ΕΘΝΙΚΟ ΜΕΤΣΟΒΙΟ ΠΟΛΥΤΕΧΝΕΙΟ - Ε.Μ.Π. NATIONAL TECHNICAL UNIVERSITY OF ATHENS - NTUA School of Electrical & Computer Engineering

Size: px
Start display at page:

Download "ΕΘΝΙΚΟ ΜΕΤΣΟΒΙΟ ΠΟΛΥΤΕΧΝΕΙΟ - Ε.Μ.Π. NATIONAL TECHNICAL UNIVERSITY OF ATHENS - NTUA School of Electrical & Computer Engineering"

Transcription

1 ΕΘΝΙΚΟ ΜΕΤΣΟΒΙΟ ΠΟΛΥΤΕΧΝΕΙΟ - Ε.Μ.Π. NATIONAL TECHNICAL UNIVERSITY OF ATHENS - NTUA School of Electrical & Computer Engineering Recent NETMODE Activities on Internet Research & Experimentation: Tetsbeds, Federated e-infrastructures, Network Security & SDN/NFV Vasilis Maglaris maglaris@netmode.ntua.gr Director, Network Management & Optimal Design (NETMODE) Lab September 2017

2 Lab Facilities Overview OpenFlow-enabled Devices NEC IP8800 Juniper MX80-48T HP x Open vswitch on Xeon Processor GHz, 8GB RAM, 8xGbE ports 6 x ESXi Hypervisors (v4.1 & 5.0), hosting ~50VMs Wireless Fed4FIRE & OpenFlow Testbeds Hosting FEDERICA & PlanetLab Facilities

3 Wireless Testbed Part of EU Fed4FIRE Distributed Testbed

4 SDN Testbed OpenFlow Switches & Controllers

5 Federated e-infrastructures NOVI Concept of Data, Control & Management Plane Stitching (Networking innovations Over Virtualized Infrastructures)

6 Policy Based Resource Management NFV Model of Policy Orchestration NFV Approach of Policy Based Architecture Graphical Overview of Policy Ontology

7 Anomaly Detection & Mitigation (I) Extending Remotely Triggered Black Hole (RTBH) Adding OF Functionality to Legacy LANs DDoS Attack Mitigation

8 Anomaly Detection & Mitigation (II) Classification of Malicious Source IP Prefixes Based on CAIDA Anonymized Data (DDoS Attack, August 2007) & Recent NTUA LAN Data

9 Anomaly Detection & Mitigation (III) A Cooperative Schema for Multi-domain SDN Environments

10 Anomaly Detection & Mitigation (IV) Collaborative Schema for Exchanging Attack Data Trusted Third Party NTUA NOC REMOTE Monitoring Repository (Trusted Third Party) Network, System Event Shipping Node 1 Publish Monitoring Events to Collaborators CN CSlab NETMODE Node 2 Node 3 Shipping IDS Events Data Plane Connections LOCAL Monitoring Repository (NETMODE) IDS Mirrored Traffic

11 Network Traffic Monitoring Advanced Statistical Methods /Data Fusion for Anomaly Detection Bayesian Inference of Hypothesis based on posterior probabilities Anomaly Detection & Mitigation (V) Applying Emerging Tools for Network Security Hypothesis Belief Functions based on membership functions (Dempster - Shafer s Theory of Evidence, 1976) Machine Learning Techniques for Anomaly Detection & Mitigation (Neural Networks, Deep Learning, Bloom Filters) Attack Classification Filtering DNS DDoS Attacks Packet Capturing SNMP MIB Counters NetFlow

12 Multi-Tenant Monitoring as VNF (I) A Monitoring Architecture for Research in Internet Experimentation (MARIE)

13 Multi-Tenant Monitoring as VNF (II) Monitoring in SDN Multi-tenant Environments

14 Multi-Tenant Monitoring as VNF (III) Scalable Monitoring-as-a-Service (MaaS) Monitoring-as-a- Service Logstash Cluster Administrator Data Views Lightweight Shipper Logstash Kibana Broker Personalized Data Views Lightweight Shipper Logstash Store/Search Kibana Broker Lightweight Shipper Logstash Store/Search

15 Multi-Tenant Monitoring as VNF (IV) Application in a Federated Environment: GÉANT Testbed Service - GTS (GÉANT NRENs Campuses)

16 Scalable Network Monitoring Data Mining via the OmniDisco Collector

17 MBB Carrier Selection & Offloading by Mobile Nodes Monitoring & Analysis for Radio Interface selection for Y2020 Networks (MARILYN) OpenFlow Control Functionality Open vswitch (OVS) Client S/W: Mounted on Android Mobile Node (SDN-enabled Multi-SIM Mobile Devices) OpenFlow Controller and Selection Policy Engine: Mounted on Android Mobile Node and/or within a Core Cloud Infrastructure Trade-off Criteria: Power Consumption, Quality of Experience, Seamless Reliable Operation, H/W S/W Cost & Subscription/Usage Fees, Penetration of Multi-SIM Mobile Devices

