Earticle

현재 위치 Home 검색결과

결과 내 검색

발행연도

-

학문분야

자료유형

간행물

검색결과

검색조건
검색결과 : 7
No
1

네트워크기능 가상화 (NFV) 자원할당 (RA) 방식과 연구동향 KCI 등재

김현철, 윤승현, 전홍석, 이원혁

한국융합보안학회 융합보안논문지 제16권 제7호 2016.12 pp.159-165

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

NFV (Network Function Virtualization)를 통해 네트워크 사업자, 캐리어 등과 같은 업계에서는 NFV가 추구하는 S/W 기 반의 장치를 통하여 신규 서비스 제공의 신속성과 네트워크 구축의 유연성 (flexibility)를 향상 시켜 CAPEX/OPEX를 대폭 감 소시키고자 하였다. NFV 네트워크를 구축하여 동적인 서비스를 제공하기 위한 가장 중요한 고려사항 중의 하나는 네트워크 서비스의 기본 구성 요소인 리소스 (VNF)들을 적재적소에 동적으로 할당하는 방식을 결정하는 것이다. 본 논문에서는 NFV 에서 임의의 NS를 제공하기 위해 필요한 VNF의 노드, 링크 할당 및 노드에서의 스케줄링에 관한 최신 연구 동향을 분석하였 다. 또한 본 논문에서는 이러한 연구결과를 기반으로 향후 RA (Resource Allocation)에서 추가적으로 연구해야 하는 스케줄링 문제 또한 제안하였다.

Through the NFV (Network Function Virtualization), companies such as network service providers and carriers have so ught to dramatically reduce CAPEX / OPEX by improving the speed of new service provisioning and flexibility of networ k construction through the S/W-based devices provided by NFV. One of the most important considerations for establishin g an NFV network to provide dynamic services is to determine how to dynamically allocate resources (VNFs), the basic b uilding blocks of network services, in the right place. In this paper, we analyzed the latest research trends on VNF node, link allocation, and scheduling in nodes that are required to provide arbitrary NS in NFV framework. In this paper, we als o propose VNF scheduling problems that should be studied further in RA (Resource Allocation).

2

네트워크 기능 가상화 관리 및 오케스트레이션 기능과 보안 KCI 등재

김현철

한국융합보안학회 융합보안논문지 제16권 제2호 2016.03 pp.19-23

※ 기관로그인 시 무료 이용이 가능합니다.

4,000원

최근 몇 년 동안 네트워크 인프라의 설계, 관리, 그리고 운영하는 방식은 새로운 기술들과 구성 방식들의 등장으로끊임없이 진화하고 있다. 이러한 거대한 추세를 반영하고 이러한 신기술들이 제공하는 막대한 경제적인 이득과 유연성을 기반으로 소프트웨어 정의 네트워킹 (SDN)과 네트워크 기능 가상화 (NFV)가 핵심요소로 등장하였다. SDN/NFV는네트워크 인프라의 민첩성을 대폭 향상시켜 네트워크 운영자나 서비스 제공자로 하여금 게이트웨이, 라우터, 그리고 로드 밸런서와 같은 자신만의 네트워크 기능들을 일반적인 하드웨어 상에서 구현 가능하게 하였다. SDN/NFV를 통하여네트워크 서비스의 설계, 제공 및 운용이 동적으로 지원 가능하게 되었다. NFV에서 MANO는 이러한 가상 인프라 관리자 (VIM)나 가상 네트워크 기능 관리자 (VNFM)와 같은 소프트웨어 관리자들의 오케스트레이션을 지원한다. 본 논문에서는 이러한 NFV MANO의 내용을 체계적으로 살펴보고 가상화 환경에서의 보안체계를 제안하고 있다.

The design, management, and operation of network infrastructure have evolved during the last few years, leveraging on innovative technologies and architectures. With such a huge trend, due to the flexibility and significant economic potential of these technologies, software defined networking (SDN) and network functions virtualization (NFV) are emerging as the most critical key enablers. SDN/NFV enhancing the infrastructure agility, thus network operators and service providers are able to program their own network functions (e.g., gateways, routers, load balancers) on vendor independent hardware substrate. They facilitating the design, delivery and operation of network services in a dynamic and scalable manner. In NFV, the management and orchestration (MANO) orchestrates other specific managers such as the virtual infrastructure manager (VIM) and the VNF Manager (VNFM). In this paper, we examine the contents of these NFV MANO systematically and proposes a security system in a virtualized environment.

3

4,000원

NFV는 다양한 네트워크 기능(NF: Network Function)들을 전용 네트워크 장비내의 하드웨어 장비로부터 분리하여 고성능 범용 서버에 구현함으로써 소프트웨어적으로 네트워크 서비스가 제어 및 관리 되도록 하는 기술을 말한다. 따라서 NFV에서는 네트워크 기능들의 표준화된 가상화 지원 여부가 가장 중요한 요소 중의 하나이다. 그러나 NFV를 도입하여 상용 서비스를 제공하기까지는 성능, 안정성 보장, 멀티 벤더 환경 지원, 완벽한 상호호환성 보장, 기존의 가상 및 비가상 자원간 연동 등 해결 해야 할 많은 기술 이슈를 남겨놓고 있는 실정이다. 이를 위해 본 논문에서는 OSM R2를 기반으로 첨단연구망 종단간 네트워크 가상화 서비스를 제공하기 위한 방안을 제안하였다.

