Zurich Research Laboratory IBM Zurich Research Laboratory Adaptive End-to-End QoS Guarantees in IP Networks using an Active Network Approach Roman Pletka.

Slides:



Advertisements
Similar presentations
APNOMS2003Fujitsu Laboratories Ltd.1 A QoS Control Method Cooperating with a Dynamic Load Balancing Mechanism Akiko Okamura, Koji Nakamichi, Hitoshi Yamada.
Advertisements

Logically Centralized Control Class 2. Types of Networks ISP Networks – Entity only owns the switches – Throughput: 100GB-10TB – Heterogeneous devices:
CS640: Introduction to Computer Networks Aditya Akella Lecture 20 – QoS.
Telematics group University of Göttingen, Germany Overhead and Performance Study of the General Internet Signaling Transport (GIST) Protocol Xiaoming.
CPSC Topics in Multimedia Networking A Mechanism for Equitable Bandwidth Allocation under QoS and Budget Constraints D. Sivakumar IBM Almaden Research.
Resource Management – a Solution for Providing QoS over IP Tudor Dumitraş, Frances Jen-Fung Ning and Humayun Latif.
CS 268: Active Networks Ion Stoica May 6, 2002 (* Based on David Wheterall presentation from SOSP ’99)
ACN: IntServ and DiffServ1 Integrated Service (IntServ) versus Differentiated Service (Diffserv) Information taken from Kurose and Ross textbook “ Computer.
10 - Network Layer. Network layer r transport segment from sending to receiving host r on sending side encapsulates segments into datagrams r on rcving.
CS 268: Differentiated Services Ion Stoica February 25, 2003.
1 Quality of Service Outline Realtime Applications Integrated Services Differentiated Services.
School of Information Technologies IP Quality of Service NETS3303/3603 Weeks
Internet QoS Syed Faisal Hasan, PhD (Research Scholar Information Trust Institute) Visiting Lecturer ECE CS/ECE 438: Communication Networks.
Efficient agent-based selection of DiffServ SLAs over MPLS networks Thanasis G. Papaioannou a,b, Stelios Sartzetakis a, and George D. Stamoulis a,b presented.
CS 268: Lecture 11 (Differentiated Services) Ion Stoica March 6, 2001.
Cellular IP: Proxy Service Reference: “Incorporating proxy services into wide area cellular IP networks”; Zhimei Jiang; Li Fung Chang; Kim, B.J.J.; Leung,
Tiziana FerrariQuality of Service for Remote Control in the High Energy Physics Experiments CHEP, 07 Feb Quality of Service for Remote Control in.
Paper Review Building a Robust Software-based Router Using Network Processors.
QoS in MPLS SMU CSE 8344.
Integrated Services Advanced Multimedia University of Palestine University of Palestine Eng. Wisam Zaqoot Eng. Wisam Zaqoot December 2010 December 2010.
Integrated Services (RFC 1633) r Architecture for providing QoS guarantees to individual application sessions r Call setup: a session requiring QoS guarantees.
Tufts Wireless Laboratory School Of Engineering Tufts University “Network QoS Management in Cyber-Physical Systems” Nicole Ng 9/16/20151 by Feng Xia, Longhua.
1 Integrated and Differentiated Services Multimedia Systems(Module 5 Lesson 4) Summary: r Intserv Architecture RSVP signaling protocol r Diffserv Architecture.
CSE679: QoS Infrastructure to Support Multimedia Communications r Principles r Policing r Scheduling r RSVP r Integrated and Differentiated Services.
CS Spring 2011 CS 414 – Multimedia Systems Design Lecture 23 - Multimedia Network Protocols (Layer 3) Klara Nahrstedt Spring 2011.
Tiziana Ferrari Quality of Service Support in Packet Networks1 Quality of Service Support in Packet Networks Tiziana Ferrari Italian.
QoS Architectures for Connectionless Networks
CSE QoS in IP. CSE Improving QOS in IP Networks Thus far: “making the best of best effort”
IP QoS for 3G. A Possible Solution The main focus of this network QoS mechanism is to provide one, real time, service in addition to the normal best effort.