18 Selected Publications 1. V. Maglaris, C. Papagianni, G. Androulidakis, M. Grammatikou, P. Grosso, J. van der Ham, C. de Laat, B. Pietrzak, B. Belter, J. Steger, S. Laki, M. Campanella and S. Sallent, "Toward a Holistic Federated Future Internet Experimentation Environment: The Experience of NOVI Research and Experimentation", IEEE Communications Magazine, Vol. 53, No. 7, pp , July 2015 (Overview of the NOVI FIRE FP7 project) 2. A. Douitsis and V. Maglaris, "Towards A Scalable management Collector", in Proc. of GIIS'16, Porto, Portugal, October 2016 (Network Monitoring Architecture featuring SNMP and ElasticSearch) 3. Y. Kryftis, M. Grammatikou, D. Kalogeras and V. Maglaris, "Policy-Based Management for Federation of Virtualized Infrastructures", Journal of Network & Systems Management, Springer, June 2016 (Policy-based Network Management, Virtualized Infrastructures, Federated SLA) 4. K. Giotis, M. Apostolaki and V. Maglaris, "A Reputation-based Collaborative Schema for the Mitigation of Distributed Attacks in SDN Domains", in Proc. of IEEE/IFIP Network Operations and Management Symposium, Istanbul, Turkey, April 2016 (Cooperative schemes to mitigate DDoS attacks) 5. K. Giotis, G. Androulidakis and V. Maglaris, "A Scalable Anomaly Detection and Mitigation Architecture for Legacy Networks via an OpenFlow Middlebox", Security and Communication Networks, Wiley, October 2015 (Anomaly Detection & Mitigation Architecture for DDoS attacks using an approach on Legacy Networks) 6. K. Giotis, C. Argyropoulos, G. Androulidakis, D. Kalogeras and V. Maglaris, "Combining OpenFlow and sflow for an effective and scalable anomaly detection and mitigation mechanism on SDN environments", Computer Networks, Vol. 62, No. 7, pp , April 2014 (Scalable Anomaly Detection using Entropy Algorithms and sflow sampling) 7. C. Argyropoulos, S. Mastorakis, K. Giotis, G. Androulidakis, D. Kalogeras and V. Maglaris, "Control-Plane Slicing Methods in Multi-Tenant Software Defined Networks", in Proc. IFIP/IEEE Integrated Network Management Symposium (IM 2015), Ottawa, Canada, May 2015 (Assessing Virtual Network Slicing in terms of Resource Consumption) 8. C. Siaterlis and V. Maglaris, "Detecting incoming and Outgoing DDoS Attacks at the Edge Using a Single Set of Network Characteristics, in Proc. IEEE 10th Symposium on Computer and Communications (ISCC), Cartagena, Spain, June 2005 (Theoretical Statistical Analysis of Attack Patterns as experienced within the NTUA campus LAN) 9. C. Siaterlis and B. Maglaris, "Towards Multisensor Data Fusion for DoS detection", in Proc. ACM Symposium on Applied Computing, 2004 (Data-fusion algorithms combining Attack Metrics for DDoS Anomaly Detection)

Vasilis Maglaris. Chairman, NREN Policy Committee - GÉANT Consortium Coordinator, NOVI FIRE Project

Vasilis Maglaris. Chairman, NREN Policy Committee - GÉANT Consortium Coordinator, NOVI FIRE Project Federated Testbeds for Future Internet Research The NOVI Experience & NREN/GÉANT Potential Vasilis Maglaris Professor of Electrical & Computer Engineering, NTUA Chairman, NREN Policy Committee - GÉANT

More information

Future Internet Experiments over National Research & Education Networks: The Use Cases of FEDERICA & NOVI over European NRENs - GÉANT

Future Internet Experiments over National Research & Education Networks: The Use Cases of FEDERICA & NOVI over European NRENs - GÉANT Future Internet Experiments over National Research & Education Networks: The Use Cases of FEDERICA & NOVI over European NRENs - GÉANT Vasilis Maglaris Professor of Electrical & Computer Engineering, NTUA

More information

Leveraging SDN for Collaborative DDoS Mitigation

Leveraging SDN for Collaborative DDoS Mitigation Leveraging SDN for Collaborative DDoS Mitigation Sufian Hameed, Hassan Ahmed Khan IT Security Labs National University of Computer and Emerging Sciences, Pakistan Introduction The legacy of DDoS continues

More information

Building Security Services on top of SDN

Building Security Services on top of SDN Building Security Services on top of SDN Gregory Blanc Télécom SudParis, IMT 3rd FR-JP Meeting on Cybersecurity WG7 April 25th, 2017 Keio University Mita Campus, Tokyo Table of Contents 1 SDN and NFV as

More information

Current Challenges on SDN Research

Current Challenges on SDN Research Software Defined Networks ISCTE, April 04 2018 Current Challenges on SDN Research Rui L. Aguiar ruilaa@ua.pt Universidade de Aveiro Instituto de Telecomunicações 2005, it - instituto de telecomunicações.

More information

OpenFlow DDoS Mitigation

OpenFlow DDoS Mitigation OpenFlow DDoS Mitigation C. Dillon, M. Berkelaar February 9, 2014 University of Amsterdam Quanza Engineering Introduction Distributed Denial of Service attacks Types of attacks Application layer attacks

More information

Leveraging SDN & NFV to Achieve Software-Defined Security

Leveraging SDN & NFV to Achieve Software-Defined Security Leveraging SDN & NFV to Achieve Software-Defined Security Zonghua Zhang @imt-lille-douai.fr NEPS: NEtwork Performance and Security Group 2 Topics Anomaly detection, root cause analysis Security evaluation

More information

Federated E-infrastructure Dedicated to European Researchers Innovating in Computing network Architectures

Federated E-infrastructure Dedicated to European Researchers Innovating in Computing network Architectures Federated E-infrastructure Dedicated to European Researchers Innovating in Computing network Architectures Mauro Campanella - GARR FP7 Future Networks Concertation Meeting Brussels, March 11th, 2008 FEDERICA

More information

NRENs and GÉANT: Europe's Research & Education Community Road towards ICT Convergence The Future Internet is Present in Europe

NRENs and GÉANT: Europe's Research & Education Community Road towards ICT Convergence The Future Internet is Present in Europe NRENs and GÉANT: Europe's Research & Education Community Road towards ICT Convergence The Future Internet is Present in Europe Vasilis Maglaris Professor of Electrical & Computer Engineering, NTUA Chairman,

