encryption service. Furthermore, the security analysis was done by reviewing the performance of described algorithms against three popular attacks: Brute Force, Mathematical, and Timing Attack. According to the results E-RSA in the most appropriate algorithm for using in client-based data encryption service by achieving acceleration, accuracy, and security in this service based on compatibility issues in a client side service.
云计算作为一种新技术的快速发展以及其中许多不明确的安全问题带来了许多挑战。这些挑战在服务提供商的云服务器和传输过程中都有详细说明。因此,本文提出了一种基于独立数据和关键云服务器的模型,以及一种基于客户端的数据加密服务,以提高云计算环境下的可靠性。在建议的模型中,密钥生成过程在单独的云应用程序中完成,公钥和私钥存储在密钥云服务器中。此外,加密和解密过程由一个名为“数据加密服务”的服务在客户端完成。为了应用该加密系统,根据时间、密钥大小和安全参数,对目前流行的六种非对称密钥加密算法(Original RSA、RSA Small-e、RSA Small-d、MREA、E-RSA和EAMRSA)的优缺点进行了比较研究。对这些算法进行了简要描述,并在相同的情况下进行了重新开发,用于仿真过程,以研究基于客户端的数据加密服务的性能。此外,安全性分析是通过检查所描述的算法对三种流行攻击的性能来完成的:蛮力攻击、数学攻击和定时攻击。根据结果E-RSA在基于客户端的数据加密服务中使用最合适的算法,通过在基于客户端服务的兼容性问题上实现该服务的加速、准确性和安全性。
{"title":"A comparative study of applying real-time encryption in cloud computing environments","authors":"Faraz Fatemi Moghaddam, Omidreza Karimi, Maen T. Alrashdan","doi":"10.1109/CloudNet.2013.6710575","DOIUrl":"https://doi.org/10.1109/CloudNet.2013.6710575","url":null,"abstract":"The rapid growth of cloud computing as a newfound technology and many unclear security issues in it cause many challenges. These challenges are specified in service provider's cloud servers and transmission processes. Accordingly, this paper presents a model based on separate data and key cloud servers and a client-based data encryption service for increasing the reliability in cloud computing environments. In the proposed model, the key generation process is done in a separate cloud application and public and private keys are stored in key cloud servers. Moreover, the encryption and decryption processes are done in client side by a service that named “data encryption service”. For applying this encryption system a comparative study was done by analyzing the strengths and weaknesses of six popular asymmetric key encryption algorithms (i.e. Original RSA, RSA Small-e, RSA Small-d, MREA, E-RSA, and EAMRSA) according to time, key size and security parameters. These algorithms were briefly described and redeveloped in the same situation for the simulation process to investigate the performance in client-based data encryption service. Furthermore, the security analysis was done by reviewing the performance of described algorithms against three popular attacks: Brute Force, Mathematical, and Timing Attack. According to the results E-RSA in the most appropriate algorithm for using in client-based data encryption service by achieving acceleration, accuracy, and security in this service based on compatibility issues in a client side service.","PeriodicalId":262262,"journal":{"name":"2013 IEEE 2nd International Conference on Cloud Networking (CloudNet)","volume":"34 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2013-11-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"132719706","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 33
Service-oriented trust and reputation management system for multi-tier cloud 面向服务的多层云信任信誉管理系统
Pub Date : 2013-11-01 DOI: 10.1109/CloudNet.2013.6710574
H. Nicanfar, S. Amiri, Chunsheng Zhu, Peyman TalebiFard, Victor C. M. Leung, P. Nasiopoulos
Cloud based applications demand a higher level of security, privacy, and reliability toward a more cost effective solution. One of the challenges for the users of cloud-based services and applications is finding the most trusted provider for the minimum cost. The trusted providers from each customer can have different interpretation, or with different priority of the meaning. Furthermore, a tier-1 cloud service provider that delivers a service can receive the service, partially or fully, from tier-2 cloud service providers. In this paper, we propose a system to evaluate the trust, per delivered service by each provider and per each subject of the trust. Then, we propose an application of our trust system in choosing the best provider by a customer through minimizing the cost and maximizing the service-oriented trust. Our analysis shows the security, efficiency and applicability of our system in a multi-tier cloud environment.