© 2006 Cisco Systems, Inc. All rights reserved. Optimizing Converged Cisco Networks (ONT) Module 3: Introduction to IP QoS.
QOS مظفر بگ محمدی دانشگاه ایلام. 2 Why a New Service Model? Best effort clearly insufficient –Some applications need more assurances from the network.
Rev PA Signaled Provisioning of the IP Network Resources Between the Media Gateways in Mobile Networks Leena Siivola
1 Liquid Software Larry Peterson Princeton University John Hartman University of Arizona
Advance Computer Networking L-5 TCP & Routers Acknowledgments: Lecture slides are from the graduate level Computer Networks course thought by Srinivasan.
1 Quality of Service Outline Realtime Applications Integrated Services Differentiated Services MPLS.
Salim Hariri HPDC Laboratory Enhanced General Switch Management Protocol Salim Hariri Department of Electrical and Computer.
Management for IP-based Applications Mike Fisher BTexaCT Research
Applicazione del paradigma Diffserv per il controllo della QoS in reti IP: aspetti teorici e sperimentali Stefano Salsano Università di Roma “La Sapienza”
© Jörg Liebeherr, Quality-of-Service Architectures for the Internet Integrated Services (IntServ)
G53SEC 1 Reference Monitors Enforcement of Access Control.
ACHIEVING MULTIMEDIA QOS OVER HYBRID IP/PSTN INFRASTRUCTURES QOS Signalling and Media Gateway Control ITU-T SG13/SG16 Workshop on IP Networking and Mediacom.
71 Sidevõrgud IRT 0020 loeng okt Avo Ots telekommunikatsiooni õppetool, TTÜ raadio- ja sidetehnika inst.
Introduction to Active Network Technology Bernhard Plattner Computer Engineering and Networks Laboratory ETH Zurich, Switzerland.
Forwarding.
July 12th 1999Kits Workshop 1 Active Networking at Washington University Dan Decasper.
EE 122: Lecture 15 (Quality of Service) Ion Stoica October 25, 2001.
High-Speed Policy-Based Packet Forwarding Using Efficient Multi-dimensional Range Matching Lakshman and Stiliadis ACM SIGCOMM 98.
1 Protecting Network Quality of Service against Denial of Service Attacks Douglas S. Reeves S. Felix Wu Chandru Sargor N. C. State University / MCNC October.
Processor Structure and Function Chapter8:. CPU Structure  CPU must:  Fetch instructions –Read instruction from memory  Interpret instructions –Instruction.
Zurich Research Laboratory IBM Zurich Research Laboratory Adaptive End-to-End QoS Guarantees in IP Networks using an Active Network Approach Roman Pletka.
Interrupt driven I/O Computer Organization and Assembly Language: Module 12.
Question What technology differentiates the different stages a computer had gone through from generation 1 to present?
An End-to-End Service Architecture r Provide assured service, premium service, and best effort service (RFC 2638) Assured service: provide reliable service.
Differentiated Services IntServ is too complex –More focus on services than deployment –Functionality similar to ATM, but at the IP layer –Per flow QoS.
Chapter 6 outline r 6.1 Multimedia Networking Applications r 6.2 Streaming stored audio and video m RTSP r 6.3 Real-time, Interactive Multimedia: Internet.
EE 122: Integrated Services Ion Stoica November 13, 2002.
Univ. of TehranIntroduction to Computer Network1 An Introduction Computer Networks An Introduction to Computer Networks University of Tehran Dept. of EE.
Processes and threads.
CS 31006: Computer Networks – The Routers
Transmission Quality of Service (QoS) in IPCablecom
EE 122: Lecture 18 (Differentiated Services)
Chapter 2: Operating-System Structures
Introduction to Operating Systems
Introduction to Computer Systems
EE 122: Differentiated Services
Anup K.Talukdar B.R.Badrinath Arup Acharya
CIS679: Two Planes and Int-Serv Model
Chapter 2: Operating-System Structures
Presentation transcript:

