TY - GEN
T1 - Decoupling policy from configuration in campus and enterprise networks
AU - Feamster, Nick
AU - Nayak, Ankur
AU - Kim, Hyojoon
AU - Clark, Russell
AU - Mundada, Yogesh
AU - Ramachandran, Anirudh
AU - Bin Tariq, Mukarram
PY - 2010
Y1 - 2010
N2 - This paper surveys our ongoing work on the use of software-defined networking to simplify two acute policy problems in campus and enterprise network operations: access control and information Bow control. We describe how the current coupling of high-level policy with low-level configuration makes these problems challenging today. We describe the specific policy problems faced by campus and enterprise network operators; illustrate our approach, which leverages recent trends in separating the network's "control plane" from the data plane; and show how this approach can be applied to simplify these two enterprise network management tasks. We also describe our ongoing deployment efforts to build a campus network testbed where trial designs can be deployed and evaluated. We close with a summary of current and future research challenges for solving challenges within enterprise networks within the context of this new paradigm.
AB - This paper surveys our ongoing work on the use of software-defined networking to simplify two acute policy problems in campus and enterprise network operations: access control and information Bow control. We describe how the current coupling of high-level policy with low-level configuration makes these problems challenging today. We describe the specific policy problems faced by campus and enterprise network operators; illustrate our approach, which leverages recent trends in separating the network's "control plane" from the data plane; and show how this approach can be applied to simplify these two enterprise network management tasks. We also describe our ongoing deployment efforts to build a campus network testbed where trial designs can be deployed and evaluated. We close with a summary of current and future research challenges for solving challenges within enterprise networks within the context of this new paradigm.
UR - http://www.scopus.com/inward/record.url?scp=77955188350&partnerID=8YFLogxK
UR - http://www.scopus.com/inward/citedby.url?scp=77955188350&partnerID=8YFLogxK
U2 - 10.1109/LANMAN.2010.5507162
DO - 10.1109/LANMAN.2010.5507162
M3 - Conference contribution
AN - SCOPUS:77955188350
SN - 9781424460670
T3 - LANMAN 2010 - The 17th IEEE International Workshop on Local and Metropolitan Area Networks
BT - LANMAN 2010 - The 17th IEEE International Workshop on Local and Metropolitan Area Networks
T2 - 17th IEEE Workshop on Local and Metropolitan Area Networks, LANMAN 2010
Y2 - 5 May 2010 through 7 May 2010
ER -