The DOCTOR Project DeplOyment and seCurisaTion of new functiOnalities in virtualized networking enviRonnements François-Xavier Aguessy – Thales Bertrand.

Slides:



Advertisements
Similar presentations
Integrated Healthcare Management system. Standards based design. [ Supports HXP (Health Exchange Protocol) a standard in exchanging health care data ]
Advertisements

1 From Grids to Service-Oriented Knowledge Utilities research challenges Thierry Priol.
Omniran TG 1 Cooperation for OmniRAN P802.1CF Max Riegel, NSN (Chair OmniRAN TG)
1 PlanetLab: A globally distributed testbed for New and Disruptive Services CS441 Mar 15th, 2005 Seungjun Lee
Green Cloud Computing Hadi Salimi Distributed Systems Lab, School of Computer Engineering, Iran University of Science and Technology,
1 Virtual Machine Resource Monitoring and Networking of Virtual Machines Ananth I. Sundararaj Department of Computer Science Northwestern University July.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment Chapter 1: Introduction to Windows Server 2003.
CS 441: Charles Durran Kelly.  What are Wireless Sensor Networks?  WSN Challenges  What is a Smartphone Sensor Network?  Why use such a network? 
Business Intelligence Dr. Mahdi Esmaeili 1. Technical Infrastructure Evaluation Hardware Network Middleware Database Management Systems Tools and Standards.
A Scalable, Commodity Data Center Network Architecture Mohammad Al-Fares, Alexander Loukissas, Amin Vahdat Presented by Gregory Peaker and Tyler Maclean.
The Future of the Internet Jennifer Rexford ’91 Computer Science Department Princeton University
A Policy-Based Optical VPN Management Architecture.
Kick-off meeting 3 October 2012 Patras. Research Team B Communication Networks Laboratory (CNL), Computer Engineering & Informatics Department (CEID),
Commonwealth of Massachusetts Statewide Strategic IT Consolidation (ITC) Initiative ITD Virtualization and Shared Services Executive Briefing Presentation.
A Survey on Interfaces to Network Security
New Challenges in Cloud Datacenter Monitoring and Management
5205 – IT Service Delivery and Support
N. GSU Slide 1 Chapter 04 Cloud Computing Systems N. Xiong Georgia State University.
Solution Briefing Flexible Workstyle. Solution Briefing work-life blur more mobile tech savvy multiple devices digital generation fast paced Consumerization.
Goals Metrics Benefits MilestonesTechnology Challenges A.1 Mobile power – “always on” Identify, implement and test the best ways to use existing technology.
SOA, BPM, BPEL, jBPM.
Kostas Giotis, Yiannos Kryftis, Vasilis Maglaris
NICE :Network Intrusion Detection and Countermeasure Selection in Virtual Network Systems.
Software-Defined Networks Jennifer Rexford Princeton University.
Information ITIL Technology Infrastructure Library ITIL.
IP-Based Emergency Applications and Services for Next Generation Networks PEACE Presented by Suji Gunaratne PhD.
Enabling Dependable Communication in Cyber-Physical Systems with a Wireless Bus Federico Ferrari PhD Defense October 18, 2013 — Zurich, Switzerland Computer.
Creating Business Impact | Providing Expert Solutions | Delivering Quality Consistently | Building Partnerships Globally Large-Scale Enterprise GIS Systems.
Advanced Next gEneration Mobile Open NEtwork Tridentcom th International Conference on Testbeds and Research Infrastructures for the Development.
Challenges towards Elastic Power Management in Internet Data Center.
Software-Defined Networking - Attributes, candidate approaches, and use cases - MK. Shin, ETRI M. Hoffmann, NSN.
Virtual Private Ad Hoc Networking Jeroen Hoebeke, Gerry Holderbeke, Ingrid Moerman, Bard Dhoedt and Piet Demeester 2006 July 15, 2009.
IntelliSense.io Beyond the hype - Real World Applications / Solutions of Internet of Things.
© 2010 VMware Inc. All rights reserved vSphere 4.1: Install, Configure, Manage.
Network Measurement Tools ESnet Site Coordinators Meeting 26 April 2000 Tracie Monk, UCSD/SDSC/CAIDA -
Software Defined Networks for Dynamic Datacenter and Cloud Environments.
Chapter 5 McGraw-Hill/Irwin Copyright © 2011 by The McGraw-Hill Companies, Inc. All rights reserved.
Department of Electronic Engineering Challenges & Proposals INFSO Information Day e-Infrastructure Grid Initiatives 26/27 May.
Microsoft Management Seminar Series SMS 2003 Change Management.
Software Deployment and Mobility. Introduction Deployment is the placing of software on the hardware where it is supposed to run. Redeployment / migration.
Introduction to Grids By: Fetahi Z. Wuhib [CSD2004-Team19]
National Research Council - Pisa - Italy Marco Conti Italian National Research Council (CNR) IIT Institute MobileMAN MobileMAN: II year expected results.
The Problem of Location Determination and Tracking in Networked Systems Weikuan Yu, Hui Cao, and Vineet Mittal The Ohio State University.
Emergency Services Workshop, 21th-24 th of October, Vienna, Austria Page 1 IP-Based Emergency Applications and Services for Next Generation Networks PEACE.
7. Grid Computing Systems and Resource Management
Monitoring and Securing New Functions Deployed in a Virtualized Networking Environment Bertrand Mathieu, Guillaume Doyen, Wissam Mallouli, Thomas Silverston,
GRID ANATOMY Advanced Computing Concepts – Dr. Emmanuel Pilli.
Content Delivery Networks: Status and Trends Speaker: Shao-Fen Chou Advisor: Dr. Ho-Ting Wu 5/8/
CERN IT Department CH-1211 Genève 23 Switzerland t CERN IT Monitoring and Data Analytics Pedro Andrade (IT-GT) Openlab Workshop on Data Analytics.
Network Virtualization Sandip Chakraborty. In routing table we keep both the next hop IP (gateway) as well as the default interface. Why do we require.
Cyberinfrastructure Overview of Demos Townsville, AU 28 – 31 March 2006 CREON/GLEON.
Network Function Virtualisation Network Functionality Within The Cloud Presenter : Kenny Marlow JNCIE #210 SP Architecture Team Lead.
Cognitive Radio Wireless Sensor Networks: Applications, Challenges and Research Trends Prepared by: Ameer Sameer Hamood University of Babylon - Iraq Information.
INTRODUCTION TO GRID & CLOUD COMPUTING U. Jhashuva 1 Asst. Professor Dept. of CSE.
CloudMAC: Moving MAC frames processing of the Sink to Cloud.
Active Distributed & Dynamic Optical Network Access Systems Next Generation Access Network Łukasz Podleski (PSNC) Work in the ADDONAS project is financially.
For more course tutorials visit NTC 406 Entire Course NTC 406 Week 1 Individual Assignment Network Requirements Analysis Paper NTC 406.
Towards more flexible networks -- backyard of IMT Takashi Egawa NEC Corporation Rapporteur, Q.14, SG13 1.
SDN challenges Deployment challenges
COMP532 IT INFRASTRUCTURE
University of Maryland College Park
Weikuan Yu, Hui Cao, and Vineet Mittal The Ohio State University
Network Function Virtualization: Challenges and
Cloud Computing and Cloud Networking
ExaO: Software Defined Data Distribution for Exascale Sciences
Exploring the impact of NFV
Key Manager Domains February, 2019.
Administrative Software in Microsoft Azure Lets Companies Increase Productivity and Control “After conducting analysis and research for the best offer.
Using Service Function Chaining for In-Network Computation
Fourth ITU Workshop on Network 2030
Presentation transcript:

The DOCTOR Project DeplOyment and seCurisaTion of new functiOnalities in virtualized networking enviRonnements François-Xavier Aguessy – Thales Bertrand Mathieu (Orange), Guillaume Doyen (UTT), Olivier Bettan (Thales), Edgardo Montes De Oca (Montimage) et Thomas Silverston (LORIA-CNRS) 21/05/2015

Context and Problem statement  Deploying new network equipment is costly  Deployment only if secure and manageable  Cost Reduction, Hardware Mutualisation, Energy Consumption Network Virtualization SDN  New networking architecture & solutions for better data delivery and optimal use of network resources NDN: Named-based routing The DOCTOR Project 2

Objectives of the project  Deployment of new network functions and protocols in a virtualized networking environment (NDN Use case)  Monitoring, managing and securing the virtually deployed networking architectures, using SDN for reconfiguration 3

Technical Locks  Co-existence of multiple network protocols in the same virtualized node and migration steps  Monitoring & Security of the virtualized NDN network: Identify flow, correlate information  Dependability over an entire managed domain: management & control using SDN  First testbed deploying NDN for real use: end-users accessing existing popular web sites  Collection & Analysis of network and user data for evaluation (efficiency, performance, reliability, etc.) The DOCTOR Project 4

Methodology  Set up of a real testbed for end-users accessing Internet web sites  Design and implementation of virtualized NDN network, together with a IP-based one  Monitoring & Collection of network and usage data  Analysis of attacks and definition of counter- measures  Implementation of a management plane (management + security)  Proof-of-Concept of global solution evaluated in the real testbed. The DOCTOR Project 5

Project Organization  Task 1: Architecture of the virtualized node for hosting network functions  Task 2: Security analysis and monitoring of virtualized network architectures  Task 3: Global network dependability  Task 4: Testbed (real end-users, real services) and Demonstrator 6

Tasks Scheduling  T0 = 01/12/2014 Today = 21/05/2015 The DOCTOR Project 7

First results : Virtualization Techniques  D1.1 : Virtualization Techniques: Analysis and Selection Current virtualization techniques and their application to NFV Requirements and Challenges of such architectures for DOCTOR High-level architecture and candidates technologies The DOCTOR Project 8

Monitoring architecture  MMT probes distributed in each virtual machine.  P2P communication, to share relevant information  Centralized MMT Operator, for coordination and orchestration The DOCTOR Project 9

Risk assessment and remediation  Risk assessment based on attack graphs  Take into account vulnerabilities specific to NDN and virtualized infrastructures  Access to network topology and re-configuration of VFN through SDN  Challenges of the orchestration plane  New types of remediations, but have to take into account specificities of virtualized infrastructure The DOCTOR Project 10

Questions  Join us to keep updated The DOCTOR Project project