Zurich Research Laboratory IBM Zurich Research Laboratory Adaptive End-to-End QoS Guarantees in IP Networks using an Active Network Approach Roman Pletka IBM Research, Zurich Research Laboratory, Switzerland Burkhard Stiller University of Federal Armed Forces Munich, Germany and Computer Engineering and Networks Laboratory (TIK), ETH Zürich, Switzerland

Zurich Research Laboratory IBM Zurich Research Laboratory Agenda Introduction The abstract node model Active networking framework –Overview of security risks. –The hierarchical safety levels Example Applications –E2E services with RSVP signaling and active packets Conclusion

Zurich Research Laboratory IBM Zurich Research Laboratory Introduction Why is QoS rarely used today? –ISP’s use massive over-provisioning. –Huge variety in existing QoS architectures (Intserv, Diffserv, ST2+, QoS classes in GPRS). –No end-to-end support for service guarantees in heterogeneous IP networks (Are user’s willing to pay for unpredictable service?). –Increasing variety in QoS-provisioning mechanisms (eg., policers, schedulers, AQM schemes) => Need for QoS translation services.

Zurich Research Laboratory IBM Zurich Research Laboratory Building E2E services SLA SLS Networking Parameters SLA SLS SLA SLS Service Description End-to-end Service SenderReceiver

Zurich Research Laboratory IBM Zurich Research Laboratory Node Model for QoS Provisioning in a Proactive Environment E2E Flow Control Domain Policies Congestion Control Buffer Management & Schedulers in Routers Proactive QoS Plane Networking Plane Application Plane Absolute and Relative QoS Description Intserv RSVP Diffserv Active Packets Active Security Hierarchy

Zurich Research Laboratory IBM Zurich Research Laboratory Functional Description Discovery process –Leads to initial behavior bounds that specify upper bounds for available resources. –Within the network, not from hosts. Resource Management –Comprises the task of maintaining information on the actual status of resource availability. –Example: maximum available bandwidth per traffic class, policies, resources related to the neighborhood, and router services. Feedback Control –Instantaneous traffic characteristics can deviate from QoS reservation. Translation phase –Translation of QoS parameters using active code provided by either the network administrator or the application itself. –No simple one-to-one mapping => active code. Surjective code translation is obtained by projection onto the new QoS space, whereas injective code translation needs additional information based on default mappings and/or educated guess methods.

Zurich Research Laboratory IBM Zurich Research Laboratory Security Risks in Active Networks Byte-code language –Byte-code provides architectural neutrality and intrinsic safety properties [SNAP]. –Common operations can be represented with a single byte-codes which leads to high code compactness. –Specific characteristics of the underlying architecture are hidden. Resource bound –Divides networking resources into a two-dimensional vector (local and network part) –Limitation of bandwidth, CPU, and memory usage in nodes. –Enables efficient charging of active packets at the network edge. –Presence of code and data in the same packet does not compromise security. Safety levels –Monitoring control plane activities. –Handling of active networking packets is split into 6 security levels. Sandbox environment –Safe execution environment: Active Networking Sandbox (ANSB) –Information exchange in nodes only feasible using router services. –JIT-compiler (SNAP -> Network Processor Picocode).

Zurich Research Laboratory IBM Zurich Research Laboratory AN Safety Hierarchy Dynamic router services: registering new router services Authentication of active packets needed using a public key infrastructure. Complex policy insertion and manipulation Simple policy modification and manipulation Creation of new packets and resource-intensive router services (e.g., lookups) Simple packet byte-code Admission control at the edge of the network, trusted within a domain. Running in a sandbox environment, limited by predefined rules and installed router services. Sandbox environment based on the knowledge of the instruction performance. Safety issues solved by restrictions in the language definition and the use of a sandbox environment. No active code present in packets Corresponds to the traditional packet forwarding process Safety Level

Zurich Research Laboratory IBM Zurich Research Laboratory The Sandbox Environment in Active Nodes Active Code Handler Feedback Control Active Byte-code Interpreter Hardware specific Services Networking Hardware Policy Database Resource Database Neighborhood Database Services Tables Router Service Handler Forwarding Entity Control Entity Safety Levels ClsPolAQMSchedTE

Zurich Research Laboratory IBM Zurich Research Laboratory AN and Network Processors Forwarding, filtering and classification functions. In pico-code programmable core language processors. Coprocessor assists for –table lookups (FM, LPM, SMT) –queuing –policing –string copy –checksum generator Hardware scheduler (WFQ, Priority Scheduler). Hardware assist for flow control (BAT, WRED). Embedded Power PC for more complex tasks. => On-the-fly active code execution at line speed is feasible.

Zurich Research Laboratory IBM Zurich Research Laboratory Example Applications Sender Receiver GGSN SGSN BSS Diffserv Network with Active Nodes Intserv/RSVP Domain Pure Active Network DomainMobile Network using a GPRS Backbone

Zurich Research Laboratory IBM Zurich Research Laboratory Conclusion Efficient QoS translation using Active Networks can lead to improved E2E service guarantees. Security risks are bounded to the level of traditional IP forwarding, control, and management. The Active Networking framework benefits from the presence of network processors with specialized hardware assists. Lower safety levels have been implemented on an IBM PowerNP 4GS3. Future work: Dynamic off-loading of forwarding and control functionalities directly onto a network processor.

Zurich Research Laboratory IBM Zurich Research Laboratory Questions…

Zurich Research Laboratory IBM Zurich Research Laboratory Additional Slides

Zurich Research Laboratory IBM Zurich Research Laboratory AN Requirements for Network Processors Array register initialized with the first part of the packet content (i.e., packet header). Array registers (scratch memory) that is large enough to hold the memory section of an active packet as well as additional temporary values. A mechanism to read more data from the packet (access to all data in the packet) and an array register to store this information. A mechanism to update the packet being forwarded. Load and store operations to move data between registers. Standard arithmetic and logical operations on scalar registers. Support for standard comparison and control flow operations (e.g. (un)conditional branching, subroutine calls).

Zurich Research Laboratory IBM Zurich Research Laboratory E2E Service using Active Networks Domain ADomain BDomain C - full support of RSVP in the domain. - no active routers present (active packets are forwarded as regular IP packets) - metropolitan area - limited RSVP support using active routers. - active packets from outside the domain are not executed in this domain (preemption) - router services installed by administrator - corresponds to a core ISP - No RSVP support. - entering active packets are allowed to execute active code up to safety level 1. - ISP at the edge of the network RSVP (controlled load and fixed filter) Sender Receiver