1 SAHARA and OASIS Overviews NTT MCL Visit November 6, 2003 Randy H. Katz Computer Science Division Electrical Engineering and Computer Science Department.

Slides:



Advertisements
Similar presentations
NETWORK TRANSFORMATION THROUGH VIRTUALIZATION
Advertisements

Lemonade and Mobile e- mail Stéphane H. Maes – Lemonade Intermediate meeting Vancouver, BC October 2004.
1 © 2006 Cisco Systems, Inc. All rights reserved. Cisco Confidential Session Number Presentation_ID Next Generation Network Architectures Summary John.
1 Quality of Service vs. Any Service at All 10th IEEE/IFIP Conference on Network Operations and Management Systems (NOMS 2006) Vancouver, BC, Canada April.
Extensible Networking Platform IWAN 2005 Extensible Network Configuration and Communication Framework Todd Sproull and John Lockwood
Module 3 Windows Server 2008 Branch Office Scenario.
Highly Available Central Services An Intelligent Router Approach Thomas Finnern Thorsten Witt DESY/IT.
1 The Post-PC Era: It’s About The Services Randy H. Katz Computer Science Division Electrical Engineering and Computer Science Department University of.
MSIT 458: Information Security & Assurance By Curtis Pethley.
Networks and Distributed Systems: Project Ideas
JXTA P2P Platform Denny Chen Dai CMPT 771, Spring 08.
1 OASIS: Enabling Services with Programmable Networks George Porter Mel Tsai Li Yin Randy Katz.
EECS 122 Communications Networks Department of Electrical Engineering and Computer Sciences University of California Berkeley Slides: K. Fall, K. Lai,
This work is supported by the National Science Foundation under Grant Number DUE Any opinions, findings and conclusions or recommendations expressed.
An Active Networking Testbed for Storage Presenter Mel Tsai People Mel Tsai Anshi Liang Paul Huang Perry Dong and Tal Lavian.
WIRELESS SECURITY DEFENSE T-BONE & TONIC: ALY BOGHANI JOAN OLIVER MIKE PATRICK AMOL POTDAR May 30, /30/2009.
1 OASIS: Overlays and Active Services for Internetworked Storage Tal Lavian, Yin Li, George Porter, Mel Tsai, Randy H. Katz Computer Science Division Electrical.
OASIS Testbed and Experimental Platform November 06, 2003 George Porter NTT Multimedia Communications Laboratories.
1 Internet-Scale Systems Research Group Eric Brewer, David Culler, Anthony Joseph, Randy Katz, Steven McCanne Computer Science Division, EECS Department.
1 A Research Program in Reliable Adaptive Distributed Systems (RADS) Armando Fox*, Michael Jordan, Randy Katz, George Necula, David Patterson, Ion Stoica,
1 A Policy-aware Switching Layer for Data Centers Dilip Joseph Arsalan Tavakoli Ion Stoica University of California at Berkeley.
1 From SAHARA to OASIS: The Last SAHARA Retreat The First OASIS Retreat I3 and Tapestry Mini-Retreats June 2004 Randy H. Katz, Anthony Joseph, Ion.
A Scalable, Commodity Data Center Network Architecture Mohammad Al-Fares, Alexander Loukissas, Amin Vahdat Presented by Gregory Peaker and Tyler Maclean.
1 Reliable Adaptive Distributed Systems Armando Fox, Michael Jordan, Randy H. Katz, David Patterson, George Necula, Ion Stoica, Doug Tygar.
Edge Device Multi-unicasting for Video Streaming T. Lavian, P. Wang, R. Durairaj, F. Travostino Advanced Technology Lab, Nortel Networks D. B. Hoang University.
A Scalable, Commodity Data Center Network Architecture.
Network Topology. Cisco 2921 Integrated Services Router Security Embedded hardware-accelerated VPN encryption Secure collaborative communications with.
CPE5021 Advanced Network Security ---Network Security and Performance--- Lecture 9 CPE5021 Advanced Network Security ---Network Security and Performance---
Clinic Security and Policy Enforcement in Windows Server 2008.
Chapter 1: Hierarchical Network Design