More information

Accelerating SDN and NFV Deployments. Malathi Malla Spirent Communications

Accelerating SDN and NFV Deployments. Malathi Malla Spirent Communications Accelerating SDN and NFV Deployments Malathi Malla Spirent Communications 2 Traditional Networks Vertically integrated Closed, proprietary Slow innovation 3 Infinite Complexity of Testing Across virtual

More information

Experience of the RISE Testbed Deployment

Experience of the RISE Testbed Deployment Internet2 FTW: International OpenFlow/SDN Testbeds Experience of the RISE Testbed Deployment Eiji Kawai Director, Network Testbed R&D Lab NICT JGN-X JGN-X is a wide-area network testbed operated by NICT

More information

The control plane challenges in converged 5G networks - scalability, application awareness, multi-tenancy, and more

The control plane challenges in converged 5G networks - scalability, application awareness, multi-tenancy, and more IBM Israel HRL Cloud Networking Group 5G PPP PHASE 2 INFORMATION DAY AND STAKEHOLDERS EVENT June 30, 2016 Athens Greece The control plane challenges in converged 5G networks - scalability, application

More information

Networking in Virtual Infrastructure and Future Internet. NCHC Jen-Wei Hu

Networking in Virtual Infrastructure and Future Internet. NCHC Jen-Wei Hu Networking in Virtual Infrastructure and Future Internet NCHC Jen-Wei Hu Overview Virtualization Networking in Virtualization Future Internet 2 Hardware virtualization Hardware virtualization techniques

More information

Data fusion algorithms for network anomaly detection: classification and evaluation

Data fusion algorithms for network anomaly detection: classification and evaluation Data fusion algorithms for network anomaly detection: classification and evaluation V. Chatzigiannakis, G. Androulidakis, K. Pelechrinis, S. Papavassiliou and V. Maglaris Network Management & Optimal Design

More information

DDoS Protection in Backbone Networks

DDoS Protection in Backbone Networks DDoS Protection in Backbone Networks The Czech Way Pavel Minarik, Chief Technology Officer Holland Strikes Back, 3 rd Oct 2017 Backbone DDoS protection Backbone protection is specific High number of up-links,

More information

Design and Implementation of Virtual TAP for Software-Defined Networks

Design and Implementation of Virtual TAP for Software-Defined Networks Design and Implementation of Virtual TAP for Software-Defined Networks - Master Thesis Defense - Seyeon Jeong Supervisor: Prof. James Won-Ki Hong Dept. of CSE, DPNM Lab., POSTECH, Korea jsy0906@postech.ac.kr

More information

OpenFlow: What s it Good for?

OpenFlow: What s it Good for? OpenFlow: What s it Good for? Apricot 2016 Pete Moyer pmoyer@brocade.com Principal Solutions Architect Agenda SDN & OpenFlow Refresher How we got here SDN/OF Deployment Examples Other practical use cases

More information

A Software-Defined Networking Security Controller Architecture. Fengjun Shang, Qiang Fu

A Software-Defined Networking Security Controller Architecture. Fengjun Shang, Qiang Fu 4th International Conference on Machinery, Materials and Computing Technology (ICMMCT 2016) A Software-Defined Networking Security Controller Architecture Fengjun Shang, Qiang Fu College of Computer Science

More information

EXPERIMENTAL STUDY OF FLOOD TYPE DISTRIBUTED DENIAL-OF- SERVICE ATTACK IN SOFTWARE DEFINED NETWORKING (SDN) BASED ON FLOW BEHAVIORS

EXPERIMENTAL STUDY OF FLOOD TYPE DISTRIBUTED DENIAL-OF- SERVICE ATTACK IN SOFTWARE DEFINED NETWORKING (SDN) BASED ON FLOW BEHAVIORS EXPERIMENTAL STUDY OF FLOOD TYPE DISTRIBUTED DENIAL-OF- SERVICE ATTACK IN SOFTWARE DEFINED NETWORKING (SDN) BASED ON FLOW BEHAVIORS Andry Putra Fajar and Tito Waluyo Purboyo Faculty of Electrical Engineering,

More information

Introduction to FEDERICA

Introduction to FEDERICA Introduction to FEDERICA Mauro Campanella GARR Mauro.campanella@garr.it FEDERICA tutorial, June 7 th 2009 - Malaga, Spain Agenda 15.00-15.15 Introduction to FEDERICA, Mauro Campanella (GARR) 15.15-16.00

More information

Enterprise Network Compute System (ENCS)

Enterprise Network Compute System (ENCS) Enterprise Network Compute System (ENCS) Cisco vbranch Architecture Per Jensen, per@cisco.com Sept 2017 Agenda: Tech Update september-2017 1. ENCS update + demo v/per 2. Viptela update + demo v/dr Søren

More information

ETSI FUTURE Network SDN and NFV for Carriers MP Odini HP CMS CT Office April 2013

ETSI FUTURE Network SDN and NFV for Carriers MP Odini HP CMS CT Office April 2013 ETSI FUTURE Network SDN and NFV for Carriers MP Odini HP CMS CT Office April 2013 Challenges and Opportunities Reduce Capex/Opex Challenges Innovation at devices and OTT side Number of devices explode

More information

The Virtual Brick Road Achievements and Challenges in NFV Space. Diego R. Lopez Telefónica NFV ISG Technical Manager October 2013

The Virtual Brick Road Achievements and Challenges in NFV Space. Diego R. Lopez Telefónica NFV ISG Technical Manager October 2013 The Virtual Brick Road Achievements and Challenges in NFV Space Diego R. Lopez Telefónica NFV ISG Technical Manager October 2013 The NFV Concept A means to make the network more flexible and simple by

More information

Managing Federations of Virtualized Infrastructures: A Semantic-Aware Policy Based Approach

Managing Federations of Virtualized Infrastructures: A Semantic-Aware Policy Based Approach 3rd IFIP/IEEE Workshop on Management of the Future Internet Managing Federations of Virtualized Infrastructures: A Semantic-Aware Policy Based Approach Leonidas Lymberopoulos, Paola Grosso, Chrysa Papagianni,

More information

Lecture 14 SDN and NFV. Antonio Cianfrani DIET Department Networking Group netlab.uniroma1.it

Lecture 14 SDN and NFV. Antonio Cianfrani DIET Department Networking Group netlab.uniroma1.it Lecture 14 SDN and NFV Antonio Cianfrani DIET Department Networking Group netlab.uniroma1.it Traditional network vs SDN TRADITIONAL Closed equipment Software + hardware Cost Vendor-specific management.

