Virtual Private Ad Hoc Networks Next-generation network communication

Slides:



Advertisements
Similar presentations
A Flexible Model for Resource Management in Virtual Private Networks Presenter: Huang, Rigao Kang, Yuefang.
Advertisements

Rev A8/8/021 ABC Networks
Arsitektur Jaringan Terkini
1 In VINI Veritas: Realistic and Controlled Network Experimentation Jennifer Rexford with Andy Bavier, Nick Feamster, Mark Huang, and Larry Peterson
This work is supported by the National Science Foundation under Grant Number DUE Any opinions, findings and conclusions or recommendations expressed.
Chapter 6 SECURE WIRELESS PERSONAL NETWORKS: HOME EXTENDED TO ANYWHERE.
SESSION 9 THE INTERNET AND THE NEW INFORMATION NEW INFORMATIONTECHNOLOGYINFRASTRUCTURE.
Internet Protocol Security (IPSec)
© Wiley Inc All Rights Reserved. CCNA: Cisco Certified Network Associate Study Guide CHAPTER 8: Virtual LANs (VLANs)
MCTS Guide to Microsoft Windows Server 2008 Network Infrastructure Configuration Chapter 9 Network Policy and Access Services in Windows Server 2008.
Data Center Network Redesign using SDN
1 The SpaceWire Internet Tunnel and the Advantages It Provides For Spacecraft Integration Stuart Mills, Steve Parkes Space Technology Centre University.
Tanenbaum & Van Steen, Distributed Systems: Principles and Paradigms, 2e, (c) 2007 Prentice-Hall, Inc. All rights reserved DISTRIBUTED.
DISTRIBUTED SYSTEMS Principles and Paradigms Second Edition ANDREW S
Common Devices Used In Computer Networks
Objectives Configure routing in Windows Server 2008 Configure Routing and Remote Access Services in Windows Server 2008 Network Address Translation 1.
VIRTUAL PRIVATE NETWORK By: Tammy Be Khoa Kieu Stephen Tran Michael Tse.
BZUPAGES.COM. What is a VPN VPN is an acronym for Virtual Private Network. A VPN provides an encrypted and secure connection "tunnel" path from a user's.
Department of Information Technology – Broadband Communication Networks Virtual Private Ad Hoc Networks Next-generation network communication Jeroen Hoebeke,
Cisco 3 - LAN Perrine. J Page 110/20/2015 Chapter 8 VLAN VLAN: is a logical grouping grouped by: function department application VLAN configuration is.
Virtual Private Ad Hoc Networking Jeroen Hoebeke, Gerry Holderbeke, Ingrid Moerman, Bard Dhoedt and Piet Demeester 2006 July 15, 2009.
1 4/23/2007 Introduction to Grid computing Sunil Avutu Graduate Student Dept.of Computer Science.
Chapter2 Networking Fundamentals
Cisco S3C3 Virtual LANS. Why VLANs? You can define groupings of workstations even if separated by switches and on different LAN segments –They are one.
Security fundamentals Topic 10 Securing the network perimeter.
Copyright © The McGraw-Hill Companies, Inc. Permission required for reproduction or display. Chapter Ten Internetworking.
“Local Area Networks” - Gerd Keiser Copyright © The McGraw-Hill Companies srl Local Area Networks Gerd Keiser.
Internet of Things. IoT Novel paradigm – Rapidly gaining ground in the wireless scenario Basic idea – Pervasive presence around us a variety of things.
NCP Info DAY, Brussels, 23 June 2010 NCP Information Day: ICT WP Call 7 - Objective 1.3 Internet-connected Objects Alain Jaume, Deputy Head of Unit.
Summer School on Telecommunications Lappeenranta August Calypso: System Components and Tools for Media Distribution over Broadband Networks Calypso:
Introduction to Avaya’s SDN Architecture February 2015.
Tanenbaum & Van Steen, Distributed Systems: Principles and Paradigms, 2e, (c) 2007 Prentice-Hall, Inc. All rights reserved DISTRIBUTED SYSTEMS.
1 Wireless Networks Lecture 31 Wireless Mesh Networks Dr. Ghalib A. Shah.
For more course tutorials visit NTC 406 Entire Course NTC 406 Week 1 Individual Assignment Network Requirements Analysis Paper NTC 406.
KAPLAN SCHOOL OF INFORMATION SYSTEMS AND TECHNOLOGY IT375 Window Enterprise Administration Course Name – IT Introduction to Network Security Instructor.
Security fundamentals
Chapter 1: Explore the Network
REMOTE MANAGEMENT OF SYSTEM
Mobile equipment for vacuum control
And Presents Spring Forum 2002.
Date: April. 13, Monday Evening.
What are the strategic imperatives?
Chapter 1: Exploring the Network
DEPARTMENT OF COMPUTER SCIENCE AND ENGINEERING CLOUD COMPUTING
Use Case for Distributed Data Center in SUPA
Redcell™ Management Essentials, Juniper Networks Enterprise Edition
GENUS Virtualisation Service for GÉANT and European NRENs
Virtual Local Area Networks (VLANs) Part I
NETW 208 RANK The power of possibility/netw208rank.com
Securing the Network Perimeter with ISA 2004
1st Draft for Defining IoT (1)
Chapter 4: Switched Networks
Virtual LANs.
Aled Edwards, Anna Fischer, Antonio Lain HP Labs
NETW 208 Enthusiastic Studysnaptutorial.com
Business visions behind NGSON
Developing Innovative Unified Communications Applications
Chapter 4: Switched Networks
Goals Introduce the Windows Server 2003 family of operating systems
Virtual Private Network
Thoughts on IEEE 802 network integration with respect to P802.1CF
Chapter 3 VLANs Chaffee County Academy
Cengage Learning: Computer Networking from LANs to WANs
Sensor Networks – Motes, Smart Spaces, and Beyond
Thoughts on IEEE 802 network integration with respect to P802.1CF
QoS based pricing in IP Networks
Utilizing the Network Edge
Introducing MagicInfo 6
IT Management, Simplified
Chapter 8 – Data switching and routing
Presentation transcript:

