首页 | 官方网站   微博 | 高级检索  
相似文献
 共查询到20条相似文献,搜索用时 187 毫秒
1.
一项新的网络技术正在声名鹊起,那就是SDN,即软件定义网络。SDN把网络系统的控制平面与数据转发平面进行了分离,使网络建设更加快捷、成本更低、利用率更高、维护更方便。这一新网络建设模式的出现,将给网络技术架构、网络建设带来一场新的变革,也将为流媒体网络建设和视频服务带来非常大的影响;本文从技术架构、优点与挑战、在流媒体业务中的应用,以及OpenFlow协议等几个方面对SDN做了较为详细的介绍。  相似文献   

2.
连建 《电信快报》2014,(2):30-32
SDN(软件定义网络)技术将网络的控制平面与数据转发平面分离,支持更灵活的网络控制和业务带宽按需调度的能力,为不断涌现的网络新应用和未来网络技术提供了一种新的解决方案。文章从SDN的概念和总体架构出发,介绍SDN技术特点,在此基础上对SDN在数据中心网络、数据中心互联、政企网络、电信运营商网络、互联网公司业务部署等场景的应用进行探讨。  相似文献   

3.
《无线电工程》2016,(4):13-17
随着网络规模的快速扩大及网络业务的多样化,原有的网络架构难以满足未来发展需要。软件定义网络(Software Defined Network,SDN)作为一种新兴技术,实现了控制面与数据面的解耦,能够提供网络的集中控制与流量的灵活调度,将引起通信领域的巨大变革。研究了SDN架构的特点及其面临的安全威胁;针对SDN安全技术研究现状进行了综述;从网络动态防御、软件定义监控和自身安全性增强3个方面提出了SDN安全技术的发展方向。在加强SDN自身安全性的同时提高了网络安全资源的动态调度能力。  相似文献   

4.
陈礼波  覃宁 《电信科学》2015,31(2):169-174
在新型业务需求和新技术涌现的双重驱动下,软件定义网络(SDN)成为互联网应用提供商、运营商、IT系统和网络设备提供商共同关注的新型网络架构和技术。这种网络控制与转发能力分离的架构,可以支持更灵活的网络控制和业务能力提供。从SDN的概念和总体架构出发,分析IP RAN对SDN的需求,提出了在IP RAN中引入SDN技术的目标网络结构和网络模型,并对基于SDN的IP RAN应用策略进行了探讨。  相似文献   

5.
软件定义网络(SDN)技术架构通过把原有封闭的体系解耦为数据平面、控制平面和应用平面,提供了一种可编程的网络,革命性地改变了现有的网络架构。文章分析了高校网络安全数据传输现状,基于SDN技术在高校网络安全数据传输方面的要求,阐述了高校网络数据安全传输存在的问题。通过对高校网络数据中心SDN的总体设计、Underlay网络自动部署、Overlay网络部署三部分,探究基于SDN的高校网络安全数据传输策略,为高校网络数据传输安全提供保障。  相似文献   

6.
本书分为核心原理和应用实践两大部分,对软件定义网络(SDN)技术进行了全面剖析和深入解读。第一部分首先阐述了SDN的设计思想与体系架构,详细分析了软件定义网络的控制转发分离和可编程两个突出属性,其次介绍了以OpenFlow为代表的SDN南向接口协议,以及北向和东西向接口协议,接下来根据SDN的层次化架构,依次介绍了SDN数据平面、控制平面以及SDN应用案例,最后梳理总结了SDN标准化进展以  相似文献   

7.
黄海峰 《通信世界》2013,(13):22-22
SDN被看做下一代网络架构创新技术之一,对中国特色网络社会的构建和发展必然带来巨大影响。随着新业务的不断发展,传统网络不再适应,诞生于学术界的SDN(软件自定义)技术是关于未来互联网架构的全新探索,目前成为了全球开放网络架构和网络虚拟化领域的研究热点,也被看做是下一代网  相似文献   

8.
SDN技术在电信网络中应用的关键问题探讨   总被引:1,自引:0,他引:1  
通过对软件定义网络(SDN)技术总体架构的分析,提出了SDN技术在电信网络中规模应用面临的4个方面的问题,包括数据平面构建问题、控制平面构建问题、与应用的整合问题以及如何在电信网络内平滑演进的问题。并参考业内主流的解决技术,给出了SDN技术应用在电信网络中的解决方案。  相似文献   

