• Title/Summary/Keyword: 오픈플로우

Search Result 49, Processing Time 0.022 seconds

Virtualization of Wireless LAN based on OpenFlow (OpenFlow 기반 무선랜 가상화)

  • Lee, Hyung-Bong
    • Proceedings of the Korean Society of Computer Information Conference
    • /
    • 2015.07a
    • /
    • pp.275-276
    • /
    • 2015
  • 네트워크 가상화를 위한 대표적인 개방적 아키텍처로 OpenFow를 들 수 있다. OpenfFow는 가상 네트워크(Software Defined Network) 개념을 실현하기 위한 랜 스위치 제어 프로토콜의 집합체로서 데이터 센터 등 주로 유선랜 환경을 목표로 설계되어 활용되고 있다. 이 논문에서는 OpenFlow를 무선랜의 AP(Access Point)에 적용하여 WiFi 디바이스들로 구성된 가상 무선 네트워크 관리 프레임을 구현한다. 구현된 관리 프레임은 WiFi 디바이스들의 토폴로지와 트래픽 상황을 중앙 관제 센터에서 모니터링할 수 있고, 플로우 경로를 설정함으로써 라우터를 경유하지 않고 AP 수준에서 스위칭(라우팅)이 가능하여 전체적인 트래픽 혼잡을 크게 줄일 수 있다.

  • PDF

A Study on Performance Degradation of Workflow Application with VM Interference in Cloud (클라우드에서 가상 머신 인스턴스 간섭에 의한 워크플로우 응용 성능 저하 분석 연구)

  • Choi, Kyu-Beom;Kang, Dong-Ki;Kim, Seong-Hwan;Youn, Chan-Hyun
    • Proceedings of the Korea Information Processing Society Conference
    • /
    • 2015.04a
    • /
    • pp.167-169
    • /
    • 2015
  • 기존 그리드 및 클러스터 환경과 달리 클라우드 컴퓨팅 환경에서는 하나의 물리 호스트 위에 다수의 가상 머신 인스턴스가 할당 및 운용됨에 따라 가상 머신 간섭 (Virtual Machine Interference)에 의한 응용 처리 성능 저하가 발생한다. 본 논문에서는 클라우드 오픈소스 플랫폼인 오픈스택 (OpenStack)을 기반으로 하여 가상 머신 인스턴스 위에서 Montage 워크플로우 응용을 처리할 때 가상 머신 간섭이 처리 성능에 미치는 정도를 분석하고 이를 해결하기 위한 자원 할당 정책을 논의한다.

A secure authentication system on wired wireless integrated network using OpenFlow (OpenFlow를 이용한 유‧무선 통합 네트워크 환경에서의 인증 시스템)

  • Moon, Jeong-Kyung;Cho, Han Jin;Kim, Jin-Mook
    • Journal of Digital Convergence
    • /
    • v.12 no.4
    • /
    • pp.285-291
    • /
    • 2014
  • Recent, development of wireless communication devices are rapidly and these device being deployed to the user very fast. By this results, a wired network device and the new device such as wireless devices incorporate. Then a demand of new mesh network is rapidly growing. In this wired/wireless integrated network environment, the network is configured automatically, and a user or wireless communication devices must be provided for authentication services. But, these services do not in the real world. Therefore, in this paper, we propose that wired/wireless integrated network environment to automatically configure the network using OpenFlow and the authentication system using Kerberos method. Our proposed system to be able to provide authentication services, confidentiality, integrity services for user or wired/wireless communication devices. And it can be prvented as well to man-in-the-middle attacks.