More information

Interconnected NRENs in Europe & GÉANT: Mission & Governance Issues

Interconnected NRENs in Europe & GÉANT: Mission & Governance Issues Interconnected NRENs in Europe & GÉANT: Mission & Governance Issues Vasilis Maglaris maglaris@netmode.ntua.gr Professor, National Technical University of Athens - NTUA Chairman, NREN Policy Committee GÉANT

More information

VNF Service Chaining on SAVI SDI

VNF Service Chaining on SAVI SDI VNF Service Chaining on SAVI SDI Pouya Yasrebi 1,2(B), Spandan Bemby 1,2, Hadi Bannazadeh 1,2, and Alberto Leon-Garcia 1,2 1 University of Toronto, Toronto, ON, Canada {pouya.yasrebi,spandan.bemby,hadi.bannazadeh,

More information

Ethernet Fabrics- the logical step to Software Defined Networking (SDN) Frank Koelmel, Brocade

Ethernet Fabrics- the logical step to Software Defined Networking (SDN) Frank Koelmel, Brocade Ethernet Fabrics- the logical step to Software Defined Networking (SDN) Frank Koelmel, Brocade fkoelmel@broc 10/28/2013 2 2012 Brocade Communications Systems, Inc. Proprietary Information ETHERNET FABRICS

More information

Driving Network Visibility

Driving Network Visibility Flowmon Price List EUR Driving Network Visibility Flowmon Hardware Appliances... 2 Flowmon Virtual Appliances... 3 Flowmon Cloud... 3 Flowmon ADS Anomaly Detection System... 4 Flowmon DDoS Defender...

More information

The SPARKS Project Motivation, Objectives and Results

The SPARKS Project Motivation, Objectives and Results The SPARKS Project Motivation, Objectives and Results Paul Smith paul.smith@ait.ac.at AIT Austrian Institute of Technology SEGRID Project Workshop 14 th November, 2016, Barcelona, Spain The SPARKS Project

More information

FEDERATED VIRTUALIZED INFRASTRUCTURES AND FUTURE INTERNET RESEARCH:

FEDERATED VIRTUALIZED INFRASTRUCTURES AND FUTURE INTERNET RESEARCH: FEDERATED VIRTUALIZED INFRASTRUCTURES AND FUTURE INTERNET RESEARCH: European National Research & Education Networks - NRENs/ GÉANT supporting FEDERICA & NOVI Future Internet Initiatives Vasilis Maglaris

More information

Container Network Functions: Bringing NFV to the Network Edge

Container Network Functions: Bringing NFV to the Network Edge Container Network Functions: Bringing NFV to the Network Edge Richard Cziva University of Glasgow Richard.Cziva@glasgow.ac.uk SDN / NFV WORLD CONGRESS 2017, The Hague, Netherlands About Netlab University

More information

ANALYSIS AND EVALUATION OF DISTRIBUTED DENIAL OF SERVICE ATTACKS IDENTIFICATION METHODS

ANALYSIS AND EVALUATION OF DISTRIBUTED DENIAL OF SERVICE ATTACKS IDENTIFICATION METHODS ANALYSIS AND EVALUATION OF DISTRIBUTED DENIAL OF SERVICE ATTACKS IDENTIFICATION METHODS Saulius Grusnys, Ingrida Lagzdinyte Kaunas University of Technology, Department of Computer Networks, Studentu 50,

More information

K a t h y Meier- H e l l s t e r n, P h D

K a t h y Meier- H e l l s t e r n, P h D T h e C a r r i e r C h a l l e n g e A c h i e v i n g 5-9 s a v a i l a b i l i t y o n 3-9 s C l o u d i n f r a s t r u c t u r e K a t h y Meier- H e l l s t e r n, P h D Assistant Vice President

More information

The New Internet2 Network

The New Internet2 Network The New Internet2 Network Director Network Research, Architecture, and Technologies Internet2 GLIF Meeting 11 September 2006 Tokyo, Japan Agenda Basic Ideas Design Ideas Topology Optical nodes Control

More information

Mobile Network Architecture: End-to-End Network Slicing for 5G and Beyond

Mobile Network Architecture: End-to-End Network Slicing for 5G and Beyond Mobile Network Architecture: End-to-End Network Slicing for 5G and Beyond The path from concepts to practice: The 5G PPP Phase 2 project 5G-MoNArch Simon Fletcher, Real Wireless, London, United Kingdom

More information

NFV / SDN RAM* Standards Contribution Overview

NFV / SDN RAM* Standards Contribution Overview NFV / SDN RAM* Standards Contribution Overview IEEE SRPSDVE Study Group December 8, 2014 Rob Paterson KerrNet Consulting Inc Ottawa, Canada * RAM = Reliability, Availability, Maintainability 1 Drivers

More information

IT Infrastructure. Transforming Networks to Meet the New Reality. Phil O Reilly, CTO Federal AFCEA-GMU C4I Symposium May 20, 2015

IT Infrastructure. Transforming Networks to Meet the New Reality. Phil O Reilly, CTO Federal AFCEA-GMU C4I Symposium May 20, 2015 IT Infrastructure Transforming Networks to Meet the New Reality Phil O Reilly, CTO Federal AFCEA-GMU C4I Symposium May 20, 2015 2015 BROCADE COMMUNICATIONS SYSTEMS, INC. COMPANY PROPRIETARY INFORMATION

