arXiv · 1608.01377
D-STREAMON - a NFV-capable distributed framework for network monitoring
Abstract
Many reasons make NFV an attractive paradigm for IT security: lowers costs, agile operations and better isolation as well as fast security updates, improved incident responses and better level of automation. At the same time, the network threats tend to be increasingly complex and distributed, implying huge traffic scale to be monitored and increasingly strict mitigation delay requirements. Considering the current trend of the networking and the requirements to counteract to the evolution of cyber-threats, it is expected that also network monitoring will move towards NFV based solutions. In this paper, we present Distributed StreaMon (D-StreaMon) an NFV-capable distributed framework for network monitoring. D-StreaMon has been designed to face the above described challenges. It relies on the StreaMon platform, a solution for network monitoring originally designed for traditional middleboxes. An evolution path which migrates StreaMon from middleboxes to Virtual Network Functions (VNFs) is described. The paper reports a performance evaluation of the realized NFV based solution and discusses potential benefits in monitoring tenants' VMs for Service Providers.
Explore related subjects
Keep this discovery
Pier Luigi Ventre, Alberto Caponi, Davide Palmisano, Stefano Salsano, Giuseppe Siracusano, Marco Bonola, Giuseppe Bianchi. 2016-08-03. D-STREAMON - a NFV-capable distributed framework for network monitoring. https://arxiv.org/abs/1608.01377
Cite the original work for its findings. Save a collection to share your selection of sources.