期刊文献+

VNTGM:面向大规模网络安全实验的虚拟网络拓扑生成方法

VNTGM:Virtual Network Topology Generation Method for Large-Scale Network Security Experiment
下载PDF
导出
摘要 依据实验需求搭建虚拟网络拓扑环境是进行大规模网络安全实验时面临的首要问题。目前采用的基于图形绘制、基于配置脚本和基于通用拓扑生成工具的虚拟网络拓扑生成方式难以同时满足实验环境逼真度和灵活性的要求。针对大规模虚拟网络拓扑生成存在的要素不全、配置繁琐等问题,提出一种虚拟网络拓扑生成方法VNTGM,利用已有拓扑生成工具生成路由器级虚拟网络拓扑,在此基础上根据不同类型的网络拓扑特征运用离心中心性、K壳分解、度中心性的方法实现中心节点的识别,而后对于不同类型中心节点使用最短路径、逐层搜索、最大度搜索的方法进行边缘路由节点的选定,最后添加主机节点,实现包括路由器、终端节点等全要素的上万节点规模虚拟网络拓扑生成。万节点级规模的虚拟网络拓扑生成实验表明,VNTGM方法可在1分钟内完成1万节点规模,并在5分钟内完成3万节点规模的全要素大规模虚拟网络拓扑的生成,大大降低了配置复杂度。 Building a virtual network topology environment based on experimental requirements is the primary problem when conducting large-scale network security experiments.The current virtual network topology generation based on graphics rendering,configuration scripts,and general topology generation tools could hardly meet the requirements of experimental environment fidelity and flexibility.To address such problems in large-scale virtual network topology generation as incomplete features and complicated configuration,this paper proposes a virtual network topology generation method VNTGM,which uses existing topology generation tools to generate router-level virtual network topology.On this basis,different types of networks are used.Topological features use centrifugation centering,K-shell decomposition,and degree-centricity to realize the identification of the central node,and then use the shortest path,layer-by-layer search,and maximum search methods for the selection of edge routing nodes for different types of central nodes.A host node is added to implement tens of thousands of node-scale virtual network topology generation including all elements such as routers and terminal nodes.The virtual node topology generation experiment of 10,000-node class shows that the VNTGM method can complete the generation of full-featured large-scale virtual network topology with the scale of 10,000 nodes in one minute and the scale of 30,000 nodes in five minutes,which greatly reduces the configuration complexity.
作者 黄震 朱俊虎 邱菡 周天阳 HUANG Zhen;ZHU Junhu;QIU Han;ZHOU Tianyang(Information Engineering University,Zhengzhou 450001,China)
机构地区 信息工程大学
出处 《信息工程大学学报》 2019年第2期204-209,共6页 Journal of Information Engineering University
基金 国家自然科学基金资助项目(61502528)
关键词 网络安全测试床 虚拟网络拓扑 大规模实验 network security testbed virtual network topology large scale experiments
  • 相关文献

参考文献3

二级参考文献22

  • 1徐启建.通信网络计算机仿真技术发展综述[J].数据通信,1996(1):49-55. 被引量:6
  • 2Waxman BM. Routing of multipoint connections[J]. IEEE Journal on Selected Areas in Communications, 1988, 6(9) : 1617 - 1622.
  • 3Zegura EW, Calvert KL, Bhattacharjee S. How to Model an Internetwork[ A]. Proceedings of IEEE INFOCOM[C], 1996.
  • 4Doar MB. A Better Model for Generating Test Networks[A]. Proceedings of GIobecom '96[ C], 1996.
  • 5Clark D. Policy routing in intcrnct protocols[S]. Intcrnct Request for Comments 1102, 1989.
  • 6Calvert KL, Doar MB, Zegura EW. Modeling Intemet Topology[J].IEEE Communications Magazine, 1997, 35(6) : 160 - 163.
  • 7OPNET Modeler[Z]. [2006-09]. http://www.opnet.com/products/mod eler/home.html.
  • 8Bajaj L, Takai M, Ahuja R, et al. Glomosim: A Scalable Network Simulation Environment[R]. UCLA Computer Science Department, Technical Report: 990027, 1999-05.
  • 9Tutorial for the Network Simulator "ns"[Z]. [2006-09]. http://www.isi. edu/nsnam/ns/tutorial.
  • 10Ousterhout J K. Tcl and the Tk Toolkit[M]. Boston: Addison Wesley, 1994.

共引文献5

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部