More information

SDN+NFV Next Steps in the Journey

SDN+NFV Next Steps in the Journey SDN+NFV Next Steps in the Journey Margaret T. Chiosi AT&T Labs Distinguished Architect SDN-NFV Realization 2015 AT&T Intellectual Property. All rights reserved. AT&T, the AT&T logo and all other AT&T marks

More information

How DPI enables effective deployment of CloudNFV. David Le Goff / Director, Strategic & Product Marketing March 2014

How DPI enables effective deployment of CloudNFV. David Le Goff / Director, Strategic & Product Marketing March 2014 How DPI enables effective deployment of CloudNFV David Le Goff / Director, Strategic & Product Marketing March 2014 Key messages of this presentation 1. DPI (Deep Packet Inspection) is critical for effective

More information

Piggybacking Network Functions on SDN Reactive Routing: A Feasibility Study

Piggybacking Network Functions on SDN Reactive Routing: A Feasibility Study Piggybacking Network Functions on SDN Reactive Routing: A Feasibility Study Chang Liu *, Arun Raghuramu *, Chen-Nee Chuah *, and Balachander Krishnamurthy ** * University of California, Davis; **AT&T Labs-Research

More information

FELIX project : Overview and the results. Tomohiro Kudoh (The University of Tokyo / AIST) on behalf of all FELIX partners

FELIX project : Overview and the results. Tomohiro Kudoh (The University of Tokyo / AIST) on behalf of all FELIX partners FELIX project : Overview and the results Tomohiro Kudoh (The University of Tokyo / AIST) on behalf of all FELIX partners FELIX partners European Partners: Japanese Partners: PSNC (coord.) AIST (coord.)

More information

SDN (Software-Defined Networking) Enabling Network Innovation from Edge

SDN (Software-Defined Networking) Enabling Network Innovation from Edge SDN (Software-Defined Networking) Enabling Network Innovation from Edge Gaogang XIE http://www.fnii.cn http://www.ict.ac.cn Internet 20 Year in China April 20, 1994, NCFC (The National Computing and Networking

More information

Data Path acceleration techniques in a NFV world

Data Path acceleration techniques in a NFV world Data Path acceleration techniques in a NFV world Mohanraj Venkatachalam, Purnendu Ghosh Abstract NFV is a revolutionary approach offering greater flexibility and scalability in the deployment of virtual

More information

Managing a Virtual Network Function using SDN and Control Theory

Managing a Virtual Network Function using SDN and Control Theory Managing a Virtual Network Function using SDN and Control Theory GENI Summer Camp @ TAMU May 24 th, 2017 Ibrahim Matta Joint work with Nabeel Akhtar and Yuefeng Wang GENI resources that we need Network

More information

Using SDN and NFV to Realize a Scalable and Resilient Omni-Present Firewall

Using SDN and NFV to Realize a Scalable and Resilient Omni-Present Firewall Institute of Computer Science Chair of Communication Networks Prof. Dr.-Ing. P. Tran-Gia Using SDN and NFV to Realize a Scalable and Resilient Omni-Present Firewall comnet.informatik.uni-wuerzburg.de SarDiNe

More information

EFFECTIVE INTRUSION DETECTION AND REDUCING SECURITY RISKS IN VIRTUAL NETWORKS (EDSV)

EFFECTIVE INTRUSION DETECTION AND REDUCING SECURITY RISKS IN VIRTUAL NETWORKS (EDSV) Available Online at www.ijcsmc.com International Journal of Computer Science and Mobile Computing A Monthly Journal of Computer Science and Information Technology IJCSMC, Vol. 3, Issue. 8, August 2014,

More information

5G/NR Architecture Is it revolutionary or evolutionary?

5G/NR Architecture Is it revolutionary or evolutionary? 5G/NR Architecture Is it revolutionary or evolutionary? The 5G-MoNArch view David M. Gutierrez Estevez Senior 5G Researcher Samsung Electronics R&D Institute UK IEEE CSCN, September 2017 Initial Thoughts

More information

Interactive Monitoring, Visualization, and Configuration of OpenFlow-Based SDN

Interactive Monitoring, Visualization, and Configuration of OpenFlow-Based SDN Interactive Monitoring, Visualization, and Configuration of OpenFlow-Based SDN Pedro Heleno Isolani Juliano Araujo Wickboldt Cristiano Bonato Both Lisandro Zambenedetti Granville Juergen Rochol July 16,

More information

SDN TO BE OR NOT TO BE. Uwe Richter SE Director Russia/CIS, East and South East Europe

SDN TO BE OR NOT TO BE. Uwe Richter SE Director Russia/CIS, East and South East Europe SDN TO BE OR NOT TO BE Uwe Richter SE Director Russia/CIS, East and South East Europe uwe@juniper.net FUNDAMENTAL PROBLEMS TO SOLVE Want more innovation in networking Want it more quickly too Want more

More information

SDN/NFV for Cloud Data Centers: Case Study

SDN/NFV for Cloud Data Centers: Case Study SDN/NFV for Cloud Data Centers: Case Study June, 2014 안종석 (JongSeog Ahn) Senior Managing Director NAIM Networks james@naimnetworks.com 내용 NFV/SDN ONF의 SDN NFV NFV/SDN Use Cases and PoC NFV and SDN Industry

More information

5G TAKE5 TEST NETWORK and

5G TAKE5 TEST NETWORK and 5G TAKE5 TEST NETWORK and 5G@II Raimo Kantola raimo.kantola@aalto.fi www.re2ee.org November 17 th, 2016 Agenda TAKE 5 Test Network - Otaniemi and Helsinki City center: 2017-2018 What and why Network Slicing:

