We use cookies to improve your experience with our site.

在多租户数据中心中针对安全服务的负载自适应的流量转向和转发方案

LTSS:Load-Adaptive Traffic Steering and Forwarding for Security Services in Multi-Tenant Cloud Datacenters

  • 摘要: 目前,不同种类的安全设备部署在云数据中心环境中,并且租户可以选择他们期望的安全服务,例如防火墙和入侵检测系统(IDS)。同时,云计算数据中心的租户是动态的,有不同的要求。因此,云数据中心中的安全设备部署非常复杂,可能导致资源利用率低下。在本文中,我们在基于SDN的多租户云数据中心环境中展开研究这个问题。我们提出一种称为LTSS的负载自适应流量控制和分组转发方案来解决这个问题。我们的方案将SDN控制器与TagOper插件结合在一起,为租户确定最小负载的流量路径,并允许租户在更复杂的网络中获得所需的安全服务。我们还为LTSS开发了一个原型系统,并验证其功能,评估我们设计方案的性能。

     

    Abstract: Currently, different kinds of security devices are deployed in the cloud datacenter environment and tenants may choose their desired security services such as firewall and IDS (intrusion detection system). At the same time, tenants in cloud computing datacenters are dynamic and have different requirements. Therefore, security device deployment in cloud datacenters is very complex and may lead to inefficient resource utilization. In this paper, we study this problem in a software-defined network (SDN) based multi-tenant cloud datacenter environment. We propose a load-adaptive traffic steering and packet forwarding scheme called LTSS to solve the problem. Our scheme combines SDN controller with TagOper plug-in to determine the traffic paths with the minimum load for tenants and allows tenants to get their desired security services in SDN-based datacenter networks. We also build a prototype system for LTSS to verify its functionality and evaluate performance of our design.

     

/

返回文章
返回