Abstract:
Disclosed are a logical network separation method and apparatus. The logical network separation method includes generating a first hash key on the basis of address information included in a service request packet, generating hash information on the basis of a transmission property of the service request packet corresponding to the first hash key when the same hash key as the first hash key is not in the hash table, and generating the policy about the reception of the service response packet corresponding to the service request packet on the basis of a destination of the service request packet. Accordingly, it is possible to block a cyber attack such as hacking, a malicious program, etc.
Abstract:
Disclosed are a network apparatus and an operating method thereof. The network apparatus includes: a security authentication module that executes security authentication of a distributed denial of service (DDoS) attack when a predetermined packet requests access to a particular service server to which the security authentication is applied, at the time of inputting the predetermined packet; and a communication module that transmits the predetermined packet security-authenticated by the security authentication module through a transmission route of the particular service server, so as to easily defend the DDoS attack by using a pseudo state of a service procedure.
Abstract:
A method of setting a user-defined virtual network is disclosed. A method of setting a virtual network includes configuring a virtual network including a controller, at least one network address translation (NAT) and at least one edge node, checking an operation type of the at least one edge node, setting a tunnel between the at least one edge node based on the operation type, and performing data transmission between the at least one edge node through the set tunnel.
Abstract:
An operation method of a server in a communication system may comprise receiving device information from each of a plurality of devices; generating service modeling information for each of a plurality of services; generating category modeling information for sub-services of each of the plurality of services based on the device information and the service modeling information; receiving service information; generating device modeling information corresponding to the category modeling information based on the service information; and transmitting the device modeling information to each of the plurality devices corresponding to the device modeling information, wherein the device modeling information includes configuration information for a network service function corresponding to a device corresponding to the device modeling information.
Abstract:
Disclosed are a method and apparatus for modeling a network configuration protocol (NETCONF)-based network device instruction with a yet another next generation (YANG) language. The method of modeling the NETCONF)-based network device instruction with the YANG language includes: searching for at least one instruction from a source file for controlling a NETCONF-based network device; parsing the retrieved instruction into a plurality of tokens; mapping each parsed token with a data type of the YANG language according to a previously defined mapping rule; and generating a YANG model corresponding to the at least one instruction according to mapping results. Accordingly, the YANG model is immediately generated reflecting changes in an instruction of a network system.
Abstract:
An apparatus for testing and developing products of network computing based on an open-source virtualized cloud includes a physical space, a network function virtualization (NFV) infrastructure domain space that provides a virtualization function in an independent environment of each user; an NFV engine space that provides a processing based environment for virtual appliances which are units of a virtual network device that is individually operable, a framework space that provides support to allow the virtual appliances to be developed and registered, and a virtual network service space that provides a user interface interoperating with the framework space so that a user configures a virtual network through the user interface and a test function of the configured virtual network is supported.
Abstract:
A system including software enables the running software to he upgraded without stopping any service. A system including software includes a task block loaded into a memory the task block being communicable with the outside through a message, and a dynamic module block loaded into the memory, the dynamic module block being symbolically linked with the task block to provide a service corresponding to the message.
Abstract:
An operation method of a VPN security apparatus includes receiving a service request from a client, dynamically allocating a fake address of a VPN apparatus connected to a service server, which provides the service requested by the client, and transmitting the fake address allocated to the VPN apparatus to the client and the VPN apparatus.
Abstract:
A system for balancing a data traffic load of a mobile communication device having multiple interfaces includes: an interface state management unit monitoring whether a failure occurs in a plurality of wireless interfaces included in a mobile communication apparatus; an interface quality management unit calculating load balancing ratios to be set for the plurality of wireless interfaces, respectively based on information on the plurality of wireless interfaces; and an interface control unit distributing data traffics to the plurality of respective wireless interfaces based, on the load balancing ratios.
Abstract:
In order to select a conference processing device to host a video conference between conference participation devices, a video conference system selects conference processing devices that are positioned most adjacent to each of conference participation devices that participate in the video conference as candidates for a conference processing device. The video conference system forms network topology based on candidate conference processing devices and conference participation devices, and aligns candidate conference processing devices based on preset alignment reference information. The video conference system selects one of the aligned candidate conference processing devices as an optimal conference processing device to host the video conference.