More information

Cisco SD-WAN and DNA-C

Cisco SD-WAN and DNA-C Cisco SD-WAN and DNA-C SD-WAN Cisco SD-WAN Intent-based networking for the branch and WAN 4x Improved application experience Better user experience Deploy applications in minutes on any platform with consistent

More information

Firewall offloading based on SDN and NFV

Firewall offloading based on SDN and NFV Chair of Communication Networks Department of Electrical and Computer Engineering Technical University of Munich Firewall offloading based on SDN and NFV ITG 5.2.2/5.2.4 05.12.2016 Raphael Durner r.durner@tum.de

More information

WIND RIVER TITANIUM CLOUD FOR TELECOMMUNICATIONS

WIND RIVER TITANIUM CLOUD FOR TELECOMMUNICATIONS WIND RIVER TITANIUM CLOUD FOR TELECOMMUNICATIONS Carrier networks are undergoing their biggest transformation since the beginning of the Internet. The ability to get to market quickly and to respond to

More information

Multi-tenancy of network operators and edge cloud services using small cells

Multi-tenancy of network operators and edge cloud services using small cells Multi-tenancy of network operators and edge cloud services using small cells Emmanouil Kafetzakis, Ph.D. ORION Innovations P.C. mkafetz@orioninnovations.gr Infocom World 2017, 25-10-2017 Athens, Greece

More information

Agenda. Introduction Network functions virtualization (NFV) promise and mission cloud native approach Where do we want to go with NFV?

Agenda. Introduction Network functions virtualization (NFV) promise and mission cloud native approach Where do we want to go with NFV? August, 2018 Agenda Introduction Network functions virtualization (NFV) promise and mission cloud native approach Where do we want to go with NFV? 2 Miroslaw Walukiewicz I m from Gdansk, Poland. 25 years

More information

SDN Software Switch Lagopus enables SDN/NFV transformation

SDN Software Switch Lagopus enables SDN/NFV transformation SDN Software Switch Lagopus enables SDN/NFV transformation Hitoshi Masutani NTT Network Innovation Labs. Nov 25 th 2016 0 Agenda 1. Background & motivation 2. SDN Software switch Lagopus 3. NFV Node with

More information

Location. AttoResearch US founded Silicon Valley, US. AttoResearch founded Techno Valley, Seongnam, Korea

Location. AttoResearch US founded Silicon Valley, US. AttoResearch founded Techno Valley, Seongnam, Korea 2010.10 Atto Research founded (Silicon Valley, US) 2012. 2 Atto Research Korea founded. 2013. 1 SDN Controller AttNet released. 2013. 6 R&D center established (Techno Valley, Seongnam, Korea) 2014. 3 OpenFlow

More information

Contrail Cloud Platform Architecture

Contrail Cloud Platform Architecture Contrail Cloud Platform Architecture Release 13.0 Modified: 2018-08-23 Juniper Networks, Inc. 1133 Innovation Way Sunnyvale, California 94089 USA 408-745-2000 www.juniper.net Juniper Networks, the Juniper

More information

Athens, Greece _ October 25, /26

Athens, Greece _ October 25, /26 A Comparative Assessment between Architectural innovations coming from the and the 5G Projects Alexandros Kostopoulos, Ph.D. Research Programs Section, Fixed Research & Development Fixed & Mobile, Technology

More information

SDN and NFV as expressions of a systemic trend «integrating» Cloud, Networks and Terminals

SDN and NFV as expressions of a systemic trend «integrating» Cloud, Networks and Terminals SDN and NFV as expressions of a systemic trend «integrating» Cloud, Networks and Terminals Antonio Manzalini, Chair of the IEEE SDN initiative Bobby Wong, Program Director SDN-NFV Standardization Committee

More information

TRANSCLOUD: Design Considerations for a. Multiple Administrative Domains Rick McGeer, HP Labs. August 1, 2010

TRANSCLOUD: Design Considerations for a. Multiple Administrative Domains Rick McGeer, HP Labs. August 1, 2010 TRANSCLOUD: Design Considerations for a High-Performance Cloud Architecture Across Multiple Administrative Domains Rick McGeer, HP Labs For the TransCloud Team: HP Labs, UC San Diego, University of Victoria,

More information

A Blockchain-based Architecture for Collaborative DDoS Mitigation with Smart Contracts

A Blockchain-based Architecture for Collaborative DDoS Mitigation with Smart Contracts A Blockchain-based Architecture for Collaborative DDoS Mitigation with Smart Contracts Bruno Rodrigues 1, Thomas Bocek 1, David Hausheer 2, Andri Lareida 1, Sina Rafati 1, Burkhard Stiller 1 1 Communication

More information

GEANT testbed service (GTS) for R&E community Based on cloud technologies

GEANT testbed service (GTS) for R&E community Based on cloud technologies GEANT testbed service (GTS) for R&E community Based on cloud technologies Nicolai ILIUHA, nicolai.iliuha@renam.md Task 3 participant, GEANT4-2, JRA2 Network Services Development Leading specialist, Research

More information

Overview on FP7 Projects SPARC and UNIFY

Overview on FP7 Projects SPARC and UNIFY Overview on FP7 Projects SPARC and UNIFY Mario Kind, Telekom Innovation Laboratories, Deutsche Telekom AG UNIFY is co-funded by the European Commission DG CONNECT in FP7 Recent activities on SDN, NFV FP7

More information

Network Virtualization for Future Internet Research

Network Virtualization for Future Internet Research Network Virtualization for Future Internet Research Mauro Campanella - GARR On behalf of the FEDERICA project Internet2 Fall Meeting New Orleans, October 14th, 2008 Agenda FEDERICA at a glance, vision

