NeTS: Medium: Collaborative Research: Enabling Flexible Middlebox Processing in the Cloud
NeTS:媒介:协作研究:在云中实现灵活的中间盒处理
基本信息
- 批准号:1440056
- 负责人:
- 金额:$ 50万
- 依托单位:
- 依托单位国家:美国
- 项目类别:Continuing Grant
- 财政年份:2014
- 资助国家:美国
- 起止时间:2014-01-01 至 2019-08-31
- 项目状态:已结题
- 来源:
- 关键词:
项目摘要
Enterprises rely on specialized network appliances or middleboxes such as load balancers, intrusion detection and prevention systems, and WAN optimizers in order to meet critical performance optimization, security, and policy compliance requirements. With the advent of cloud computing, such middlebox processing will play an increasingly critical role in cloud deployments due to two key factors: 1) As enterprises move their IT infrastructure to the cloud, they want to leverage the same performance and security benefits for applications running in the cloud; and 2) Enterprises want to reduce their infrastructure and management costs by offloading middlebox functionality to cloud providers to leverage the elastic scaling and migration benefits offered by cloud computing. Unfortunately, cloud customers and providers today lack the necessary abstractions and mechanisms for enabling this transition. At a high-level, the problem is that these workloads are drastically different from traditional computation and storage services for which cloud computing has been extremely successful. This raises fundamental challenges along several dimensions: the need for flexible composition or chaining of network services; the increased impact of network-level performance on such workloads; the inherent difficulty in identifying bottlenecked resources in multiplexed cloud deployments; and the inability to reason about correct and consistent operation of stateful network processing in dynamic deployment scenarios.This project will bridge this disconnect by addressing foundational issues in the design and implementation of (1) policy frameworks, elastic scaling algorithms, and software-defined controllers for enterprise administrators to translate their requirements into an actual physical realization; (2) algorithms for intelligent network-level placement, traffic engineering, and topology design for cloud providers to support such workloads; and (3) new abstractions for managing and manipulating the middlebox-associated state of the network. Broader Impact: This work will inform the critical industry evolution as enterprises and cloud providers are attempting to realize the benefits of ?network virtualization?. Furthermore, the project will enable new dimensions of flexibility for network deployments that do not exist today---democratizing the benefits of middleboxes to small businesses; providing the ability to elastically scale network-level services to meet application demands; and enabling live migration of entire enterprise deployments across physical infrastructures. The project will generate new course materials on software-defined networking and cloud computing and tightly integrate research with education to help students become experts in these emerging domains. The software tools and benchmark measurement data produced by the research will inform the industry transition and future academic work on such middleboxes-in-the-cloud deployments. Finally, while the project focuses on middleboxes in cloud deployments, the technical foundations developed therein will apply to traditional enterprise and ISP networks as well.