Enabling Innovation Inside the Network Jennifer Rexford Princeton University
1 October 20-24, 2014 Georgian Technical University PhD Zaza Tsiramua Head of computer network management center of GTU South-Caucasus Grid.
Norbert Niebert, Andreas Schieder, Henrik Abramowicz, Christian Prehofer, Holger Kart Ambient Networks projects, EU’s 6 th Framework Programme
9/15/2015CS622 - MIRO Presentation1 Wen Xu and Jennifer Rexford Department of Computer Science Princeton University Chuck Short CS622 Dr. C. Edward Chow.
M.Menelaou CCNA2 ROUTING. M.Menelaou ROUTING Routing is the process that a router uses to forward packets toward the destination network. A router makes.
Network Admin Course Plan Accede Institute Of Science & Technology.
1 RADS Conceptual Architecture Commodity Internet & IP networks Edge Network Distributed Middleware Client SLT Services Distributed Middleware Server Router.
1 Liquid Software Larry Peterson Princeton University John Hartman University of Arizona
1 Second ATLAS-South Caucasus Software / Computing Workshop & Tutorial October 24, 2012 Georgian Technical University PhD Zaza Tsiramua Head of computer.
Putting Intelligence in Internetworking: an Architecture of Two Level Overlay EE228 Project Anshi Liang Ye Zhou.
Salim Hariri HPDC Laboratory Enhanced General Switch Management Protocol Salim Hariri Department of Electrical and Computer.
Management for IP-based Applications Mike Fisher BTexaCT Research
Virtual Private Ad Hoc Networking Jeroen Hoebeke, Gerry Holderbeke, Ingrid Moerman, Bard Dhoedt and Piet Demeester 2006 July 15, 2009.
A Framework for Internetworking Heterogeneous High-Performance Networks via GMPLS and Web Services Xi Yang, Tom Lehman Information Sciences Institute (ISI)
AWS Cloud Firewall Review Architecture Decision Group October 6, 2015 – HUIT-Holyoke-CR 561.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.0 Introducing Network Design Concepts Designing and Supporting Computer Networks.
FireProof. The Challenge Firewall - the challenge Network security devices Critical gateway to your network Constant service The Challenge.
OS Services And Networking Support Juan Wang Qi Pan Department of Computer Science Southeastern University August 1999.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco PublicITE I Chapter 6 1 Introducing Network Design Concepts Designing and Supporting Computer Networks.
Introduction to Grids By: Fetahi Z. Wuhib [CSD2004-Team19]
Module 12: Implementing ISA Server 2004 Enterprise Edition: Back-to-Back Firewall Scenario.
© 2005 Cisco Systems, Inc. All rights reserved. BGP v3.2—6-1 Scaling Service Provider Networks Scaling IGP and BGP in Service Provider Networks.
CLOUD COMPUTING AND LESSONS FROM THE PAST Presented By Sanjana Malhotra.
Chapter 11 – Cloud Application Development. Contents Motivation. Connecting clients to instances through firewalls. Cloud Computing: Theory and Practice.
Recent Progress in Routing Standardization An IETF update for UKNOF 23 Old Dog Consulting Adrian
Active Networks Jennifer Rexford. Nice Quotation from the Tennenhouse Paper There is presently a disconnect between what users consider to be “inside”
Preliminaries: EE807 Software-defined Networked Computing KyoungSoo Park Department of Electrical Engineering KAIST.
Cisco Study Guide
Network Processing Systems Design
Chapter 1: Explore the Network
Instructor Materials Chapter 1: LAN Design
University of Maryland College Park
The NPD Group - Enterprise DC Agenda
GGF15 – Grids and Network Virtualization
Software Defined Networking (SDN)
OASIS Deployment: VideoCollective
Software Defined Networking (SDN)
IS4680 Security Auditing for Compliance
In-network computation
Presentation transcript:

