Melanie Palmer, Rob Sullivan, John Bilberry LA-UR-13-25961.

Slides:



Advertisements
Similar presentations
Heng Pan , Hongtao Guan, Junjie Liu (ICT, CAS)
Advertisements

System Area Network Abhiram Shandilya 12/06/01. Overview Introduction to System Area Networks SAN Design and Examples SAN Applications.
CloudWatcher: Network Security Monitoring Using OpenFlow in Dynamic Cloud Networks or: How to Provide Security Monitoring as a Service in Clouds? Seungwon.
Why to learn OSI reference Model? The answer is too simple that It tells us that how communication takes place between computers on internet but how??
OpenFlow Costin Raiciu Using slides from Brandon Heller and Nick McKeown.
U NIVERSITY OF M ASSACHUSETTS, A MHERST Department of Computer Science Emery Berger University of Massachusetts Amherst Operating Systems CMPSCI 377 Lecture.
Functional Assessment of Erasure Coded Storage Archive Blair Crossman Taylor Sanchez Josh Sackos LA-UR Computer Systems, Cluster, and Networking.
SDN and Openflow.
Network Innovation using OpenFlow: A Survey
Flowspace revisited OpenFlow Basics Flow Table Entries Switch Port MAC src MAC dst Eth type VLAN ID IP Src IP Dst IP Prot L4 sport L4 dport Rule Action.
UNCLASSIFIED: LA-UR Data Infrastructure for Massive Scientific Visualization and Analysis James Ahrens & Christopher Mitchell Los Alamos National.
Traffic Management - OpenFlow Switch on the NetFPGA platform Chun-Jen Chung( ) SriramGopinath( )
OSI Model MIS 416 – Module II Spring 2002 Networking and Computer Security.
Jharrod LaFon (HPC-3) Jim Williams (HPC-3) 2011 Computer System, Cluster, and Networking Summer Institute Russell Husted (MTU) Derek Walker (NCA&TSU) Povi.
Optical Ring Networks Research over MAC protocols for optical ring networks with packet switching. MAC protocols divide the ring bandwidth according to.
An Overview of Software-Defined Network
Lesson 1: Configuring Network Load Balancing
Scalable Server Load Balancing Inside Data Centers Dana Butnariu Princeton University Computer Science Department July – September 2010 Joint work with.
An Overview of Software-Defined Network Presenter: Xitao Wen.
Lecture slides prepared for “Business Data Communications”, 7/e, by William Stallings and Tom Case, Chapter 8 “TCP/IP”.
Internet Traffic Management Prafull Suryawanshi Roll No - 04IT6008.
FIREWALL TECHNOLOGIES Tahani al jehani. Firewall benefits  A firewall functions as a choke point – all traffic in and out must pass through this single.
Network Management Concepts and Practice Author: J. Richard Burke Presentation by Shu-Ping Lin.
Introduction to IT and Communications Technology Justin Champion C208 – 3292 Ethernet Switching CE
Chapter 4: Managing LAN Traffic
Software-Defined Networks Jennifer Rexford Princeton University.
Internet Traffic Management. Basic Concept of Traffic Need of Traffic Management Measuring Traffic Traffic Control and Management Quality and Pricing.
1. There are different assistant software tools and methods that help in managing the network in different things such as: 1. Special management programs.
Business Computing 550 Lesson 2. Fundamentals of Information Systems, Fifth Edition Chapter 4 Telecommunications, the Internet, Intranets, and Extranets.
Networking Basics Lesson 1 Introduction to Networks.
