D-STREAMON - NFV-Capable Distributed Framework for Network Monitoring
نویسندگان
چکیده
Several reasons make NFV an attractive paradigm for IT security: lowers costs, agile operations and better isolation as well as fast security updates, improved incident responses and better level of automation. At the same time, the network threats tend to be increasingly complex and distributed, implying huge traffic scale to be monitored and increasingly strict mitigation delay requirements. Considering the current trend of the networking and the requirements to counteract to the evolution of cyber-threats, it is expected that also network monitoring will move towards NFV based solutions. In this paper, we present Distributed StreaMon (D-StreaMon) an orchestration framework for distributed monitoring on NFV network architectures. D-StreaMon has been designed to face the above described challenges. It relies on the StreaMon platform, a solution for network monitoring originally designed for traditional middleboxes. Changes that allow Streamon to be deployed on NFV network architectures are described. The paper reports a performance evaluation of the realized NFV based solutions and discusses potential benefits in monitoring tenants’ VMs for Service Providers.
منابع مشابه
D-STREAMON - a NFV-capable distributed framework for network monitoring
Many reasons make NFV an attractive paradigm for IT security: lowers costs, agile operations and better isolation as well as fast security updates, improved incident responses and better level of automation. At the same time, the network threats tend to be increasingly complex and distributed, implying huge traffic scale to be monitored and increasingly strict mitigation delay requirements. Con...
متن کاملReal-time Monitoring Technique Using SFC Classifier in NFV Environment
Network services which handle large-scale traffic require stability and security for the network. Traffic management for efficient traffic processing is also becoming an important issue. NFV (Network Function Virtualization) architecture has been developed to provide a flexible and effective framework to handle this issue and SFC (Service Function Chaining) technique which can configure a singl...
متن کاملIntegrated NFV/SDN Architectures: A Systematic Literature Review
ion (one GNF Agent per device) C lo u d S e rv er Fig. 7. The GNF platform [47]. In addition, Sonkoly et al. (2015) [35] extended the UNIFY architecture (see Section 5.1) to create a service function chaining control plane. This solution aims to support SFC in distributed cloud ACM Computing Surveys, Vol. 0, No. 0, Article 0. Publication date: 0000. Integrated NFV/SDN Architectures: A Systemati...
متن کاملA survey on impact of cloud computing security challenges on NFV infrastructure and risks mitigation solutions
Increased broadband data rate for end users and the cost of resource provisioning to an agreed SLA in telecom service providers, are forcing operators in order to adhere to employment Virtual Network Functions (VNF) in an NFV solution. The newly 5G mobile telecom technology is also based on NFV and Software Define Network (SDN) which inherit opportunities and threats of such constructs. Thus a ...
متن کامل[Proceeding] NFV service dynamicity with a DevOps approach: insights from a use-case realization
This experience paper describes the process of leveraging the NFV orchestration platform built in the EU FP7 project UNIFY to deploy a dynamic network service exemplified by an elastic router. Elasticity is realized by scaling dataplane resources as a function of traffic load. To achieve this, the service includes a custom scaling logic and monitoring capabilities. An automated monitoring frame...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2017