StreaMon: A software-defined monitoring platform

Giuseppe Bianchi*, Marco Bonola, Giulio Picierro, Salvatore Pontarelli, Marco Monaci

*Corresponding author for this work

Research output: Chapter in Book/Report/Conference proceedingConference Contribution (Conference Proceeding)

6 Citations (Scopus)

Abstract

The fast evolving nature of modern cyber threats and network monitoring as well as the increasing interest in virtualization approaches for more complex network middlebox functionalities call for new, "software-defined", solutions to virtualize and simplify the programming and deployment of online (stream-based) traffic analysis functions. StreaMon is based on a data-plane abstraction devised to scalably decouple the "programming logic" of a traffic analysis application (tracked states, features, anomaly conditions, etc.) from elementary primitives (counting and metering, matching, events generation, etc), efficiently pre-implemented in the probes, and used as common instruction set for supporting the desired logic. The proposed SDN approach entails platform-independent, portable, multi-tenant online traffic analysis tasks written in a high level language and enables system users to completely virtualize network monitoring functionalities, isolate aggregated traffic flows and run multiple independent applications on a single software instance of the StreaMon platform. We validate our design by developing a prototype and a set of simple (but functionally demanding) use-case applications and by testing them over real traffic traces.

Original languageEnglish
Title of host publication2014 26th International Teletraffic Congress, ITC 2014
PublisherInstitute of Electrical and Electronics Engineers (IEEE)
ISBN (Print)9780988304505
DOIs
Publication statusPublished - 1 Jan 2014
Event2014 26th International Teletraffic Congress, ITC 2014 - Karlskrona, United Kingdom
Duration: 9 Sep 201411 Sep 2014

Conference

Conference2014 26th International Teletraffic Congress, ITC 2014
CountryUnited Kingdom
CityKarlskrona
Period9/09/1411/09/14

Keywords

  • Network monitoring
  • network programmability
  • XFSM

Fingerprint Dive into the research topics of 'StreaMon: A software-defined monitoring platform'. Together they form a unique fingerprint.

Cite this