Abstract:
Provided is a distributed service function (SF) forwarding system that applies the corresponding service function chain (SFC) to traffic classified by a plurality of service network (SN) controller instances based on an SN overlay structure. Therefore, by selectively combining and executing necessary network functions (SFs) according to a path and traffic made up of defined component services, it is possible to dynamically configure and control one network service.
Abstract:
An apparatus and method for generating a Software Defined Network (SDN)-based virtual network. The apparatus includes a network information generator and a virtual network generator, in which an SDN-based virtual network desired by a user may be generated efficiently by allocating physical resources to reflect various user demands.
Abstract:
A method for configuring a service function path (SFP) for a software defined network (SDN) based service function chain (SFC) may comprise configuring a SFC which is a set of ordered service functions (SFs) by reflecting requirements of a flow flowing into a network; generating a primary SFP that is a path through which the flow is to be actually transmitted in the network according to the SFC; generating a secondary SFP against an error of the primary SFP; and controlling a transmission path through which the flow is transmitted to be at least one of the primary SFP and the secondary SFP.
Abstract:
A system and method for virtualizing SDN-based network monitoring. The system for includes: an information collector, a monitoring component, an information converter, and a resource allocator, in which a user-defined virtual monitor is included so that integrated monitoring may be performed, and expandability may be guaranteed to dynamically respond to a user's, demands.
Abstract:
Disclosed herein are a method for protecting data for information centric in-network computing and a system using the same. The method includes: preparing, at a computing node, a an encryption key pool that includes a security key for sharing a symmetric key used for encrypting result data according to a user's request and matching information; preparing, at an INC agent receiving the user's request, a synchronization key pool for sharing the security key through the matching information; and creating, by the computing node, a processor for executing output processing of the result data and allocating a security key to the processor based on the matching information of the encryption key pool when a security key exists. The security key is allocated to the computing node which is determined to perform the request in the INC agent.
Abstract:
A system for distributed multi-domain routing control includes two or more software-defined network (SDN) controllers and virtual routers. The two or more SDN controllers create virtual topology information by collecting information about switches under the control thereof, exchange network information about a different virtual network, as well as create a routing path from a source terminal to a destination cross switch or a routing path from the destination cross switch to a destination terminal based on location identification information of the destination terminal and/or the virtual topology information. Then, the virtual routers manage communication between the different virtual tenant networks or communication between each virtual tenant network and an external network.
Abstract:
An original packet flow mapping apparatus and method based on an overlay network. The original packet flow mapping apparatus may include a packet-in message receiver, a flow controller, an overlay tunnel controller, and an interface, whereby flows can be identified even in a physical network segment on which an overlay link is implemented and then the flow can be mapped to an original flow.