基于云的应用程序需要更高级别的安全性、隐私性和可靠性,以获得更具成本效益的解决方案。基于云的服务和应用程序的用户面临的挑战之一是以最低的成本找到最值得信赖的提供商。来自每个客户的可信提供者可以有不同的解释,或者具有不同优先级的含义。此外,交付服务的第1层云服务提供商可以从第2层云服务提供商处部分或全部接收该服务。在本文中,我们提出了一个基于每个提供者和每个信任主体所提供的服务来评估信任的系统。在此基础上,我们提出了一个基于服务信任最大化和成本最小化的客户选择最佳供应商的方法。我们的分析显示了我们的系统在多层云环境中的安全性、效率和适用性。
{"title":"Service-oriented trust and reputation management system for multi-tier cloud","authors":"H. Nicanfar, S. Amiri, Chunsheng Zhu, Peyman TalebiFard, Victor C. M. Leung, P. Nasiopoulos","doi":"10.1109/CloudNet.2013.6710574","DOIUrl":"https://doi.org/10.1109/CloudNet.2013.6710574","url":null,"abstract":"Cloud based applications demand a higher level of security, privacy, and reliability toward a more cost effective solution. One of the challenges for the users of cloud-based services and applications is finding the most trusted provider for the minimum cost. The trusted providers from each customer can have different interpretation, or with different priority of the meaning. Furthermore, a tier-1 cloud service provider that delivers a service can receive the service, partially or fully, from tier-2 cloud service providers. In this paper, we propose a system to evaluate the trust, per delivered service by each provider and per each subject of the trust. Then, we propose an application of our trust system in choosing the best provider by a customer through minimizing the cost and maximizing the service-oriented trust. Our analysis shows the security, efficiency and applicability of our system in a multi-tier cloud environment.","PeriodicalId":262262,"journal":{"name":"2013 IEEE 2nd International Conference on Cloud Networking (CloudNet)","volume":"12 1","pages":"0"},"PeriodicalIF":0.0,"publicationDate":"2013-11-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":null,"resultStr":null,"platform":"Semanticscholar","paperid":"114752965","PeriodicalName":null,"FirstCategoryId":null,"ListUrlMain":null,"RegionNum":0,"RegionCategory":"","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":"","EPubDate":null,"PubModel":null,"JCR":null,"JCRName":null,"Score":null,"Total":0}
引用次数: 3
期刊
2013 IEEE 2nd International Conference on Cloud Networking (CloudNet)
全部 Acc. Chem. Res. ACS Applied Bio Materials ACS Appl. Electron. Mater. ACS Appl. Energy Mater. ACS Appl. Mater. Interfaces ACS Appl. Nano Mater. ACS Appl. Polym. Mater. ACS BIOMATER-SCI ENG ACS Catal. ACS Cent. Sci. ACS Chem. Biol. ACS Chemical Health & Safety ACS Chem. Neurosci. ACS Comb. Sci. ACS Earth Space Chem. ACS Energy Lett. ACS Infect. Dis. ACS Macro Lett. ACS Mater. Lett. ACS Med. Chem. Lett. ACS Nano ACS Omega ACS Photonics ACS Sens. ACS Sustainable Chem. Eng. ACS Synth. Biol. Anal. Chem. BIOCHEMISTRY-US Bioconjugate Chem. BIOMACROMOLECULES Chem. Res. Toxicol. Chem. Rev. Chem. Mater. CRYST GROWTH DES ENERG FUEL Environ. Sci. Technol. Environ. Sci. Technol. Lett. Eur. J. Inorg. Chem. IND ENG CHEM RES Inorg. Chem. J. Agric. Food. Chem. J. Chem. Eng. Data J. Chem. Educ. J. Chem. Inf. Model. J. Chem. Theory Comput. J. Med. Chem. J. Nat. Prod. J PROTEOME RES J. Am. Chem. Soc. LANGMUIR MACROMOLECULES Mol. Pharmaceutics Nano Lett. Org. Lett. ORG PROCESS RES DEV ORGANOMETALLICS J. Org. Chem. J. Phys. Chem. J. Phys. Chem. A J. Phys. Chem. B J. Phys. Chem. C J. Phys. Chem. Lett. Analyst Anal. Methods Biomater. Sci. Catal. Sci. Technol. Chem. Commun. Chem. Soc. Rev. CHEM EDUC RES PRACT CRYSTENGCOMM Dalton Trans. Energy Environ. Sci. ENVIRON SCI-NANO ENVIRON SCI-PROC IMP ENVIRON SCI-WAT RES Faraday Discuss. Food Funct. Green Chem. Inorg. Chem. Front. Integr. Biol. J. Anal. At. Spectrom. J. Mater. Chem. A J. Mater. Chem. B J. Mater. Chem. C Lab Chip Mater. Chem. Front. Mater. Horiz. MEDCHEMCOMM Metallomics Mol. Biosyst. Mol. Syst. Des. Eng. Nanoscale Nanoscale Horiz. Nat. Prod. Rep. New J. Chem. Org. Biomol. Chem. Org. Chem. Front. PHOTOCH PHOTOBIO SCI PCCP Polym. Chem.
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
0
微信
客服QQ
Book学术公众号 扫码关注我们
反馈
×
意见反馈
请填写您的意见或建议
请填写您的手机或邮箱
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
现在去查看 取消
×
提示
确定
Book学术官方微信
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术
文献互助 智能选刊 最新文献 互助须知 联系我们:info@booksci.cn
Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。
Copyright © 2023 Book学术 All rights reserved.
ghs 京公网安备 11010802042870号 京ICP备2023020795号-1