講演抄録/キーワード |
講演名 |
2016-11-04 10:00
SDN-based Distributed firewall ○Yuwei Chang・Tsungnan Lin(NTU) IA2016-45 |
抄録 |
(和) |
Separating the control and data plane, Software-defined network may increase the scalability and programmability of the whole network topology. Firewall is an important component to protect intrusions and threats from the internet and intranet. With the growing number of rules and policies, firewall is usually the main reason for the latency. But if we migrate all the rules in the traditional firewall into a SDN switch, it would become malfunction with its limited flow entries (typically 16K). Here, we propose a framework of distributed SDN firewalls that would excel the performance of the traditional firewall and solve the capacity problem. |
(英) |
Separating the control and data plane, Software-defined network may increase the scalability and programmability of the whole network topology. Firewall is an important component to protect intrusions and threats from the internet and intranet. With the growing number of rules and policies, firewall is usually the main reason for the latency. But if we migrate all the rules in the traditional firewall into a SDN switch, it would become malfunction with its limited flow entries (typically 16K). Here, we propose a framework of distributed SDN firewalls that would excel the performance of the traditional firewall and solve the capacity problem. |
キーワード |
(和) |
Software define network(SDN) / Distributed Firewall / OpenFlow / / / / / |
(英) |
Software define network(SDN) / Distributed Firewall / OpenFlow / / / / / |
文献情報 |
信学技報, vol. 116, no. 282, IA2016-45, pp. 81-86, 2016年11月. |
資料番号 |
IA2016-45 |
発行日 |
2016-10-27 (IA) |
ISSN |
Print edition: ISSN 0913-5685 Online edition: ISSN 2432-6380 |
著作権に ついて |
技術研究報告に掲載された論文の著作権は電子情報通信学会に帰属します.(許諾番号:10GA0019/12GB0052/13GB0056/17GB0034/18GB0034) |
PDFダウンロード |
IA2016-45 |