Presentation 2020-12-15
Network Control in a Cloud Platform Using Identities of Workloads and It's Application to Packet Filtering
Kentaro Ohnishi, Daisuke Kotani, Hirofumi Ichihara, Yohei Kanemaru, Yasuo Okabe,
PDF Download Page PDF download Page Link
Abstract(in Japanese) (See Japanese page)
Abstract(in English) Conventional network controls use IP addresses and port numbers (Locators) as identifiers of Workloads like processes and containers. However, in cloud platforms adopting microservices architecture and container technology, Locators are massibly used and frequently updated. This makes it difficult to control network with relying on Locators. In this paper, we propose a new system to process packets based on the Identity of a Workload without depending on Locators, by marking packets with the necessary information extracted from the Identity. We then design and construct a packet filtering mechanism in a cloud platform using the proposed system and show that mechanism can be implemented with the proposed system.
Keyword(in Japanese) (See Japanese page)
Keyword(in English) Network Control / Packet Filtering / Cloud Platform / Identity / Workload
Paper # IA2020-30
Date of Issue 2020-12-07 (IA)

Conference Information
Committee IA / IN
Conference Date 2020/12/14(2days)
Place (in Japanese) (See Japanese page)
Place (in English) Online
Topics (in Japanese) (See Japanese page)
Topics (in English) Performance Analysis and Simulation, Robustness, Traffic and Throughput Measurement, Quality of Service (QoS) Control, Congestion Control, Overlay Network/P2P, IPv6, Multicast, Routing, DDoS, etc.
Chair Hiroyuki Osaki(Kwansei Gakuin Univ.) / Kenji Ishida(Hiroshima City Univ.)
Vice Chair Rei Atarashi(IIJ) / Toru Kondo(Hiroshima Univ.) / Hiroshi Yamamoto(Ritsumeikan Univ.) / Kunio Hato(Internet Multifeed)
Secretary Rei Atarashi(Kwansei Gakuin Univ.) / Toru Kondo(KDDI Research) / Hiroshi Yamamoto(NEC) / Kunio Hato(Hiroshima City Univ.)
Assistant Kenji Ohira(Osaka Univ.) / Daiki Nobayashi(Kyushu Inst. of Tech.) / Ryohei Banno(Kogakuin Univ.)

Paper Information
Registration To Technical Committee on Internet Architecture / Technical Committee on Information Networks
Language JPN
Title (in Japanese) (See Japanese page)
Sub Title (in Japanese) (See Japanese page)
Title (in English) Network Control in a Cloud Platform Using Identities of Workloads and It's Application to Packet Filtering
Sub Title (in English)
Keyword(1) Network Control
Keyword(2) Packet Filtering
Keyword(3) Cloud Platform
Keyword(4) Identity
Keyword(5) Workload
1st Author's Name Kentaro Ohnishi
1st Author's Affiliation Kyoto University(Kyoto Univ.)
2nd Author's Name Daisuke Kotani
2nd Author's Affiliation Kyoto University(Kyoto Univ.)
3rd Author's Name Hirofumi Ichihara
3rd Author's Affiliation LINE Corporation(LINE)
4th Author's Name Yohei Kanemaru
4th Author's Affiliation LINE Corporation(LINE)
5th Author's Name Yasuo Okabe
5th Author's Affiliation Kyoto University(Kyoto Univ.)
Date 2020-12-15
Paper # IA2020-30
Volume (vol) vol.120
Number (no) IA-294
Page pp.pp.22-29(IA),
#Pages 8
Date of Issue 2020-12-07 (IA)