Design of QoS Supporting Mechanism using Openflow Protocol in Wireless Mesh Network Environments (무선 매시 네트워크 환경에서 오픈플로우 프로토콜을 이용한 QoS 지원 기법 설계)

  • Kang, Yong-Hyeog;Kim, Moon Jeong;Kim, Su-Sun
    • Journal of the Korea Academia-Industrial cooperation Society
    • /
    • v.18 no.9
    • /
    • pp.34-41
    • /
    • 2017
  • Wireless mesh networks contain multi-hop routing protocols between wireless nodes and are connected to the Internet through a gateway. These networks perform a role as a backbone and are scalable for main applications. We propose the design of QoS supporting mechanisms for wireless mesh networks using software defined networking. Our proposed scheme is cost-effective and features adaptive QoS mechanisms for wireless router's resource constraints. The QoS mechanisms use software defined networking technology with Openflow protocol based on diffserv and intserv models with MPLS mechanism and RSVP respectively. A performance evaluation model is suggested to verify the validity of the proposed scheme using several QoSmetrics of the wireless mesh networks.

Considerations for Applying SDN to Embedded Device Security (임베디드 디바이스 보안을 위한 SDN 적용 시 고려사항)

  • Koo, GeumSeo;Sim, Gabsig
    • The Journal of the Korea Contents Association
    • /
    • v.21 no.6
    • /
    • pp.51-61
    • /
    • 2021
  • In the era of the 4th industrial revolution symbolized by the Internet of Things, big data and artificial intelligence, various embedded devices are increasing exponentially. These devices have communication functions despite their low specifications, so the possibility of personal information leakage is increasing, and security threats are also increasing. Embedded devices can have security issues at most levels, from hardware to services over the network. In addition, it is difficult to apply general security techniques because it has characteristics of resource constraints such as low specifications and low power, and the related technology has not been standardized. In this study, we present vulnerabilities and possible problems and considerations in applying SDN to embedded devices in consideration of structural characteristics and real-world discovered cases. This study presents vulnerabilities and possible problems and considerations when applying SDN to embedded devices. From a hardware perspective, we consider the problems of Wi-Fi chips and Bluetooth, the problems of open flow implementation, SDN controllers, and examples of structural properties. SDN separates the data plane and the control plane, and provides a standardized interface between the two, enabling efficient communication control. It can respond to the security limitations of existing network technologies that are difficult to respond to rapid changes.

Secure Access Token Model of Open Banking Platform using Hash Chain (오픈뱅킹플랫폼에서 해쉬체인을 이용한 안전한 액세스토큰 모델)

  • Jung, Jin-Kyo;Kim, Yong-Min
    • Proceedings of the Korean Society of Computer Information Conference
    • /
    • 2016.07a
    • /
    • pp.277-280
    • /
    • 2016
  • 본 논문에서는 오픈 뱅킹 플랫폼의 안전한 권한 부여를 위한 OAuth 인증 과정의 권한코드 획득 단계와 액세스토큰 사용 단계에서의 보안 취약점을 분석하여 위협 모델을 정의하고 위협에 대응하는 방법을 제안한다. 제안 하는 방법은 크게 3단계로 구분한다. 1단계로 핀테크 앱을 등록 한 후, 2단계로 사용자가 권한을 핀테크 앱에 제공하기 위하여 사용자와 핀테크 앱의 신원을 안전하게 확인하고, 액세스토큰을 준비하는 단계, 3단계로 액세스토큰 탈취에 의한 재사용 공격에 대한 안전한 액세스토큰의 사용으로 구성되어 있다. 본 논문에서는 기존 연구와의 비교를 통하여 OAuth 인증 플로우의 보안 위협에 대해 기존 권한승인 획득 단계와 액세스토큰 사용 단계를 포괄하는 넓은 위협에 대응을 할 수 있다.