9.
软件定义网络(SDN)架构给网络带来了卓越的灵活性和可管理性。为了给新型SDN技术与应用提供大规模可行性验证试验床与试点部署平台,提出了依托于CERNET的层次化跨区域SDN 异地验证示范网络试验系统的总体架构,建设了9个城市、13个节点的SDN验证示范核心网与包含3个数据中心的接入网,并对基于SDN的vCPE智能专线业务、IPv4/IPv6过渡技术、流量监控调度应用和数据中心应用进行验证与示范。  相似文献   

10.
SDN对电信运营商来说是一把双刃剑。除了带来网络与业务运营的挑战,还通过提升网络效率和增加业务收入,促进运营商网络应用创新。SDN,即软件定义网络,是目前ICT领域备受关注的技术和架构。SDN具有控制与转发分离、控制逻辑集中、网络能力开放等特征。  相似文献   

11.
张洋 《电子测试》2016,(19):11-13
随着云计算和大数据等技术的发展,传统网络已经无法满足飞速发展的需求,软件定义网络(SDN)的出现带来了网络发展的变革,虽然SDN已经得到一定的应用,但是其仍处在研究完善阶段.本文阐述了SDN的关键技术以及主要协议,分析了SDN面临的安全问题,提出了一种基于流表特征的DDoS攻击检测方法,并给出了对应的攻击缓解方案.  相似文献   

12.
In recent years, Software-Defined Networking (SDN) has been a focus of research. As a promising network architecture, SDN will possibly replace traditional networking, as it brings promising opportunities for network management in terms of simplicity, programmability, and elasticity. While many efforts are currently being made to standardize this emerging paradigm, careful attention needs to be also paid to security at this early design stage. This paper focuses on the security aspects of SDN. We begin by discussing characteristics and standards of SDN. On the basis of these, we discuss the security features as a whole and then analyze the security threats and countermeasures in detail from three aspects, based on which part of the SDN paradigm they target, i.e., the data forwarding layer, the control layer and the application layer. Countermeasure techniques that could be used to prevent, mitigate, or recover from some of such attacks are also described, while the threats encountered when developing these defensive mechanisms are highlighted.  相似文献   

13.
Software-defined network (SDN) separated the traditional control plane from the data plane,formed a centralized controller,opened up the network programming interface,simplified network management,promoted network innovation and optimized network operation.However,SDN's “three-layer two-interface” architecture increased the network attack surface,resulting in many new security issues.The development,characteristics and working principle of SDN were first introduced,and the existing security problems from the application layer,the northbound interface,the control plane,the southbound interface,the data plane were summarized respectively.Secondly,the latest research progress and existing solutions were discussed.Finally,SDN current and future security challenges were summarized,and the future SDN security development direction was looked forward to.  相似文献   

14.
The separation of control and forwarding planes in software‐defined networking (SDN) networks is a key issue of the SDN technology. This feature and the existence of the SDN controller allow the developing of dynamic, adaptable and manageable networks, networks that require adequate services, and applications. However, the separation of these planes prevents the use of existing powerful tools that were coded considering traditional networks. In this paper, we make use of the potential of network virtualization (NV) technologies to propose the use of a virtualized infrastructure that makes possible the incorporation of these existing services and/or applications to an SDN network, without the need for programming additional and complex software modules in the SDN controller. Thus, in this paper, NV is not employed to develop a network managed by SDN but to broaden and give support to the SDN control layer. As an example, we describe the incorporation of nmap (a versatile and powerful tool widely used by security experts for network exploration) into the SDN framework. It is only necessary to develop a simple control plane service that thanks to the proposed virtualized infrastructure allows the inclusion of this powerful management application. The result offers the complete functionality of the nmap utility to the network administrators, who control the SDN network through the out‐of‐band control plane. In addition, a northbound REST API has been defined to offer the main functionality of the tool (host discovery, port scanning, and operating system detection) to the application layer.  相似文献   