ACM 511 Chapter 2. Communication Communicating the Messages The best approach is to divide the data into smaller, more manageable pieces to send over.
TCP/IP Yang Wang Professor: M.ANVARI.
OpenFlow: Enabling Innovation in Campus Networks
Network Protocol Models and Architecture Networks and Protocols Prepared by: TGK First Prepared on: Last Modified on: Quality checked by: Copyright 2009.
A Comparison of Library Tracking Methods in High Performance Computing Computer System Cluster and Networking Summer Institute 2013 Poster Seminar William.
Sujayyendhiren RS, Kaiqi Xiong and Minseok Kwon Rochester Institute of Technology Motivation Experimental Setup in ProtoGENI Conclusions and Future Work.
OpenFlow:Enabling Innovation in Campus Network
Othman Othman M.M., Koji Okamura Kyushu University 1.
S4-Chapter 3 WAN Design Requirements. WAN Technologies Leased Line –PPP networks –Hub and Spoke Topologies –Backup for other links ISDN –Cost-effective.
TCP/IP Honolulu Community College Cisco Academy Training Center Semester 2 Version 2.1.
Sponsored by the National Science Foundation Using OpenFlow and Orbit to Achieve Mobility in a Heterogeneous Wireless Network Ryan Izard
SDN AND OPENFLOW SPECIFICATION SPEAKER: HSUAN-LING WENG DATE: 2014/11/18.
Garrett Drown Tianyi Xing Group #4 CSE548 – Advanced Computer Network Security.
An Introduction to Networking
STORE AND FORWARD & CUT THROUGH FORWARD Switches can use different forwarding techniques— two of these are store-and-forward switching and cut-through.
SDN and Openflow. Motivation Since the invention of the Internet, we find many innovative ways to use the Internet – Google, Facebook, Cloud computing,
1 | © 2015 Infinera Open SDN in Metro P-OTS Networks Sten Nordell CTO Metro Business Group
Cost of Security Auditing Focus Matthew Chambers (Michigan Technological University) Kevin Lopez (California State University, San Bernardino) Casey Mortensen.
70-412: Configuring Advanced Windows Server 2012 services
Section #7: Getting Data from Point A to Point B.
OSI ARCHITECTURE IN OSI, ACTUAL INFORMATION IS OVERHEADED BY PROTOCOL LAYERS IF ALL SEVEN LAYERS ARE OVERHEADED, THEN AS LITTLE AS 15% OF THE TRANSMITTED.
A Snapshot on MPLS Reliability Features Ping Pan March, 2002.
.  Hubs send data from one computer to all other computers on the network. They are low-cost and low-function and typically operate at Layer 1 of the.
A Scalable High-Performance Active Network Node Dan S. Decasper and Bernhard Plattner, EETH Zurich Guru M. Parulkar, Sumi Chai, John D. Dehart, and Tilman.
Cluster computing. 1.What is cluster computing? 2.Need of cluster computing. 3.Architecture 4.Applications of cluster computing 5.Advantages of cluster.
OpenFlow: Enabling Innovation in Campus Networks Yongli Chen.
Software Defined Networking and OpenFlow Geddings Barrineau Ryan Izard.
SDN challenges Deployment challenges
What I Learned From Mininet
HybNET: Network Manager for a Hybrid Network Infrastructure
Speaker : Che-Wei Chang
Week 6 Software Defined Networking (SDN): Concepts
Indigo Doyoung Lee Dept. of CSE, POSTECH
The Stanford Clean Slate Program
Chapter 12: Wide Area Networks
Software Defined Networking (SDN)
DDoS Attack Detection under SDN Context
ECEN “Internet Protocols and Modeling”
Requirements Definition
Computer Networks Protocols
Presentation transcript:

