Experimental evaluation of SDN-controlled, joint consolidation of policies and virtual machines

Experimental evaluation of SDN-controlled, joint consolidation of policies and virtual machines
复制标题

DOI:
10.1109/iscc.2017.8024710
复制
发表时间:
2017
期刊:
2017 IEEE Symposium on Computers and Communications (ISCC)
影响因子:
--
通讯作者:
Wajdi Hajji;Fung Po Tso;Lin Cui;D. Pezaros
Wajdi Hajji;Fung Po Tso;Lin Cui;D. Pezaros
中科院分区:
其他
文献类型:
--
作者:
Wajdi Hajji;Fung Po Tso;Lin Cui;D. Pezaros

文献摘要

相似文献

中间盒(MBS)在现代数据中心(DC)中无处不在,因为它们在实现网络安全、管理和优化方面发挥着至关重要的作用。为了满足网络策略对MBS有序序列的正确遍历的要求,网络管理员依靠基于静态策略的路由或虚拟局域网拼接来引导流量。然而,虚拟环境中的动态虚拟服务器迁移对这种静态流量引导提出了极大的挑战。在本文中,我们设计并实施了Sync,这是一种高效且协同的方案,用于在易于部署的Minnet环境中联合整合网络策略和虚拟机(VM)。给出了同步框架的体系结构,并对其源代码进行了开源。我们还针对不同的工作负载和策略对Sync进行了广泛评估。我们的结果表明,在包含686台服务器、10k台VM、8k策略和100k流的模拟DC中,Sync分别在634秒和4秒内处理900台VM和10台VM。
Middleboxes (MBs) are ubiquitous in modern data centre (DC) due to their crucial role in implementing network security, management and optimisation. In order to meet network policy's requirement on correct traversal of an ordered sequence of MBs, network administrators rely on static policy based routing or VLAN stitching to steer traffic flows. However, dynamic virtual server migration in virtual environment has greatly challenged such static traffic steering. In this paper, we design and implement Sync, an efficient and synergistic scheme to jointly consolidate network policies and virtual machines (VMs), in a readily deployable Mininet environment. We present the architecture of Sync framework and open source its code. We also extensively evaluate Sync over diverse workload and policies. Our results show that in an emulated DC of 686 servers, 10k VMs, 8k policies, and 100k flows, Sync processes a group of 900 VMs and 10 VMs in 634 seconds and 4 seconds respectively.