-
公开(公告)号:US11032159B2
公开(公告)日:2021-06-08
申请号:US16727486
申请日:2019-12-26
Inventor: Seungwon Shin , Jaehyun Nam , JunSik Seo
Abstract: The inventive concept described herein relates to a performance analysis apparatus of VNF in a NFV platform and a method thereof that may analyze the performance of VNFs in an NFV platform and a factor that causes the performance to be degraded. A performance analysis apparatus of VNF that analyzes performance of the VNF within a NFV platform includes an NFV environment constituting unit generating a service chain composed of VNFs, using a VNF policy configuration of the VNF and configured to deploy the VNFs corresponding to the service chain in the NFV platform, a performance monitoring unit monitoring internal forms of the VNFs by measuring a performance feature of each component within the NFV platform and a performance feature for the service chain, and an analysis unit specifying a performance degradation VNF that degrades performance in the service chain to derive a cause.
-
公开(公告)号:US20210211408A1
公开(公告)日:2021-07-08
申请号:US17125551
申请日:2020-12-17
Inventor: Phillip A. Porras , Vinod Yegneswaran , Jaehyun Nam , Seungwon Shin
Abstract: A method, apparatus and system for providing security for a container network having a plurality of containers includes establishing a network stack for each of the plurality of containers of the container network, determining network and policy information from active containers, based on a set of pre-determined inter-container dependencies for the plurality of containers learned from the determined network and policy information, configuring container access in the container network to be limited to only containers of the plurality of containers that are relevant to a respective communication, and configuring inter-container traffic in the container network to be directed only from a source container into a destination container in a point-to-point manner such that exposure of the inter-container traffic to peer containers is prevented.
-
3.
公开(公告)号:US10333792B2
公开(公告)日:2019-06-25
申请号:US15367251
申请日:2016-12-02
Inventor: Seungwon Shin , Jaehyun Nam , Hyeonseong Jo , Yeonkeun Kim
IPC: G06F15/173 , H04L12/24 , G06F16/955 , H04L12/26
Abstract: Disclosed are a modular controller and an operating method thereof. An operating method of a modular controller having a plurality of modules in a software-defined network environment includes generating a first event including a message that is received from a network device, transmitting the first event to an event handler, transmitting the first event to the plurality of modules from the event handler, determining whether the first event is identical to a target event in event type through the plurality of modules that receive the first event, and performing a function of a first module, which corresponds to the identity between the first event and the target event, by using the first event. A network manager is able to easily form a controller with various functions such as performance enhancement and security enhancement at need, facilitating combination and separation of different modules in a controller.
-
-