{"title":"DAI: Dynamic ACL Policy Implementation for Software-Defined Networking","authors":"Mujahid Ali, Nadir Shah, Muazzam A. Khan Khattak","doi":"10.1109/HONET50430.2020.9322835","DOIUrl":null,"url":null,"abstract":"Existing approaches of SDN declare the Access Control List (ACL) policies at the controller. For computing the path, the controller matches the packet with all ACL policies irrespective that whether the hosts of an ACL policy are connected or not to the network. It incurs longer processing delay at the controller, which causes a longer end-to-end delay for the data packets and limits the controller's scalability. This paper suggests a novel mechanism called Dynamic ACL policy Implementation (DAI), for SDN, to address this problem that matches the controller's packet with only active ACL policies. Active ACL policies are those whose hosts are connected to the network. This mechanism reduces the processing delay at the controller and would reduce the end-to-end delay for data packets. Moreover, this will increase the scalability of the SDN controller because the saved timing could be used by the controller to process other tasks. Through simulation results, we show that our proposed approach performs better than the existing approach.","PeriodicalId":245321,"journal":{"name":"2020 IEEE 17th International Conference on Smart Communities: Improving Quality of Life Using ICT, IoT and AI (HONET)","volume":"2019 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2020-12-14","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"4","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2020 IEEE 17th International Conference on Smart Communities: Improving Quality of Life Using ICT, IoT and AI (HONET)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/HONET50430.2020.9322835","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 4
Abstract
Existing approaches of SDN declare the Access Control List (ACL) policies at the controller. For computing the path, the controller matches the packet with all ACL policies irrespective that whether the hosts of an ACL policy are connected or not to the network. It incurs longer processing delay at the controller, which causes a longer end-to-end delay for the data packets and limits the controller's scalability. This paper suggests a novel mechanism called Dynamic ACL policy Implementation (DAI), for SDN, to address this problem that matches the controller's packet with only active ACL policies. Active ACL policies are those whose hosts are connected to the network. This mechanism reduces the processing delay at the controller and would reduce the end-to-end delay for data packets. Moreover, this will increase the scalability of the SDN controller because the saved timing could be used by the controller to process other tasks. Through simulation results, we show that our proposed approach performs better than the existing approach.