企业依赖于专用网络设备或中间盒,如负载平衡器、入侵检测和防御系统以及WAN优化器,以满足关键的性能优化、安全性和策略合规性要求。随着云计算的出现,由于两个关键因素,这种中间盒处理将在云部署中发挥越来越重要的作用:1)随着企业将其IT基础设施迁移到云,他们希望为在云中运行的应用程序利用相同的性能和安全优势;和2)企业希望通过将中间盒功能卸载给云提供商来利用弹性扩展和迁移,从而降低基础架构和管理成本云计算带来的好处。不幸的是,今天的云计算客户和提供商缺乏必要的抽象和机制来实现这种过渡。在高层次上,问题是这些工作负载与云计算非常成功的传统计算和存储服务截然不同。这在沿着几个方面提出了根本性的挑战:需要灵活组合或链接网络服务;网络级性能对此类工作负载的影响越来越大;在多路复用云部署中识别被检查资源的固有困难;以及无法推理动态部署场景中有状态网络处理的正确和一致操作。本项目将通过解决设计和实现中的基础问题:(1)策略框架、弹性伸缩算法和软件定义的控制器,供企业管理员将其需求转化为实际的物理实现;(2)用于云提供商的智能网络级布局、流量工程和拓扑设计的算法,以支持此类工作负载;以及(3)用于管理和操纵网络的中间盒关联状态的新抽象。更广泛的影响:这项工作将告知关键的行业发展,因为企业和云提供商正在试图实现的好处?网络虚拟化?此外,该项目还将为网络部署提供目前不存在的新的灵活性维度-将中间盒的好处民主化到小型企业;提供弹性扩展网络级服务以满足应用需求的能力;以及实现整个企业部署在物理基础设施上的实时迁移。 该项目将生成关于软件定义网络和云计算的新课程材料,并将研究与教育紧密结合,以帮助学生成为这些新兴领域的专家。该研究产生的软件工具和基准测量数据将为行业转型和未来关于此类云中中间盒部署的学术工作提供信息。最后,虽然该项目侧重于云部署中的中间盒,但其中开发的技术基础也将适用于传统企业和ISP网络。
项目成果
期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
数据更新时间:{{ journalArticles.updateTime }}
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
Vyas Sekar其他文献
Rethinking Security in the Era of Cloud Computing
重新思考云计算时代的安全
- DOI:
10.1109/msp.2017.80 - 发表时间:
2017 - 期刊:
- 影响因子:1.9
- 作者:
Jay Aikat;Aditya Akella;J. Chase;A. Juels;M. Reiter;Thomas Ristenpart;Vyas Sekar;M. Swift - 通讯作者:
M. Swift
CICADAS: Congesting the Internet with Coordinated and Decentralized Pulsating Attacks
CICADAS:通过协调和分散的脉动攻击拥塞互联网
- DOI:
- 发表时间:
2016 - 期刊:
- 影响因子:0
- 作者:
Yu;Chih;H. Hsiao;A. Perrig;Vyas Sekar - 通讯作者:
Vyas Sekar
Learning Context-Aware Policies from Multiple Smart Homes via Federated Multi-Task Learning
通过联合多任务学习从多个智能家居学习情境感知策略
- DOI:
- 发表时间:
2020 - 期刊:
- 影响因子:0
- 作者:
Tian;Tian Li;Yuqiong Sun;Susanta Nanda;Virginia Smith;Vyas Sekar;S. Seshan - 通讯作者:
S. Seshan
Enabling a "RISC" Approach for Software-Defined Monitoring using Universal Streaming
使用通用流媒体实现软件定义监控的“RISC”方法
- DOI:
10.1145/2834050.2834098 - 发表时间:
2015 - 期刊:
- 影响因子:0
- 作者:
Zaoxing Liu;G. Vorsanger;V. Braverman;Vyas Sekar - 通讯作者:
Vyas Sekar
SEAM-EZ: Simplifying Stateful Analytics through Visual Programming
SEAM-EZ:通过可视化编程简化状态分析
- DOI:
- 发表时间:
2024 - 期刊:
- 影响因子:0
- 作者:
Zhengyan Yu;Hun Namkung;Jiang Guo;Henry Milner;Joel Goldfoot;Yang Wang;Vyas Sekar - 通讯作者:
Vyas Sekar
Vyas Sekar的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
{{ truncateString('Vyas Sekar', 18)}}的其他基金
Collaborative Research: SaTC: CORE: Medium: ONSET: Optics-enabled Network Defenses for Extreme Terabit DDoS Attacks
协作研究:SaTC:核心:中:ONSET:针对极端太比特 DDoS 攻击的光学网络防御
- 批准号:
2132639 - 财政年份:2022
- 资助金额:
$ 50万 - 项目类别:
Standard Grant
Collaborative Research: CNS: Medium: Scalable Learning from Distributed Data for Wireless Network Management
合作研究:CNS:媒介:无线网络管理的分布式数据可扩展学习
- 批准号:
2106214 - 财政年份:2021
- 资助金额:
$ 50万 - 项目类别:
Continuing Grant
NSF NeTS Early-Career Investigators Workshop 2017
NSF NetS 早期职业研究者研讨会 2017
- 批准号:
1743525 - 财政年份:2017
- 资助金额:
$ 50万 - 项目类别:
Standard Grant
CAREER: Checking Dynamic Policies in Stateful Next-Generation Networks
职业:检查有状态的下一代网络中的动态策略
- 批准号:
1552481 - 财政年份:2016
- 资助金额:
$ 50万 - 项目类别:
Continuing Grant
TWC: Medium: Handling a Trillion Unfixable Flaws on Billions of Internet-of-Things
TWC:Medium:处理数十亿个物联网上的万亿个无法修复的缺陷
- 批准号:
1564009 - 财政年份:2016
- 资助金额:
$ 50万 - 项目类别:
Standard Grant
I-Corps: Exploring Commercialization Opportunities for a Software-Defined Approach for Securing Internet of Things
