Campus Testbed for Network Management and Operations Nick Feamster Georgia Tech Joint with Ankur Nayak, Russ Clark, Ron Hutchins, Campus OIT Also input.

Slides:



Advertisements
Similar presentations
© 2013 Georgia Institute of Technology GENI and OpenFlow/SDN at Georgia Tech Russ Clark in collaboration with Ron Hutchins, Nick.
Advertisements

Wenke Lee and Nick Feamster Georgia Tech Botnet and Spam Detection in High-Speed Networks.
Resonance: Dynamic Access Control in Enterprise Networks Ankur Nayak, Alex Reimers, Nick Feamster, Russ Clark School of Computer Science Georgia Institute.
Wenke Lee and Nick Feamster Georgia Tech Botnet and Spam Detection in High-Speed Networks.
1 OpenFlow Research on the Georgia Tech Campus Network Russ Clark Nick Feamster Students: Yogesh Mundada, Hyojoon Kim, Ankur Nayak, Anirudh Ramachandran,
Data Mining Challenges for Network Management Nick Feamster, Georgia Tech Dave Andersen, CMU (joint with Jay Lepreau and Emulab)
Research Summary Nick Feamster. The Big Picture Improving Internet availability by making networks easier to operate Three approaches –From the ground.
Multihoming and Multi-path Routing
Nick Feamster Research: Network security and operations Teaching CS 7260 in Spring 2007 CS 7001 Mini-projects: –
DTunnels Year 1 Summary Nick Feamster. Overview Two pieces –DTunnels: Mechanism for creating appearance of layer 2 links between virtual nodes –BGP Mux:
Network Security Highlights Nick Feamster Georgia Tech.
1 Resonance: Dynamic Access Control in Enterprise Networks Ankur Nayak, Alex Reimers, Nick Feamster, Russ Clark School of Computer Science Georgia Institute.
Network Security Highlights Nick Feamster Georgia Tech.
1 Resonance: Dynamic Access Control in Enterprise Networks Ankur Nayak, Alex Reimers, Nick Feamster, Russ Clark School of Computer Science Georgia Institute.
All Rights Reserved © Alcatel-Lucent 2009 Enhancing Dynamic Cloud-based Services using Network Virtualization F. Hao, T.V. Lakshman, Sarit Mukherjee, H.
1 IU Campus GENI/Openflow Experience Matt Davy Quilt Meeting, July 22nd 2010.
Logically Centralized Control Class 2. Types of Networks ISP Networks – Entity only owns the switches – Throughput: 100GB-10TB – Heterogeneous devices:
Jennifer Rexford Princeton University MW 11:00am-12:20pm Network Virtualization COS 597E: Software Defined Networking.
Slick: A control plane for middleboxes Bilal Anwer, Theophilus Benson, Dave Levin, Nick Feamster, Jennifer Rexford Supported by DARPA through the U.S.
The Case for Enterprise Ready Virtual Private Clouds Timothy Wood, Alexandre Gerber *, K.K. Ramakrishnan *, Jacobus van der Merwe *, and Prashant Shenoy.
Internet2 and AL2S Eric Boyd Senior Director of Strategic Projects
Title or Title Event/Date Presenter, PresenterTitle, Internet2 Network Virtualization & the Internet2 Innovation Platform To keep our community at the.
© 2011 Georgia Institute of Technology OpenFlow/SDN at Georgia Tech Russ Clark in collaboration with Ron Hutchins, Nick Feamster, and Matt Sanders July.
Internet2 Network: Convergence of Innovation, SDN, and Cloud Computing Eric Boyd Senior Director of Strategic Projects.
Lithium: Event-Driven Network Control Nick Feamster, Hyojoon Kim, Russ Clark Georgia Tech Andreas Voellmy Yale University OpenFlow/Software Defined Networking.
Traffic Management - OpenFlow Switch on the NetFPGA platform Chun-Jen Chung( ) SriramGopinath( )
1 In VINI Veritas: Realistic and Controlled Network Experimentation Jennifer Rexford with Andy Bavier, Nick Feamster, Mark Huang, and Larry Peterson
1 Internet Networking Spring 2004 Tutorial 1 Subnetting and CIDR Proxy ARP.
Understanding IP Addressing Chuck Semeria Presented by Benyuan Liu for Internet Routing Seminar Sep 19, 2000.
Eric Kilroy. Introduction  Virtual Private Network A way to connect to a private network through a public network such as the internet.
CSE5803 Advanced Internet Protocols and Applications (7) Introduction The IP addressing scheme discussed in Chapter 2 are classful and can be summarised.
Chapter 6 Network Address Translation (NAT). Network Address Translation  Modification of source or destination IP address  Needed by networks using.
Security administrators The experts need better tools too!
CS335 Networking & Network Administration Tuesday, April 20, 2010.
TDC365 Spring 2001John Kristoff - DePaul University1 Interconnection Technologies Routing I.
Chapter 11: Dial-Up Connectivity in Remote Access Designs
Sponsored by the National Science Foundation BGP Mux Spiral 2 Year-end Project Review Georgia Tech PI: Nick Feamster Students: Valas Valancius, Yogesh.
Information-Centric Networks10b-1 Week 13 / Paper 1 OpenFlow: enabling innovation in campus networks –Nick McKeown, Tom Anderson, Hari Balakrishnan, Guru.
1 October 20-24, 2014 Georgian Technical University PhD Zaza Tsiramua Head of computer network management center of GTU South-Caucasus Grid.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.0 Addressing in an Enterprise Network Introducing Routing and Switching in the.
Tutorial: Bringing Experimenters to GENI with the Transit Portal Vytautas Valancius, Hyojoon Kim, Nick Feamster Georgia Tech.
Software-defined Networking Capabilities, Needs in GENI for VMLab ( Prasad Calyam; Sudharsan Rajagopalan;
1 Chapter 12: VPN Connectivity in Remote Access Designs Designs That Include VPN Remote Access Essential VPN Remote Access Design Concepts Data Protection.
Efficient Addressing Outline Addressing Subnetting Supernetting CS 640.
1 Second ATLAS-South Caucasus Software / Computing Workshop & Tutorial October 24, 2012 Georgian Technical University PhD Zaza Tsiramua Head of computer.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.0 Addressing in an Enterprise Network Introducing Routing and Switching in the.
Sponsored by the National Science Foundation Campus Trials of Enterprise GENI: Georgia Tech Spiral 2 Year-end Project Review Georgia Tech PI: Russ Clark,
OpenFlow:Enabling Innovation in Campus Network
Vytautas Valancius, Nick Feamster, Akihiro Nakao, and Jennifer Rexford.
#citrt #RefreshCache Networking Basics Foundational Concepts Elliott Wood - Solerant.
1 | © 2015 Infinera Open SDN in Metro P-OTS Networks Sten Nordell CTO Metro Business Group
Information-Centric Networks Section # 13.2: Alternatives Instructor: George Xylomenos Department: Informatics.
1 Chapter 8: DHCP in IP Configuration Designs Designs That Include DHCP Essential DHCP Design Concepts Configuration Protection in DHCP Designs DHCP Design.
Using IP Addressing in the Network Design
Bringing External Connectivity and Experimenters to GENI Nick Feamster Georgia Tech.
OpenFlow: Enabling Innovation in Campus Networks Yongli Chen.
Atrium Router Project Proposal Subhas Mondal, Manoj Nair, Subhash Singh.
Virtual Local Area Networks In Security By Mark Reed.
SketchVisor: Robust Network Measurement for Software Packet Processing
Instructor Materials Chapter 7: Network Evolution
Road to SDN Review the main features of SDN
Welcome Network Virtualization & Hybridization Thomas Ndousse
Link Layer 5.1 Introduction and services
CONNECTING TO THE INTERNET
Introducing To Networking
IP Deployment over IEEE Networks
The Stanford Clean Slate Program
Adaptive Flow Control using OpenFlow
An Update on Multihoming in IPv6 Report on IETF Activity
Zhihui Sun , Fazhi Qi, Tao Cui
Presentation transcript:

