Rethinking Enterprise Network Control

被引:96
作者
Casado, Martin [1 ]
Freedman, Michael J. [2 ]
Pettit, Justin [1 ]
Luo, Jianying [1 ]
Gude, Natasha [1 ]
McKeown, Nick [1 ]
Shenker, Scott [3 ]
机构
[1] Stanford Univ, Stanford, CA 94305 USA
[2] Princeton Univ, Princeton, NJ 08544 USA
[3] Univ Calif Berkeley, Berkeley, CA 94720 USA
基金
美国国家科学基金会;
关键词
Architecture; management; network; security;
D O I
10.1109/TNET.2009.2026415
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
This paper presents Ethane, a new network architecture for the enterprise. Ethane allows managers to define a single network-wide fine-grain policy and then enforces it directly. Ethane couples extremely simple flow-based Ethernet switches with a centralized controller that manages the admittance and routing of flows. While radical, this design is backwards-compatible with existing hosts and switches. We have implemented Ethane in both hardware and software, supporting both wired and wireless hosts. We also show that it is compatible with existing high-fanout switches by porting it to popular commodity switching chipsets. We have deployed and managed two operational Ethane networks, one in the Stanford University Computer Science Department supporting over 300 hosts, and another within a small business of 30 hosts. Our deployment experiences have significantly affected Ethane's design.
引用
收藏
页码:1270 / 1283
页数:14
相关论文
共 20 条
[1]  
[Anonymous], Microsoft network access protection
[2]  
[Anonymous], CISCO NETWORK ADMISS
[3]  
[Anonymous], P 31 ANN ACM S THEOR
[4]  
[Anonymous], 2006, P 15 C USENIX SEC S
[5]  
Broder A, 2001, IEEE INFOCOM SER, P1454, DOI 10.1109/INFCOM.2001.916641
[6]   The cutting EDGE of IP router configuration [J].
Caldwell, D ;
Gilbert, A ;
Gottlieb, J ;
Greenberg, A ;
Hjalmtysson, G ;
Rexford, J .
ACM SIGCOMM COMPUTER COMMUNICATION REVIEW, 2004, 34 (01) :21-26
[7]  
CASADO M, 2007, P ACM SIGCOMM NEW YO, P1
[8]   A clean slate 4D approach to network control and management [J].
Greenberg, A ;
Hjaimtysson, G ;
Maltz, DA ;
Myers, A ;
Rexford, J ;
Xie, G ;
Yan, H ;
Zhan, JB ;
Zhang, H .
ACM SIGCOMM COMPUTER COMMUNICATION REVIEW, 2005, 35 (05) :41-+
[9]  
Hinrichs T., 2009, ACM WORKSH RES ENT N
[10]  
Ioannidis S., 2000, P 7 ACM C COMP COMM, P190, DOI [10.1145/352600.353052, DOI 10.1145/352600.353052]