چكيده به لاتين
Abstract:
Nowadays Service delivery on emerging technologies, such as mobile phones on cloud infrastructure, requires new demands which traditional networks can not meet. The integration of software defined networks and the network function virtualization requires excesive considerations in terms of security to implement and replace previous solutions. Scaling of dynamic service chains during security service delivery is can be levereged as an attack detection/response solution to imrpove client's functionality. In this research, a simple security service chain composed of three nodes is instantiated. These nodes include a Traffic sender, a traffic receiver and an Intrusion Detection System. To simulate scaling situation, normal and attack traffic (DDOS) is generated to pass through the IDS with proper security rules and subsequently, different parameters in terms of Resource Utilization, service chain Performance and security functionality are monitored and measured. Afterwards, general equations of scaling decision making are proposed due to bottleneck metrics and their thresholds while considering possible tradeoffs. Finally, the time of scaling decision is evaluated based on proposed equations and the result is analyzed with respect to mentioned metric categories.
Keywords: Network function virtualization, Virtualized network function, Security function Scaling, Tradeoff, Service chain, Software defined network