Virtual Private Ad Hoc Networks Next-generation network communication Jeroen Hoebeke, Ingrid Moerman, Piet Demeester Department of Information Technology – Broadband Communication Networks

Internet evolution The Internet is not for sissies. (Paul Vixie) You can't trust the internet. (Nicolette Sheridan) Department of Information Technology – Broadband Communication Networks

Internet evolution: the network 4G communication networks Evolution towards a “network of networks”, integrating different technologies (WLAN, UMTS, Ad Hoc, cellular…) Characteristics: IP-based Broadband Support of mobility Heterogeneous … Virtual Private Ad Hoc Networks Jeroen Hoebeke, Ingrid Moerman, Piet Demeester

Internet evolution: the devices Device evolution More and more networked devices Convergence of network devices and consumer electronics (eg. cameras, TV…) Trend towards mobile and wireless access Virtual Private Ad Hoc Networks Jeroen Hoebeke, Ingrid Moerman, Piet Demeester

Internet evolution: consequences Connectivity anywhere, at any time and from any device More and more networked devices supporting people in their daily life Bigger and bigger (users, devices, services…) Overwhelming Security risks Management Configuration … Virtual Private Ad Hoc Networks Jeroen Hoebeke, Ingrid Moerman, Piet Demeester

Internet evolution: the services ? Virtual Private Ad Hoc Networks Jeroen Hoebeke, Ingrid Moerman, Piet Demeester

Internet evolution: what’s next? This large network and its services do not meet many of the users’ communication needs 1 device -> multiple purposes, multiple devices -> 1 purpose So, communication often takes place within a limited context or scope: Work related communication: projects, customers, students… Personal communication: friends, family… …involving a limited (dynamic, mobile) subset of devices that communicate In a secure fashion In a self-organising and easy to manage way And goes further than chat, email… Now: we struggle to interconnect all these devices, to keep their data and communication secure and shielded and to get easy access to their data and services, especially when being nomadic… New communication paradigm needed! Virtual Private Ad Hoc Networks Jeroen Hoebeke, Ingrid Moerman, Piet Demeester

New communication paradigm Trend towards network virtualization 4G IP network = carrier that provides end-to-end connectivity On top: multiple virtual networks that logically structure the network and its services/resources into small secure communities Deployment of ad hoc network techniques Capable of dealing with the distributed, mobile and dynamic characteristics Self-organizing and self-maintaining properties VPAN (Virtual Private Ad Hoc Network) + = Virtual Private Ad Hoc Networks Jeroen Hoebeke, Ingrid Moerman, Piet Demeester

Virtual Private Ad Hoc Networks Definition, concept and applications Department of Information Technology – Broadband Communication Networks

VPAN concept and definition A secure and self-organizing virtual overlay network of distributed nodes deploying ad hoc network techniques and private addressing Secure: both in terms of networking and applications and services VPAN data Encrypted and/or tunneled VPAN data Virtual Private Ad Hoc Networks Jeroen Hoebeke, Ingrid Moerman, Piet Demeester

VPAN concept supports these scenarios in a generic fashion! Applications VPAN members Emergency scenarios Rescue people (police men, fire fighters...) organized in teams Social networks Networks with family, friends Enterprise networking VPAN between collaborating people: within a department, within a project, between people at a construction site, monitoring network, virtual service providers, machine-to-machine networks... Personal networking Personal networks: overlay of all your personal devices E-health: health care network Commercial and civilian environments Cab network, public transport network, surveillance systems, touristic information, building automation... … VPAN concept supports these scenarios in a generic fashion! Virtual Private Ad Hoc Networks Jeroen Hoebeke, Ingrid Moerman, Piet Demeester

