{"title":"Physical Layer Network Isolation in Multi-tenant Clouds","authors":"Jack Brassil","doi":"10.1109/ICDCSW.2010.39","DOIUrl":null,"url":null,"abstract":"The isolation capabilities provided by conventional enterprise data center technology are inadequate for many clients of multi-tenant storage or compute clouds. To address this deficiency we propose a cloud architecture which relies on strategic deployment of physical layer network isolation. We show how improved client isolation can be realized with 'color gapping' using existing Coarse Wavelength Division Multiplexing technologies, and demonstrate how in some settings isolation can be visually verified by clients. To address the challenging problem of isolating multiple clients' Virtual Machines within a single physical server, we introduce a novel application of distributed bridging based on Virtual Ethernet Port Aggregators.","PeriodicalId":133907,"journal":{"name":"2010 IEEE 30th International Conference on Distributed Computing Systems Workshops","volume":"97 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2010-06-21","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"13","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2010 IEEE 30th International Conference on Distributed Computing Systems Workshops","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICDCSW.2010.39","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 13
Abstract
The isolation capabilities provided by conventional enterprise data center technology are inadequate for many clients of multi-tenant storage or compute clouds. To address this deficiency we propose a cloud architecture which relies on strategic deployment of physical layer network isolation. We show how improved client isolation can be realized with 'color gapping' using existing Coarse Wavelength Division Multiplexing technologies, and demonstrate how in some settings isolation can be visually verified by clients. To address the challenging problem of isolating multiple clients' Virtual Machines within a single physical server, we introduce a novel application of distributed bridging based on Virtual Ethernet Port Aggregators.