Lightweight, dynamic and programmable virtual private networks
- 7 November 2002
- proceedings article
- Published by Institute of Electrical and Electronics Engineers (IEEE)
Abstract
A Virtual Private Network (VPN) that exists over a public network infrastructure like the internet is both cheaper and more flexi- ble than a network comprising dedicated semi-permanent links such as leased-lines. In contrast to leased-line private networks , the topology of such a VPN can be altered on-the-fly, and its lightweight natu re means that creation and modification can take place over very short timescales. In a programmable networking environment, such VPNs can be en- hanced with fine-grained customer control right down to the l evel of the physical network resources, allowing a VPN to be employed for almost any conceivable network service. This paper examines some of the issues present in the provision of programmable VPNs. In particular, automated VPN "design" is considered, that is, how a VPN description can be trans- lated to a set of real physical resources that meets customer requirements while also satisfying the goals of the VPN Service Provider (VSP). This problem—the distribution of resource allocations across network nodes in an optimal manner—has relevance for other approaches to VPN provision such as differentiated services in the internet (1). The work described in this paper was carried out using a pro- grammable networks infrastructure based on the switchlets mecha- nism (2). It shows that automated VPN creation resulting in a guaran- teed resource allocation is a feasible procedure that works well for both the VSP and for the customer that has requested a VPN. The problems in- herent in dynamic VPN reconfiguration are also briefly explor ed together with the methods by which these might be addressed.Keywords
This publication has 16 references indexed in Scilit:
- Application-specific policies: beyond the domain boundariesPublished by Institute of Electrical and Electronics Engineers (IEEE) ,2003
- How bad is naive multicast routing?Published by Institute of Electrical and Electronics Engineers (IEEE) ,2002
- A better model for generating test networksPublished by Institute of Electrical and Electronics Engineers (IEEE) ,2002
- Virtual network resources management: a divide-and-conquer approach for the control of future networksPublished by Institute of Electrical and Electronics Engineers (IEEE) ,2002
- Spawning networksIEEE Network, 1999
- Service-specific control architectures for ATMIEEE Journal on Selected Areas in Communications, 1998
- Ipsilon's General Switch Management Protocol Specification Version 2.0Published by RFC Editor ,1998
- Multicast routing with end-to-end delay and delay variation constraintsIEEE Journal on Selected Areas in Communications, 1997
- ARIES: a rearrangeable inexpensive edge-based on-line Steiner algorithmIEEE Journal on Selected Areas in Communications, 1997
- A survey of active network researchIEEE Communications Magazine, 1997