Campus Testbed for Network Management and Operations Nick Feamster Georgia Tech Joint with Ankur Nayak, Russ Clark, Ron Hutchins, Campus OIT Also input from Wenke Lee

2 Summary We are building an experimental network at Georgia Tech –Programmable network switches (OpenFlow) –Multiple on-campus sites –Dedicated fiber between these sites –Upstream connectivity and IP address space (own AS) Initial testing platform for network solutions deployed on- campus We are building this to test our own ideas in network management and operations

3 Network Management Tasks Security-related network management tasks –Authentication and access control –Resource allocation Today: Many solutions require operator vigilance, hacks, magic, etc. We are exploring how to make these tasks easier with programmable networking

4 Access Control and Monitoring New hosts –Assigned to private VLAN –Given private IP address space –Authenticated and scanned

5 Problems with Current Architecture Access control is too coarse-grained –All unauthenticated/unscanned hosts are on the same subnet –Hosts with access are all on the same VLAN Lack of dynamism –Hosts cannot be dynamically remapped Monitoring is not continuous –Reaction to alarms is manual

6 Simplify/Enhance: Programmable Networks Flow-table entries in switches redirect hosts to gardenwall Traffic is remapped with flow table entries per-host Continuous, real-time monitoring integrated with controller

7 Outsourcing Network Management Lots of independently operated networks –Each with view of network traffic –Including home networks (a known large source of unwanted traffic) Lots of distributed inference algorithms –SpamTracker –BotMiner What if these networks had programmable switches? –Use output from distributed inference to control network elements across many networks

8 Current Campus Testbed Space for running real-world projects and applications Need: Ability to re-enact network events

9 Looking Forward Campus-wide deployment –Network has 275 switches for access control that can run OpenFlow today –Firmware upgrade scheduled for Spring 2010 Big questions –Sharing between production network and research –Connectivity to other campuses –Integration with measurement?