1 SAHARA and OASIS Overviews NTT MCL Visit November 6, 2003 Randy H. Katz Computer Science Division Electrical Engineering and Computer Science Department University of California, Berkeley Berkeley, CA

2 Presentation Outline Overview of Sahara and Oasis Projects, Randy Authenticated Roaming in Hot Spot Networks, Ana BGP Health Monitoring, Matt RouteVM: A Framework for Programming Programmable Network Elements, Mel Programmable Network Testbed, George iSCSI Performance Experiments, Li

3 The SAHARA Project Service Architecture for Heterogeneous Access, Resources, and Applications

4 New Opportunity: Services-Enabled Network New things you can do inside the network Connecting end-points to “services” with processing embedded in the network fabric “Agents” not protocols, executing inside the network Location-aware, data format aware Controlled violation of layering Distributed architecture aware of network topology No single technical architecture likely to dominate: interworking plus overlays

5 SAHARA “Elevator” Statement Problem –Achieving end-to-end services with desirable, predictable, enforceable properties spanning potentially distrusting service providers Approach –Service composition and inter-operation across separate admin domains, supporting peering and brokering, and diverse business, value-exchange, access-control models Current Focus –Interdomain routing, overlay networks, p2p algorithms –Interoperator WLAN roaming and authentication Potential Impact –Effective way to more rapidly extend and deploy enhanced network functionality

6 Layered Reference Model for Service Composition IP Network Enhanced Links (Intra-domain) Enhanced Paths (Inter-domain) End-to-End Network With Desirable Properties Middleware Services Applications Services End-User Applications Connectivity Plane Application Plane Service Composition Overlay Network “Links”

7 Routing as a Composed Service Routing as a Reachability “Service” –Paths between composed service instances--“links” within an overlay network –Multi-provider environment, no centralized control Desirable Enhanced Properties –Context Awareness: discovery/exploitation of net relationships –Agility: converge quickly in response to global changes to retain good reachability “performance” –Trust: verify believability of routing advertisements –Performance: “guaranteed” bandwidth and latency –Reliability: detect service composition path failures quickly to enable fast recomposition to maintain E2E service –Scalability and Interoperability: Adapt protocols via processing between admin domains

8 Recent Progress Inter-WLAN Roaming and Authentication (Ana) BGP Control Plane Verifiable BGP: Listen and Whisper Root Cause Analysis of Routing Failures (Matt) Detection of Shared Points of Congestion Etiquette for Overlay Networks Fast Recovery for P2P Networks

9 The OASIS Project Overlays and Active Services for Internetworked Storage

10 New Opportunity: “The NETWORK is the Computer” Rise of Programmable Network Elements –First Gen Network Appliances, Directors –Storage Virtualizers, Intrusion Detectors, Traffic Shapers, Server Load Balancers, MIE accountants –Next Gen: Third Party Programmable beyond rules Needed: Generalized PNE programming and control model –Generalized “virtual machine” model for this class of devices –Retargetable for different underlying implementations Applications of Interest –Network Services: L7 switching, firewalls, intrusion and infected machine detection, storage virtualization, network monitoring and management, etc. –Particular focus: network storage, iSCSI support

11 Proliferation of Network Appliances In-the-Network Processing: the NETWORK is the Computer F5 Networks BIG-IP LoadBalancer Web server load balancer Packeteer PacketShaper Traffic monitor and shaper Ingrian i225 SSL offload appliance Network Appliance NetCache Localized content delivery platform Nortel Alteon Switched Firewall CheckPoint firewall and L7 switch Cisco IDS 4250-XL Intrusion detection system Cisco SN 5420 IP-SAN storage gateway Extreme Networks SummitPx1 L2-L7 application switch NetScreen 500 Firewall and VPN

12 OASIS “Elevator” Statement Problem –Common programming/control environment for diverse network elements to realize full power of “inside the network” services and applications Approach –Software toolkit and VM architecture for PNEs, with retargetable optimized backend for diverse appliance-specific architectures Current Focus –Network health monitoring, protocol interworking and packet translation services, iSCSI processing and performance enhancement, intrusion and worm detection and quarantining Potential Impact –Open framework for multi-platform appliances, enabling third party service development –Provable application properties and invariants; avoidance of configuration and “latest patch not installed” errors

13 Generic PNE Architecture Interconnection Fabric Input Ports Output Ports Buffers Tag Mem CP AP Action Processor CP Classification Processor Rules & Programs

14 OASIS Testbed Current Testbed –Alteon Filter Programmable Level 7 Switches »Next generation significantly more third party programmable –2 x Enterprise Class Routers –(Many) pizza box PCs In discussion –Nortel + IBM on Blade Center Storage Servers for UDCs –Cisco IOS Next Generation (ION) Programmable Packet Filters

15 Recent Progress RouteVM PNE Specification (Mel) Oasis Testbed Development (George) iSCSI Storage Experiments (Li) Intrusion Detection Case Study

16 Edge Network Reliable Adaptive Distributed Systems Fox, Jordan, Katz, Necula, Patterson, Stoica, Tygar Distributed Middleware Client SLT Services Distributed Middleware Server Internet IP Network Router Edge Network PNE “Reactive Systems” Observe, Classify, Learn, Act Programming Abstractions For Roll-back Crash-Oriented Svrcs Observation Infrastructure for System SLT Verifiable Protocols Fast Detection & Route Recovery Observation Infrastructure for network SLT Commodity Internet OperatorUser Application- Specific Overlay Network Observation & Control Points

17 SAHARA and OASIS Randy H. Katz Thank You!