Does OpenFlow Really Decouple The Data Plane from The Control Plane?

被引:0
|
作者
Peixoto, Thiago M. [1 ]
Vieira, Alex B. [1 ]
Nogueira, Michele [3 ]
Macedo, Daniel F. [2 ]
机构
[1] Univ Fed Juiz de Fora, Dept Comp Sci, Juiz De Fora, Brazil
[2] Univ Fed Parana, Comp Sci Dept, Curitiba, Parana, Brazil
[3] Univ Fed Minas Gerais, Dept Comp Sci, Belo Horizonte, MG, Brazil
关键词
SDN; Performance Analysis; Resilience; SOFTWARE-DEFINED NETWORKING;
D O I
暂无
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
Software Defined Networks (SDNs) offer flexibility to current networks, allowing operators to manage network elements using software on an external server. SDNs are founded on a key feature: the separation of the control plane from the data plane. OpenFlow is the most popular SDN southbound interface today. However, does OpenFlow really decouple the data plane from the control plane? This is the leading question in this work. The literature has sought to quantify the impact of OpenFlow commands from control plane on data plane performance. Particularly, we argue that it is possible to damage the date plane by too many flow updates. Attackers, for instance, can use this effect in a cloud environment to reduce the performance of a collocated virtual network. However, it is not clear what is the exact impact of this coupling on production hardware and software switches. We investigate this through experiments, under representative scenarios, and propose a threshold mechanism to mitigate the effect of malicious administrators. We have observed that both hardware and software switches suffer from this limitation, presenting an average RTT degradation of up to 12.35% in the hardware switch, and 25.9% on the software switch. Finally, the proposed mechanism mitigates the lack of decoupling and malicious behavior.
引用
收藏
页码:601 / 606
页数:6
相关论文
共 50 条
  • [21] Avenir: Managing Data Plane Diversity with Control Plane Synthesis
    Campbell, Eric Hayden
    Hallahan, William T.
    Srikumar, Priya
    Cascone, Carmelo
    Liu, Jed
    Ramamurthy, Vignesh
    Hojjat, Hossein
    Piskac, Ruzica
    Soule, Robert
    Foster, Nate
    PROCEEDINGS OF THE 18TH USENIX SYMPOSIUM ON NETWORKED SYSTEM DESIGN AND IMPLEMENTATION, 2021, : 133 - 154
  • [22] Enhancing security of SDN focusing on control plane and data plane
    Celesova, Barbora
    Val'ko, Jozef
    Grezo, Rudolf
    Helebrandt, Pavol
    2019 7TH INTERNATIONAL SYMPOSIUM ON DIGITAL FORENSICS AND SECURITY (ISDFS), 2019,
  • [23] Security Bootstrapping for Securing Data Plane and Control Plane in Named Data Networking
    Park, Chang-Seop
    Park, Wang-Seok
    Woo, Samuel
    IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2023, 20 (03): : 3765 - 3781
  • [24] Handover analysis of openflow-based mobile networks with distributed control plane
    Panev, Strahil
    Latkoski, Pero
    COMPUTERS & ELECTRICAL ENGINEERING, 2020, 81
  • [25] A Packet-In Message Filtering Mechanism for Protection of Control Plane in OpenFlow Switches
    Kotani, Daisuke
    Okabe, Yasuo
    IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 2016, E99D (03) : 695 - 707
  • [26] A Packet-In Message Filtering Mechanism for Protection of Control Plane in OpenFlow Networks
    Kotani, Daisuke
    Okabe, Yasuo
    TENTH 2014 ACM/IEEE SYMPOSIUM ON ARCHITECTURES FOR NETWORKING AND COMMUNICATIONS SYSTEMS (ANCS'14), 2014, : 29 - 40
  • [27] Control Plane Techniques for Elastic Optical Networks: GMPLS/PCE vs OpenFlow
    Liu, Lei
    Tsuritani, Takehiro
    Morita, Itsuro
    Casellas, Ramon
    Martinez, Ricardo
    Munoz, Rauel
    2012 IEEE GLOBECOM WORKSHOPS (GC WKSHPS), 2012, : 352 - 357
  • [28] A Data Plane Approach for Detecting Control Plane Anomalies in Mobile Networks
    Abdelrahman, Omer H.
    Gelenbe, Erol
    INTERNET OF THINGS: IOT INFRASTRUCTURES, PT I, 2016, 169 : 210 - 221
  • [29] How to build a really, really, really big plane
    Brown, SF
    FORTUNE, 2001, 143 (05) : 144 - +
  • [30] Data Plane Programmability Beyond OpenFlow: Opportunities and Challenges for Network and Service Operations and Management
    da Costa Cordeiro, Weverton Luis
    Marques, Jonatas Adilson
    Gaspary, Luciano Paschoal
    JOURNAL OF NETWORK AND SYSTEMS MANAGEMENT, 2017, 25 (04) : 784 - 818