More information

Leveraging SDN for Collaborative DDoS Mitigation

Leveraging SDN for Collaborative DDoS Mitigation Leveraging SDN for Collaborative DDoS Mitigation Sufian Hameed, Hassan Ahmed Khan IT Security Labs, National University of Computer and Emerging Sciences (FAST-NUCES), Pakistan sufian.hameed@nu.edu.pk

More information

T-CAP (Converged Appliance Platform)

T-CAP (Converged Appliance Platform) T-CAP (Converged Appliance Platform) 2016. 6 Sohn, Minho / SDI Tech. Lab 0 Trends Data Center Networking is changing. New Architecture for Virtualization, Big Storage, Overlay N/W, Computing & Storage

More information

Thomas Lin, Naif Tarafdar, Byungchul Park, Paul Chow, and Alberto Leon-Garcia

Thomas Lin, Naif Tarafdar, Byungchul Park, Paul Chow, and Alberto Leon-Garcia Thomas Lin, Naif Tarafdar, Byungchul Park, Paul Chow, and Alberto Leon-Garcia The Edward S. Rogers Sr. Department of Electrical and Computer Engineering University of Toronto, ON, Canada Motivation: IoT

More information

Looking Beyond the Internet

Looking Beyond the Internet Looking Beyond the Internet The Rise of Software-Defined Infrastructure Chip Elliott, BBN celliott@bbn.com My thesis Software Defined Networking (SDN) was just an opening act A major transformation of

More information

PROVIDING NETWORK OPERATOR MULTI-TENANCY AND EDGE CLOUD SERVICES USING SMALL CELLS

PROVIDING NETWORK OPERATOR MULTI-TENANCY AND EDGE CLOUD SERVICES USING SMALL CELLS PROVIDING NETWORK OPERATOR MULTI-TENANCY AND EDGE CLOUD SERVICES USING SMALL CELLS Ioannis Giannoulakis, Ph.D. National Centre for Scientific Research Demokritos giannoul@iit.demokritos.gr Emmanouil Kafetzakis,

More information

Communication System Design Projects. Communication System Design:

Communication System Design Projects. Communication System Design: Communication System Design Projects KUNGLIGA TEKNISKA HÖGSKOLAN PROFESSOR: DEJAN KOSTIC TEACHING ASSISTANT: GEORGIOS KATSIKAS Communication System Design: https://www.kth.se/social/course/ik2200/ Traditional

More information

CableLabs update for ODL Advisory Group

CableLabs update for ODL Advisory Group CableLabs update for ODL Advisory Group Chris Donley May 21, 2015 Cable Television Laboratories, Inc. 2015. Do not share this material with anyone other than CableLabs Members, and vendors under CableLabs

More information

MAKING THE CLOUD A SECURE EXTENSION OF YOUR DATACENTER

MAKING THE CLOUD A SECURE EXTENSION OF YOUR DATACENTER MAKING THE CLOUD A SECURE EXTENSION OF YOUR DATACENTER Bret Hartman Cisco / Security & Government Group Session ID: SPO1-W25 Session Classification: General Interest 1 Mobility Cloud Threat Customer centric

More information

Future Internet Research using OpenFlow

Future Internet Research using OpenFlow 13 th German-Japanese Symposium Future Internet Research using OpenFlow NEC Corporation 13 September, 2010 Page 1 Agenda Trend of ICT world Infrastructure virtualization and Network OS OpenFlow for network

More information

Security in Cloud Environments

Security in Cloud Environments Security in Cloud Environments Security Product Manager Joern Mewes (joern.mewes@nokia.com) 16-11-2016 1 Cloud transformation happens in phases and will take 5+ years Steps into the cloud Now 2016+ 2020+

More information

Software-Defined Networking (SDN) Overview

Software-Defined Networking (SDN) Overview Reti di Telecomunicazione a.y. 2015-2016 Software-Defined Networking (SDN) Overview Ing. Luca Davoli Ph.D. Student Network Security (NetSec) Laboratory davoli@ce.unipr.it Luca Davoli davoli@ce.unipr.it

More information

A Hybrid Intrusion Detection System Of Cluster Based Wireless Sensor Networks

A Hybrid Intrusion Detection System Of Cluster Based Wireless Sensor Networks A Hybrid Intrusion Detection System Of Cluster Based Wireless Sensor Networks An efficient intrusion detection framework in cluster-based wireless sensor networks Paper: A lightweight hybrid security framework

More information

MWC 2015 End to End NFV Architecture demo_

MWC 2015 End to End NFV Architecture demo_ MWC 2015 End to End NFV Architecture demo_ March 2015 demonstration @ Intel booth Executive summary The goal is to demonstrate how an advanced multi-vendor implementation of the ETSI ISG NFV architecture

More information

Meraki 2014 Solution Brochure

Meraki 2014 Solution Brochure Meraki 2014 Solution Brochure Introduction 100% Cloud Managed Enterprise Networks Cisco Meraki cloud managed edge, branch, and campus networking solutions bring simplicity to enterprise-class networks.

More information

Systems Engineering for Software-Defined Network Virtualisation. John Risson, Solutions Engineering Manager IP and Transport Engineering, Telstra

Systems Engineering for Software-Defined Network Virtualisation. John Risson, Solutions Engineering Manager IP and Transport Engineering, Telstra Systems Engineering for Software-Defined Network Virtualisation John Risson, Solutions Engineering Manager IP and Transport Engineering, Telstra Agenda Motivation Case Studies Opportunities and Challenges

More information

Networks and/in data centers! Dr. Paola Grosso! System and Network Engineering (SNE) research group! UvA!