15.
软件定义网络(Software Defined Network,SDN)依靠着其集中控制、可编程性和数控分离等优点,能够有效解决无人机网络(Flying Ad Hoc Network,FANET)面临的任务拓扑高度变化、网络链路连接不稳定、网络安全防护脆弱以及应用程序的异构性等问题,极大地提升FANET的灵活性和可靠性。针对SDN架构与FANET的结合问题,描述了SDN的体系架构,并以SDN控制器部署方式为关注点分类别概括了近几年软件定义无人机网络(Software-defined Flying Ad Hoc Network,SD-FANET)的研究进展,重点阐述了结合移动边缘计算(Mobile Edge Computing,MEC)的SD-FANET研究现状,最后指出了SD-FANET的应用场景和一些具体的未来研究方向。  相似文献   

16.
李瑶 《中国新通信》2014,(22):54-55
云计算的出现给传统网络带来了巨大的挑战和改变。爆炸式的数据增长暴露了传统数据网络的不足,而这个问题催生了软件定义网络(SDN,SoftwareDefinedNetworking)。SDN把网络作为资源向上层IT业务开发,从而实现网络的动态,实时和灵活的调整,解决了私有云网络部署中的瓶颈问题。主要对现有SDN模式下的网络管理方案进行了相关探讨并对该方案提出了开放性的意见以及其不足之处。  相似文献   

17.
Software defined network (SDN) is a new kind of network technology,and the security problems are the hot topics in SDN field,such as SDN control channel security,forged service deployment and external distributed denial of service (DDoS) attacks.Aiming at DDoS attack problem of security in SDN,a DDoS attack detection method called DCNN-DSAE based on deep learning hybrid model in SDN was proposed.In this method,when a deep learning model was constructed,the input feature included 21 different types of fields extracted from the data plane and 5 extra self-designed features of distinguishing flow types.The experimental results show that the method has high accuracy,it’s better than the traditional support vector machine (SVM) and deep neural network (DNN) and other machine learning methods.At the same time,the proposed method can also shorten the processing time of classification detection.The detection model is deployed in SDN controller,and the new security policy is sent to the OpenFlow switch to achieve the defense against specific DDoS attack.  相似文献   

18.
Software-Defined Networking (SDN) is an emerging architecture that enables a computer network to be intelligently and centrally controlled via software applications. It can help manage the whole network environment in a consistent and holistic way, without the need of understanding the underlying network structure. At present, SDN may face many challenges like insider attacks, i.e., the centralized control plane would be attacked by malicious underlying devices and switches. To protect the security of SDN, effective detection approaches are indispensable. In the literature, challenge-based Collaborative Intrusion Detection Networks (CIDNs) are an effective detection framework in identifying malicious nodes. It calculates the nodes’ reputation and detects a malicious node by sending out a special message called a challenge. In this work, we devise a challenge-based CIDN in SDN and measure its performance against malicious internal nodes. Our results demonstrate that such a mechanism can be effective in SDN environments.  相似文献   

19.
The network testbed based on software defined networking (referred as SDN testbed) has attracted extensive attention in the academic and industrial circles in recent years,and there have been many valuable cases of system/platform construction.Therefore,an overview of the SDN testbed was intended to conduct in the global scope.Firstly,the advantages of the SDN testbed and the basic design principles of the large-scale SDN testbed was explored comparing with the traditional network testbed.Secondly,in-depth analysis of existing SDN testbed projects was provided from the aspects of the project objectives and progress,the key technologies,network deployment,and featured applications.Finally,the challenges faced in this field were described in terms of network slicing,light and wireless convergence,security,and reliability.Future research directions are also suggested.  相似文献   

20.
针对近些年网络新业务和新技术应用不断增长的趋势,介绍了光网领域应用软件定义网络(SDN)技术的重要性。重点研究分析了2种面向IP和光传送网(OTN)协同的SDN技术——ONF Transport API(TAPI)和OpenDayLight Transport PCE(TPCE),包括它们具体的技术细节以及如何实现跨域跨厂家多层网络管控,并对它们的技术特点进行了比较。最后展望了这2种SDN技术未来的发展方向。  相似文献   

设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司    京ICP备09084417号-23

京公网安备 11010802026262号