Abstract:
An apparatus and method for resolving a mapping between an address of a physical or virtual node and a physical address on a network, in the SDN in which a network is controlled based on software by a centralized controller. The apparatus may include an address matcher and a controller. The controller may determine all matters related to packet forwarding in a centralized method; and an application for performing desired functions is programmed in the controller, which is then installed therein. Accordingly, the purpose thereof is to provide new network services easily.
Abstract:
A system and method for virtualizing SDN-based network monitoring. The system for includes: an information collector, a monitoring component, an information converter, and a resource allocator, in which a user-defined virtual monitor is included so that integrated monitoring may be performed, and expandability may be guaranteed to dynamically respond to a user's, demands.
Abstract:
A server connection apparatus and method for controlling a connection between a plurality of controller servers and a plurality of network devices. The server connection apparatus includes a network connector configured to connect a plurality of controller servers capable of functioning as OpenFlow protocol-based SDN controllers and a plurality of network devices on a data plane and relay transmission and reception of data between the controller servers and the network devices; and a controller configured to create a list of available controller servers by monitoring an operational state of each controller server, select a particular controller server to be in charge of controlling a network device in response to a received request, and then control connection relationships between the plurality of controller servers and the plurality of network devices based on the selection result.
Abstract:
A communication method in a software defined network (SDN) using a hierarchical structure and a system thereof are provided. The communication method includes separating a transport plane and a control plane from each other; hierarchically partitioning the control plane into a plurality of lower-level controllers and a upper-level controller that is configured to integratedly manage the plurality of lower-level controllers; and controlling communication among unit networks or through at least one unit network by using a hierarchical structure of the control plane.
Abstract:
A method of determining an INP execution location for data processing in a name-based in-network system includes: receiving, by a first router, an INP interest packet; determining, by the first router, whether or not to perform an INP execution in the first router on the basis of user policy information and constraint information included in the INP interest packet. Herein, when the first router is capable of executing the INP, the first router generates an execution environment, and executes a function, and when the first router is not capable of executing the INP, the first router transfers the INP interest packet to a second router.
Abstract:
An original packet flow mapping apparatus and method based on an overlay network. The original packet flow mapping apparatus may include a packet-in message receiver, a flow controller, an overlay tunnel controller, and an interface, whereby flows can be identified even in a physical network segment on which an overlay link is implemented and then the flow can be mapped to an original flow.
Abstract:
Disclosed herein is a system for a secret sharing authentication. The system may include a secret sharing information management server, a client device, and a network device. The secret sharing information management server may store and manage an authentication key capable of being used for secret sharing authentication, by dividing the authentication key into a first secret sharing key shard and a second secret sharing key shard, and allocate the first and second secret sharing key shards. The client device may receive the first secret sharing key shard from the secret sharing information management server and construct an interest packet by using the first secret sharing key shards. The network device may receive the second secret sharing key shard from the secret sharing information management server, and process the interest packet received from the client device on the basis of an ICN(Information Centric Networking) method by performing secret sharing authentication using the second secret sharing key shard and the first secret sharing key shard comprised in the interest packet.
Abstract:
A software-defined network (SDN) system and method for implementing the same can construct a network having flexible network topology by abstracting switches and controllers, as well as a host connected to said switches, and controllers, thereby increasing scalability of a hierarchical SDN network. The SDN system includes a host part, an SDN switch part, and an SDN controller part.
Abstract:
A method and apparatus for managing a flow table is provided. The method includes dividing a flow table into a plurality of states according to occupancy levels of the flow table in a network device; and managing the flow table by reflecting the changed state of the flow table.
Abstract:
Disclosed herein are a method for protecting data for information centric in-network computing and a system using the same. The method includes: preparing, at a computing node, a an encryption key pool that includes a security key for sharing a symmetric key used for encrypting result data according to a user's request and matching information; preparing, at an INC agent receiving the user's request, a synchronization key pool for sharing the security key through the matching information; and creating, by the computing node, a processor for executing output processing of the result data and allocating a security key to the processor based on the matching information of the encryption key pool when a security key exists. The security key is allocated to the computing node which is determined to perform the request in the INC agent.