Networks and/in data centers! Dr. Paola Grosso! System and Network Engineering (SNE) research group! UvA! Networks and/in data centers Dr. Paola Grosso System and Network Engineering (SNE) research group UvA Email: p.grosso@uva.nl ICT for sustainability Green by ICT or Green ICT. We ll cover in my presentation:

More information

Brocade Flow Optimizer

Brocade Flow Optimizer DATA SHEET Brocade Flow Optimizer Highlights Helps improve business agility by streamlining network operations via policy-driven visibility and control of network flows Provides distributed attack mitigation

More information

Cross-Site Virtual Network Provisioning in Cloud and Fog Computing

Cross-Site Virtual Network Provisioning in Cloud and Fog Computing This paper was accepted for publication in the IEEE Cloud Computing. The copyright was transferred to IEEE. The final version of the paper will be made available on IEEE Xplore via http://dx.doi.org/10.1109/mcc.2017.28

More information

The FELIX project Sustainability. Bartosz Belter, PSNC

The FELIX project Sustainability. Bartosz Belter, PSNC The FELIX project Sustainability Bartosz Belter, PSNC FIRE Board Meeting, Brussels.BE October 2, 2015 What is FELIX A federation is a union comprising a number of partially self-governing regions united

More information

SDN, SD-WAN, NFV, VNF I m confused!

SDN, SD-WAN, NFV, VNF I m confused! SDN, SD-WAN, NFV, VNF I m confused! Presenter: Tim Sullivan CEO, Coevolve @timsullo April 2017 Introduction to Coevolve Coevolve was established in 2014 to help drive enterprise adoption of next-generation

More information

James Won-Ki Hong. Distributed Processing & Network Management Lab. Dept. of Computer Science and Engineering POSTECH, Korea.

James Won-Ki Hong. Distributed Processing & Network Management Lab. Dept. of Computer Science and Engineering POSTECH, Korea. James Won-Ki Hong Distributed Processing & Network Management Lab. Dept. of Computer Science and Engineering POSTECH, Korea jwkhong@postech.ac.kr 2017. 7. 6 DPNM Lab., POSTECH NetSoft 2017 DEP Network

More information

Framework for Large-scale SDN Experiments via Software Defined Federated Infrastructures

Framework for Large-scale SDN Experiments via Software Defined Federated Infrastructures Framework for Large-scale SDN Experiments via Software Defined Federated Infrastructures Gino Carrozzo and Kostas Pentikousis on behalf of the FP7 FELIX Consortium IETF 93 SDNG eeting Prague, Czech epublic

More information

OpenADN: Service Chaining of Globally Distributed VNFs

OpenADN: Service Chaining of Globally Distributed VNFs OpenADN: Service Chaining of Globally Distributed VNFs Project Leader: Subharthi Paul Washington University in Saint Louis Saint Louis, MO 63130 Jain@cse.wustl.edu Software Telco Congress, Santa Clara,

More information

Strengthening Network Security: An SDN (Software Defined Networking) Approach

Strengthening Network Security: An SDN (Software Defined Networking) Approach Strengthening Network Security: An SDN (Software Defined Networking) Approach Pradeep Kumar Sharma 1, Dr. S. S. Tyagi 2 1 Ph.D Research Scholar, Computer Science & Engineering, MRIU, Faridabad, Haryana,

More information

Testbed Federation - 1 -

Testbed Federation - 1 - Testbed Federation Ongoing work with EU FP7 project partners to Federate KOREN resources with International testbed Each partners resources will be visible, manageable, usable from federated partners and

More information

Xantaro Application Integration. Value Added & Central Services

Xantaro Application Integration. Value Added & Central Services Xantaro Application Integration Value Added & Central Services Xantaro Value Added & Central Services The telecommunications industry is evolving rapidly to embrace innovative new applications and services,

More information

Contrail Cloud Platform Architecture

Contrail Cloud Platform Architecture Contrail Cloud Platform Architecture Release 10.0 Modified: 2018-04-04 Juniper Networks, Inc. 1133 Innovation Way Sunnyvale, California 94089 USA 408-745-2000 www.juniper.net Juniper Networks, the Juniper

More information

On the Practical Applicability of SDN Research

On the Practical Applicability of SDN Research On the Practical Applicability of SDN Research Roberto di Lallo Gabriele Lospoto Massimo Rimondini Mirko Gradillo Claudio Pisa IEEE/IFIP Network Operations and Management Symposium Istanbul Turkey 25/29

More information

DPDK Summit China 2017

DPDK Summit China 2017 DPDK Summit China 2017 2 Practice of Network Monitoring and Security Technologies in Cloud Data Center Kai, Wang YunShan Networks Data center is evolving to be cloud based and software defined The monitoring

More information

Call for Papers for Communication QoS, Reliability and Modeling Symposium

Call for Papers for Communication QoS, Reliability and Modeling Symposium Call for Papers for Communication QoS, Reliability and Modeling Symposium Scope and Motivation: In modern communication networks, different technologies need to cooperate with each other for end-to-end

More information

The New Infrastructure Virtualization Paradigm, What Does it Mean for Campus?

The New Infrastructure Virtualization Paradigm, What Does it Mean for Campus? The New Infrastructure Virtualization Paradigm, What Does it Mean for Campus? Jean-Marc Uzé Juniper Networks juze@juniper.net Networkshop 36, Glasgow, April 8 th 2008 Copyright 2008 Juniper Networks, Inc.

More information

Innovation Technology for Future Convergence Network

Innovation Technology for Future Convergence Network KRnet 2013 Keynote Speech Innovation Technology for Future Convergence Network Jinsung Choi, Ph.D. EVP, Head of ICT R&D Division, SK Telecom Contents I. Key Trends Driving Network Evolution II. Innovation

More information

Virtualizing Managed Business Services for SoHo/SME Leveraging SDN/NFV and vcpe

Virtualizing Managed Business Services for SoHo/SME Leveraging SDN/NFV and vcpe Virtualizing Managed Business Services for SoHo/SME Leveraging SDN/NFV and vcpe A Technical Paper prepared for SCTE/ISBE by Ajay Manuga VP Engineering Benu Networks amanuja@benunets.com 2017 SCTE-ISBE

More information