NFV is a technology that allows network services to be controlled and managed in software by separating various net work functions (NFs) from hardware devices in dedicated network equipment and implementing them in a high-performance general-purpose server. Therefore, standardized virtualization of network functions is one of the most important factors. However, until the introduction of NFV to provide commercial services, there are many technical issues to be solved such as guaranteeing performance, stability, support for multi-vendor environment, ensuring perfect interoperability, and linking existing virtual and non-virtual resources. In this paper, we propose a method to provide an end-to-end network virtualization service based on OSM R2 in KREONET.

4

Design of an Efficient Method for Identifying Virtual Machines Compatible with Service Chain in a Virtual Network Environment SCOPUS

Hyeonseok Oh, Daeun Yu, Yoon-Ho Choi, Namgi Kim

보안공학연구지원센터(IJMUE) International Journal of Multimedia and Ubiquitous Engineering Vol.9 No.11 2014.11 pp.197-208

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

With advancements in network technologies, network virtualization has been proposed to efficiently provide a large number of services and flexible management by utilizing limited resources over existing networks as much as possible. Network virtualization has been proposed as a new paradigm for networks, as it simplifies complicated network configurations for convenient maintenance through the maximum utilization of limited network resources. However, problems have arisen due to network virtualization, such as how to assign real network components that are compatible with virtual network components over a large number of virtual machines existing in a network. In particular, the service-chaining concept—where a network flow only passes through needed services—has been newly introduced by combining the recently highlighted Software-Defined Network with a virtualization concept called Network Function Virtualization. As a result, studies on which virtual machines are selected and how to connect them have increased ever more. Accordingly, this paper aims to identify virtual machines that are compatible with service chaining in a virtual network environment where virtual machines are dispersed, and it proposes a method of how to create a path by connecting virtual machines.

5

A Study of Service Function Chaining in Network Function Virtualization SCOPUS

In-Cheol Jo, Gu-In Kwon

보안공학연구지원센터(IJSEIA) International Journal of Software Engineering and Its Applications Vol.10 No.7 2016.07 pp.93-100

※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

Network function virtualization (NFV) virtualizes entire classes of network functions into building blocks of software. A virtualized network function (VNF) can consist of one or more virtual machines to provide communication services. Service Function Chaining (SFC) provides the ability to define an ordered list of virtualized network functions while considering multiple computing constraint conditions such as CPU, memory, and bandwidth. In a cloud data center network, the various virtualized network functions can reside in multiple physical machines and a certain chain of VNFs must be carefully considered to provide an optimal path. Such an optimization problem with multiple constraints is known as an NP-hard optimization problem. We propose a metaheuristic method to provide an optimal chain of VNFs using a genetic algorithm while considering multiple constraints. This paper aims to provide a path with well-balanced computing resources in a cloud data center network environment.

6

소프트웨어 정의 네트워킹과 네트워크 기능 가상화를 이용한 클라우드 네트워크에서의 보안 서비스 제공 방법론에 대한 연구

김진우, 신승원

[Kisti 연계] 한국정보처리학회 한국정보처리학회 학술대회논문집 2016 pp.133-135

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

현재 클라우드 네트워크는 복잡성 및 거대한 규모로 인해 기존 네트워크와는 차별화된 양상을 보이고 있다. 하드웨어 기반 보안 장비로만 보안 서비스를 제공하기에는 한정적 자원을 고려하였을 때 한계가 있으며, 온 디맨드 서비스와 멀티 테넌시로 인한 동적인 네트워크 환경은 관리자가 외부의 보안 위협뿐만 아니라 내부의 위협도 고려해야하도록 만든다. 본 논문에서는 SDN과 NFV를 이용하여 언급한 문제점들을 해결하고, 효과적인 보안 서비스를 제공할 수 있는 방법론을 제시하도록 한다.

7

소프트웨어 정의 네트워킹과 네트워크 기능 가상화를 이용한 클라우드 네트워크에서의 보안 서비스 제공 방법론에 대한 연구

김진우, 신승원

[Kisti 연계] 한국정보처리학회 한국정보처리학회 학술대회논문집 2016 pp.133-135

※ 협약을 통해 무료로 제공되는 자료로, 원문이용 방식은 연계기관의 정책을 따르고 있습니다.

원문보기

현재 클라우드 네트워크는 복잡성 및 거대한 규모로 인해 기존 네트워크와는 차별화된 양상을 보이고 있다. 하드웨어 기반 보안 장비로만 보안 서비스를 제공하기에는 한정적 자원을 고려하였을 때 한계가 있으며, 온 디맨드 서비스와 멀티 테넌시로 인한 동적인 네트워크 환경은 관리자가 외부의 보안 위협뿐만 아니라 내부의 위협도 고려해야하도록 만든다. 본 논문에서는 SDN과 NFV를 이용하여 언급한 문제점들을 해결하고, 효과적인 보안 서비스를 제공할 수 있는 방법론을 제시하도록 한다.

 
페이지 저장