I-Corps:探索保护物联网的软件定义方法的商业化机会
- 批准号:
1644587 - 财政年份:2016
- 资助金额:
$ 50万 - 项目类别:
Standard Grant
NeTS: Medium: Collaborative Research: Flexible All-Wireless Inter-Rack Fabric for Datacenters Using Free-Space Optics
NeTS:媒介:协作研究:使用自由空间光学的数据中心灵活的全无线机架间结构
- 批准号:
1513764 - 财政年份:2015
- 资助金额:
$ 50万 - 项目类别:
Standard Grant
Proposal to Support Student Travel for the ACM SIGCOMM 2015 Conference
支持学生参加 ACM SIGCOMM 2015 会议的旅行提案
- 批准号:
1538878 - 财政年份:2015
- 资助金额:
$ 50万 - 项目类别:
Standard Grant
AitF: FULL: Collaborative Research: Practical Foundations for Software-Defined Network Optimization
AitF:完整:协作研究:软件定义网络优化的实践基础
- 批准号:
1536002 - 财政年份:2015
- 资助金额:
$ 50万 - 项目类别:
Standard Grant
TWC: Frontier: Collaborative: Rethinking Security in the Era of Cloud Computing
TWC:前沿:协作:重新思考云计算时代的安全性
- 批准号:
1440065 - 财政年份:2014
- 资助金额:
$ 50万 - 项目类别:
Continuing Grant
相似海外基金
Collaborative Research: NeTS: Medium: EdgeRIC: Empowering Real-time Intelligent Control and Optimization for NextG Cellular Radio Access Networks
合作研究:NeTS:媒介:EdgeRIC:为下一代蜂窝无线接入网络提供实时智能控制和优化
- 批准号:
2312978 - 财政年份:2023
- 资助金额:
$ 50万 - 项目类别:
Standard Grant
Collaborative Research: NeTS: Medium: Towards High-Performing LoRa with Embedded Intelligence on the Edge
协作研究:NeTS:中:利用边缘嵌入式智能实现高性能 LoRa
- 批准号:
2312676 - 财政年份:2023
- 资助金额:
$ 50万 - 项目类别:
Standard Grant
Collaborative Research: NeTS: Medium: Black-box Optimization of White-box Networks: Online Learning for Autonomous Resource Management in NextG Wireless Networks
合作研究:NeTS:中:白盒网络的黑盒优化:下一代无线网络中自主资源管理的在线学习
- 批准号:
2312835 - 财政年份:2023
- 资助金额:
$ 50万 - 项目类别:
Standard Grant
Collaborative Research: NeTS: Medium: An Integrated Multi-Time Scale Approach to High-Performance, Intelligent, and Secure O-RAN based NextG
合作研究:NeTS:Medium:基于 NextG 的高性能、智能和安全 O-RAN 的集成多时间尺度方法
- 批准号:
2312447 - 财政年份:2023
- 资助金额:
$ 50万 - 项目类别:
Standard Grant
Collaborative Research: NeTS: Medium: Large Scale Analysis of Configurations and Management Practices in the Domain Name System
合作研究:NetS:中型:域名系统配置和管理实践的大规模分析
- 批准号:
2312711 - 财政年份:2023
- 资助金额:
$ 50万 - 项目类别:
Standard Grant
Collaborative Research: NeTS: Medium: Black-box Optimization of White-box Networks: Online Learning for Autonomous Resource Management in NextG Wireless Networks
合作研究:NeTS:中:白盒网络的黑盒优化:下一代无线网络中自主资源管理的在线学习
- 批准号:
2312836 - 财政年份:2023
- 资助金额:
$ 50万 - 项目类别:
Standard Grant
Collaborative Research: NeTS: Medium: Black-box Optimization of White-box Networks: Online Learning for Autonomous Resource Management in NextG Wireless Networks
合作研究:NeTS:中:白盒网络的黑盒优化:下一代无线网络中自主资源管理的在线学习
- 批准号:
2312834 - 财政年份:2023
- 资助金额:
$ 50万 - 项目类别:
Standard Grant
Collaborative Research: NeTS: Medium: An Integrated Multi-Time Scale Approach to High-Performance, Intelligent, and Secure O-RAN based NextG
合作研究:NeTS:Medium:基于 NextG 的高性能、智能和安全 O-RAN 的集成多时间尺度方法
- 批准号:
2312448 - 财政年份:2023
- 资助金额:
$ 50万 - 项目类别:
Standard Grant
Collaborative Research: NeTS: Medium: Towards High-Performing LoRa with Embedded Intelligence on the Edge
协作研究:NeTS:中:利用边缘嵌入式智能实现高性能 LoRa
- 批准号:
2312674 - 财政年份:2023
- 资助金额:
$ 50万 - 项目类别:
Standard Grant
Collaborative Research: NeTS: Medium: Large Scale Analysis of Configurations and Management Practices in the Domain Name System
合作研究:NetS:中型:域名系统配置和管理实践的大规模分析
- 批准号:
2312710 - 财政年份:2023
- 资助金额:
$ 50万 - 项目类别:
Standard Grant