Applications drive secure lightpath creation across heterogeneous domains
- 20 March 2006
- journal article
- Published by Institute of Electrical and Electronics Engineers (IEEE) in IEEE Communications Magazine
- Vol. 44 (3) , 100-106
- https://doi.org/10.1109/mcom.2006.1607872
Abstract
We realize an open, programmable paradigm for application-driven network control by way of a novel network plane - the "service plane" - layered above legacy networks. The service plane bridges domains, establishes trust, and exposes control to credited users/applications while preventing unauthorized access and resource theft. The authentication, authorization, and accounting subsystem and the dynamic resource allocation controller are the two defining building blocks of our service plane. In concert, they act upon an interconnection request or a restoration request according to application requirements, security credentials, and domain-resident policy. We have experimented with such service plane in an optical, large-scale testbed featuring two hubs (NetherLight in Amsterdam, StarLight in Chicago) and attached network clouds, each representing an independent domain. The dynamic interconnection of the heterogeneous domains occurred at Layer 1. The interconnections ultimately resulted in an optical end-to-end path (lightpath) for use by the requesting grid application.Keywords
This publication has 4 references indexed in Scilit:
- Creating an intelligent optical network worldwide interoperability demonstrationIEEE Communications Magazine, 2004
- TransLightCommunications of the ACM, 2003
- Authorization of a QoS path based on generic AAAFuture Generation Computer Systems, 2003
- AAA Authorization FrameworkPublished by RFC Editor ,2000