Melanie Palmer, Rob Sullivan, John Bilberry LA-UR

Overview  Introduction  Test Method and Materials  Results  Conclusion  Future Work  Questions LA-UR

Software Defined Networking  Separate the data plane and the control plane  Software layer between hardware and admin  Virtual networks within a physical network LA-UR

OpenFlow  Open source SDN  Hardware management on a single platform  Exploits a common set of functions found on most switches  OpenFlow Protocol Flow table Actions LA-UR

Controller  Management software for network  Communicates via a secure channel  Push and remove flows  Determine actions for undefined flows LA-UR

Networks for Security User Switch Network 2 Network 1 User job in Node 1 If User accesses Node 2 Redirect to Security Node Security Node Controller Rule 1 Allow access to Network 1 Rule 2 Redirect to Security Node if access to Network 2 is attempted LA-UR

Networks for Security User Network 2 Network 1 Rule 1 Allow access to Network 1 Rule 2 Redirect to Security Node if access to Network 2 is attempted Security Node Controller Switch LA-UR

Melanie Palmer LA-UR

Objective  Performance  Reliability  Scalability LA-UR

Materials  Our Cluster Seven node CentOS 6.4  Arista 7050S OpenFlow 1.0 EOS  Floodlight 0.9 Open source Widely used in industry Java based LA-UR

Test Suite  Load Test Performance Reliability Load Test Tests Sections Start Test TCP-Dump to a File Start Section Tests Increment the Pings per Second Increment Test Number Start Section Test Start Pinging Both Nodes Change Flows as Specified Increment the Flows per Second Increment the Section Number Load Test Tests Sections LA-UR

Test Suite  Load Test Load Test Tests Sections Start Test TCP-Dump to a File Start Section Tests Increment the Pings per Second Increment Test Number Start Section Test Start Pinging Both Nodes Change Flows as Specified Increment the Flows per Second Increment the Section Number Load Test Tests Sections Start Test TCPDump Start 10 Sections Increment Pings/Sec Finish Start Traffic Change Flows Increment Flows/Sec Finish Start Tests Sections Timing Limit Traffic Limit LA-UR

Load Test Controller Node C Rule 1: Connect A and B Rule 2: Drop Anything to C LA-UR

Load Test Controller Node C Rule 1: Connect A and C Rule 2: Drop Anything to B LA-UR

Test Suite  Load Test  Speed Test Scalability Performance Load Test Tests Sections Start Test TCP-Dump to a File Start Section Tests Increment the Pings per Second Increment Test Number Start Section Test Start Pinging Both Nodes Change Flows as Specified Increment the Flows per Second Increment the Section Number Load Test Tests Sections LA-UR

Test Suite  Load Test  Speed Test Load Test Tests Sections Start Test TCP-Dump to a File Start Section Tests Increment the Pings per Second Increment Test Number Start Section Test Start Pinging Both Nodes Change Flows as Specified Increment the Flows per Second Increment the Section Number Load Test Tests Sections Start Test TCPDump to File Send Traffic to Node C Change Flow LA-UR

Speed Test Controller Node C Rule 1: Connect A and C LA-UR

Speed Test Controller Node C Rule 1: Drop Node C LA-UR

Test Suite  Load Test  Speed Test  Analysis Program Failure! Expected Behavior LA-UR

Test Suite  Load Test  Speed Test  Analysis Program Stage 1 - Extracts ○ Error rate ○ Flow change speed Stage 2 - Analyzes ○ Averages data ○ Standard deviations Failure! LA-UR

Rob Sullivan LA-UR

Load Test Results LA-UR

Speed Test Results LA-UR

Problems  OpenFlow 1.0  Volume and nature of data  Human error  Imprecision of some test methods  Meaningful packet redirection LA-UR

Will OpenFlow Work? LA-UR

Future Work  OpenFlow 1.1  Security  Controllers and hardware  Scale LA-UR

Acknowledgements Instructors – Dane Gardner and Matthew Broomfield (T.A.) Mentors – Kyle Lamb (HPC-3) and Ben McClelland (HPC-5) Special Thanks: Los Alamos National Laboratory – Gary Grider, Josephine Olivas, Carolyn Connor, Scott Robbins and Carol Hogsett New Mexico Consortium – Ann Kuiper PRObE – Andree Jacobson Our Schools: University of Texas at El Paso New Mexico Institute of Mining and Technology Michigan Technological University LA-UR

Your turn! LA-UR