期刊文献+

基于Kubernetes的多级网络软件定义网关转发系统

Multi Level Network Software-defined Gateway Forwarding System Based on Kubernetes
下载PDF
导出
摘要 为解决边界安全网关的数据转发性能要求越来越高,运维难度逐日提升,且物理资源整体配置策略在不断动态变化的问题,提出并实现了基于Kubernetes的多级网络软件定义网关转发系统,在Kubernetes对业务集群进行集中管控的基础上,根据不同网络接口的使用场景和属性,动态调用不同类别的CNI插件进行接口配置,同时支持内核态和用户态的多级网络,将转发系统的控制平面和数据平面相分离,增强了系统服务的可控性。同时,引入了基于用户态协议栈的负载均衡模块,在不影响系统转发性能的前提下实现了数据包转发能力的动态伸缩、平滑升级、集群监视、故障迁移等功能。 In order to solve the problem that the requirement of data forwarding performance of border security gateway is high-er and higher,the difficulty of operation and maintenance is increasing day by day,and the overall configuration strategy of physical resources is constantly changing dynamically,a multi-level network software defined gateway forwarding system based on Kuber-netes is proposed and implemented.On the basis of kubernetes'centralized management and control of business clusters,according to the use scenarios and properties of different network interfaces,the gateway forwarding system is designed and implemented.It dy-namically calls different types of CNI plug-ins for interface configuration,supports multi-level network in kernel mode and user mode,separates the control plane and data plane of forwarding system,and enhances the controllability of system services.At the same time,the load balancing module based on user mode protocol stack is introduced to realize the functions of dynamic scaling,smooth upgrade,cluster monitoring,fault migration and so on without affecting the forwarding performance of the system.
作者 王正琦 王晔 郭靓 刘行 韦小刚 WANG Zhengqi;WANG Ye;GUO Liang;LIU Xing;WEI Xiaogang(Nanjing NARI Information&Communication Technology Co.,Ltd.,Nanjing 211106)
出处 《计算机与数字工程》 2024年第6期1802-1808,共7页 Computer & Digital Engineering
基金 国电南瑞科技股份有限公司及南京南瑞信息通信科技有限公司科技项目“系列化软件定义安全装置研制与安全态势感知平台开发”(编号:5246DR190054)资助。
关键词 Kubernetes 软件定义 转发系统 CNI Kubernetes software defined forwarding system CNI
  • 相关文献

参考文献3

二级参考文献130

  • 1Cisco.Cisco Visual Networking Index:Forecast and Methodology,2013-2018.2013.
  • 2Stanford University.Clean slate program.2006.http://cleanslate.stanford.edu/.
  • 3McKeown N.Software-Defined metworking.In:Proc.of the INFOCOM Key Note.2009.http://infocom2009.ieee-infocom.org/ technicalProgram.htm.
  • 4McKeown N,Anderson T,Balakrishnan H,Parulkar G,Peterson L,Rexford J,Shenker S,Turner J.OpenFlow:Enabling innovation in campus networks.ACM SIGCOMM CCR,2008,38(2):69-74.[doi:10.1145/1355734.1355746].
  • 5MIT Technology Review.10 breakthrough technologies,TRIO:Software-defined networking.2009.http://www2.technology review.com/article/412194/trl0-software-defined-networking/.
  • 6Jain R.Internet 3.0:Ten problems with current Internet architecture and solutions for the next generation.In:Proc.of the IEEE MILCOM.2006.1-9.[doi:10.1109/MILCQM.2006.301995].
  • 7Nunes BAA,Mendonca M,Nguyen XN,Obraczka K,Turletti T.A survey of software-defined networking:Past,present,and future of programmable networks.IEEE Communications Surveys and Tutorials,2014,16(3):1617-1634.[doi:10.1109/SURV.2014.012214.00180].
  • 8Tennenhouse DL,Wetherall DJ.Towards an active network architecture.In:Proc.of the IEEE DARPA Active Networks Conf.and Exposition.2002.2-15.[doi:10.1109/DANCE.2002.1003480].
  • 9Tennenhouse DL,Smith JM,Sincoskie WD,Wetherall D,Minden GJ.A survey of active network research.IEEE Communications Magazine,1997,35(1):80-86.[doi:10.1109/35.568214].
  • 10Greenberg A,Hjalmtysson G,Maltz DA,Myers A5 Rexford J,Xie G,Yan Hj Zhan JBs Zhang H.A clean slate 4D approach to network control and management.ACM SIGCOMM CCR,2005,35(5):41-54.[doi:10.1145/1096536.1096541].

共引文献451

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部