  • PDF

A Study on Web Services for Sequence Similarity search in the Workflow Environment (워크플로우 환경에서의 대규모 서열 유사성 검색 웹 서비스에 관한 연구)

  • Jun, Jin-Young
    • Journal of the Korea Society of Computer and Information
    • /
    • v.13 no.6
    • /
    • pp.41-49
    • /
    • 2008
  • In recent years, a life phenomenon using a workflow management tool in bioinformatics has been actively researched. Workflow management tool is the base which enables researchers to collaborate through the re-use and sharing of service, and a variety of workflow management tools including MyGrid project's Taverna, Kepler and BioWMS have been developed and used as the open source. This workflow management tool can model and automate different services in spatially-distant area in one working space based on the web service technology. Many tools and databases used in the bioinformatics are provided in the web services form and are used in the workflow management tool. In such the situation, the web services development and stable service offering for a sequence similarity search which is basically used in the bioinformatics can be essential in the bioinformatics field. In this paper, the similarity retrieval speed of biology sequence data was improved based on a Linux cluster, and the sequence similarity retrieval could be done for a short time by linking with the workflow management tool through developing it in the web services.

  • PDF

Load Balancing Technique by Dynamic Flow Management in SDN Environment (SDN 환경에서 Dynamic Flow Management에 의한 Load Balancing 기법)

  • Taek-Young, Kim;Tae-Wook, Kwon
    • The Journal of the Korea institute of electronic communication sciences
    • /
    • v.17 no.6
    • /
    • pp.1047-1054
    • /
    • 2022
  • With the advent of SDN, a next-generation network technology that separates the hardware and software areas of network equipment and defines the network using open source-based software, it solves the problems of complexity and scalability of the existing network system. It is now possible to configure a custom network according to the requirements. However, it has a structural disadvantage that a load on the network may occur due to a lot of control communication occurring between the controller and the switch, and many studies on network load distribution to effectively solve this have been preceded. In particular, in previous studies of load balancing techniques related to flow tables, many studies were conducted without consideration of flow entries, and as the number of flows increased, the packet processing speed decreased and the load was increased. To this end, we propose a new network load balancing technique that monitors flows in real time and applies dynamic flow management techniques to control the number of flows to an appropriate level while maintaining high packet processing speed.

미래형 서비스 실증을 위한 오픈플로우 기반 SDN 시험환경 구축

  • Kim, Jong-Won
    • Information and Communications Magazine
    • /
    • v.30 no.3
    • /
    • pp.43-50
    • /
    • 2013
  • 현존하는 프로토콜 중심의 네트워킹이 가지는 근본적인 한계를 인식하고 이를 소프트웨어-정의 네트워킹(Software Defined Networking: SDN)이라는 새로운 흐름으로 해소하자는 노력이 확산되고 있다. 즉 실험자들이 점차 복잡해지는 네트워킹 문제들을 논리적으로 집중화된 단순함으로 재편하여 손쉽게 해결하자는 것이다. 본 논문에서는 SDN에 기반한 미래형 서비스 실증을 위해 핵심적인 도구로 대두된 시험환경(또는 테스트베드)의 구축 방향과 사례를 살펴본다. 먼저 가상화되고 프로그램이 가능한 융합형 실험자원들을 다수의 실험자들이 공용하는 환경을 구축하고, 개별적으로 서비스 실증을 자유롭게 시도하는 전체 프레임워크를 제시한다. 특히 융합형 자원을 Rack 방식으로 구성하고 이를 연동하여 시험환경을 구축하는 추세에 따라, 독자적인 SmartX Rack을 사용한 SDN 기반 서비스 실증을 위한 시험환경 구축 사례를 설명한다.

Virtual Platform based on OpenRISC (OpenRISC 기반의 버츄얼 플랫폼)

  • Jang, HyeongUk;Lee, Jae-Jin;Byun, Kyungjun;Eum, Nakwoong;Jeong, Sangbae
    • Smart Media Journal
    • /
    • v.3 no.4
    • /
    • pp.9-15
    • /
    • 2014
  • A virtual platform models a processor core and the peripheral devices constituting the SoC in software. Major companies utilize a variety of platforms for product development with optimal SW+SoC integrated system architecture design and IP reuse based Top-Down design flow using a virtual platform. In this paper, we propose a virtual platform based on OpenRISC, an open source RISC based core. The proposed virtual platform supports high speed emulation of approximately 20 MIPS using DBT (Dynamic Binary Translation).