Virtual Private Ad Hoc Networks Future vision Department of Information Technology – Broadband Communication Networks

VPAN: future vision Virtual Private Ad Hoc Networks Jeroen Hoebeke, Ingrid Moerman, Piet Demeester

VPAN: future vision Virtual Private Ad Hoc Networks Jeroen Hoebeke, Ingrid Moerman, Piet Demeester

VPAN: future vision Virtual Private Ad Hoc Networks Jeroen Hoebeke, Ingrid Moerman, Piet Demeester

VPAN: future vision Virtual Private Ad Hoc Networks Jeroen Hoebeke, Ingrid Moerman, Piet Demeester

VPAN: future vision Virtual Private Ad Hoc Networks Jeroen Hoebeke, Ingrid Moerman, Piet Demeester

VPAN: future vision Virtual Private Ad Hoc Networks Jeroen Hoebeke, Ingrid Moerman, Piet Demeester

Virtual Private Ad Hoc Networks Network solution Department of Information Technology – Broadband Communication Networks

VPAN network implementation Use case: Personal Network Service discovery and service use selection of shared services service announcements service use Cluster formation Trust relationship Secure neighbour discovery Automatic VPAN IP address assignment Intra-cluster ad hoc routing Universal convergence layer + interface management VPAN establishment Secure registration Dynamic tunneling (NAT bypassing) Inter-cluster ad hoc routing Mobility management Broadcasting support Virtual Private Ad Hoc Networks Jeroen Hoebeke, Ingrid Moerman, Piet Demeester

VPAN network implementation Use case: Personal Network Virtual Private Ad Hoc Networks Jeroen Hoebeke, Ingrid Moerman, Piet Demeester

Virtual Private Ad Hoc Networks Existing technologies? - Deployment – business opportunities Department of Information Technology – Broadband Communication Networks

Limitations of existing technologies Main shortcomings VLAN Limited to Ethernet systems (layer 2 solution) No application, mobility or security support VPN / Dynamic VPN Mainly static (predefined endpoints) Limited mobility support Security only between tunnel endpoints No application support, no cluster self-organisation P2P overlays / service overlays Limited flexibility: too tightly coupled with specific applications Not shielded at network layer, more complex mobility management Assumes underlying connectivity platform: no cluster self-organisation, no interface management... Mobile IP, NEMO ... Only deal with isolated aspects such as mobility management VPAN provides an integrated solution Virtual Private Ad Hoc Networks Jeroen Hoebeke, Ingrid Moerman, Piet Demeester

Deployment – current/future status PCs, PDAs Linux proof-of-concept Windows, Mac OS-X port Access points/routers Alix PC engine Other devices Camera, printer… VPAN supporting Routers Virtual machines Sensors OS support Virtual Private Ad Hoc Networks Jeroen Hoebeke, Ingrid Moerman, Piet Demeester

Business opportunities - thoughts VPAN providers Sell VPANs: VPAN certificates, name, addressing space… Offer web-based VPAN creation and participation functionality Deploy VPAN Agent servers Billing, service models, QoS With VPAN supporting Routers or VPAN-aware networks Different cost models for Internet and VPAN traffic Different VPAN establishment and use policies (flat fee, per use, proactive, reactive…) QoS guarantees Many applications requiring high bandwidth and/or low delay e.g.: video streaming, video conferencing, remote editing of files, well performing use of remote services Virtual devices Offer customers virtual machines that can be added to their VPAN and that offer value-added services … Virtual Private Ad Hoc Networks Jeroen Hoebeke, Ingrid Moerman, Piet Demeester

Virtual Private Ad Hoc Networks Conclusion Department of Information Technology – Broadband Communication Networks

VPAN concept Conclusion Keywords: Network virtualization + ad hoc networking = secure and self-organizing overlay networks Tackles communication needs not addressed by current/future broadband Internet and its services Generic support for many scenarios Implemented proof-of-concept network solution Many possible business opportunities VPAN = “Beyond Connectivity”, mapping digital life to easy-to-use virtual networks Virtual Private Ad Hoc Networks Jeroen Hoebeke, Ingrid Moerman, Piet Demeester

More info? PhD book Projects where VPAN concept or ideas are applied Contact: jeroen.hoebeke@intec.ugent.be Projects where VPAN concept or ideas are applied IBBT TranseCare: health-care networks for elderly IBBT VIN: virtual individal networks IBBT SPAMM: VPAN of busses + backbone IST MAGNET and IST MAGNET Beyond: Personal Networks and Personal Network Federations ITEA2 Usenet: Machine-to-machine communication IBCN testlab Permanent proof-of-concept demonstrator Questions? Virtual Private Ad Hoc Networks Jeroen Hoebeke, Ingrid Moerman, Piet Demeester