{"title":"Proposing and evaluating the performance of a firewall implemented as a virtualized network function","authors":"L. Mauricio, M. Rubinstein, O. Duarte","doi":"10.1109/NOF.2016.7810127","DOIUrl":null,"url":null,"abstract":"The virtualization technology provides many advantages to datacenters such as: reduction of power, cooling, and hardware costs. Moreover, virtualization simplifies administration and maintenance. On the other hand, for assuring security policies, a virtualized datacenter may require a large Access Control List (ACL) that can overload current commercial Top of Rack (ToR) equipment. This paper proposes and evaluates the performance of a firewall implemented as a virtualized network function in the Open source Platform for Network Functions Virtualization (OPNFV) using commercial off-the-shelf servers. Results show that the function provides elastic capacity that can scale up, meeting the current ingress traffic demands.","PeriodicalId":208097,"journal":{"name":"2016 7th International Conference on the Network of the Future (NOF)","volume":"92 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2016-11-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"8","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2016 7th International Conference on the Network of the Future (NOF)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/NOF.2016.7810127","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 8
Abstract
The virtualization technology provides many advantages to datacenters such as: reduction of power, cooling, and hardware costs. Moreover, virtualization simplifies administration and maintenance. On the other hand, for assuring security policies, a virtualized datacenter may require a large Access Control List (ACL) that can overload current commercial Top of Rack (ToR) equipment. This paper proposes and evaluates the performance of a firewall implemented as a virtualized network function in the Open source Platform for Network Functions Virtualization (OPNFV) using commercial off-the-shelf servers. Results show that the function provides elastic capacity that can scale up, meeting the current ingress traffic demands.
虚拟化技术为数据中心提供了许多优势,例如:降低电力、冷却和硬件成本。此外,虚拟化简化了管理和维护。另一方面,为了确保安全策略,虚拟化数据中心可能需要大量的访问控制列表(ACL),这可能会使当前的商用ToR (Top of Rack)设备过载。本文提出并评估了在开源网络功能虚拟化平台(OPNFV)中使用商用现货服务器作为虚拟化网络功能实现的防火墙的性能。结果表明,该功能提供了可扩展的弹性容量,可以满足当前的入口流量需求。