排序方式: 共有86条查询结果,搜索用时 31 毫秒
1.
2.
软件定义网络(Software Defined Network, SDN)是目前构建数据中心网络的一个研究热点,SDN可满足数据中心的集中管控、虚拟机部署与迁移等需求。但实现SDN优势的最大难题在于流量超大规模的优化问题,采用三态内容寻找存储器(TCAM)存储和查找流表带来了数据中心扩展性、成本和能耗的问题。为此,提出一种基于向量交换的数据中心数据面模型,即VADC(Vector Address Data Center),以一种源路由地址——向量地址(Vector Address,VA)作为数据包交换标签,VA定义了完整的通信路径。根据VA即可完成数据转发操作。VADC具有如下优点:(1)数据转发过程不再需要查表操作,交换机不必引入TCAM进行流表操作,解决了数据中心扩展性问题,交换机的复杂度和成本大幅度降低;(2)VADC简化了流的建立过程,新数据流建立时,无需下载流表至交换机,其消耗的控制信令数量约减少73%;(3)设计并实现了基于NetFPGA平台的VADC交换机,实验结果表明VADC交换机的硬件资源消耗约是OpenFlow交换机的28%。 相似文献
3.
4.
5.
6.
7.
8.
The survivability of the future Internet is largely dependent on whether it will be able to successfully address both security and performance issues facing the Internet. On one hand, the Internet becomes more and more vulnerable due to fast spreading malicious attacks. On the other hand, it is under great stress to meet ever growing/changing application demands while having to sustain multi-gigabit forwarding performance. In this paper, we propose a Ternary Content Addressable Memory (TCAM) coprocessor based solution for high speed, integrated TCP flow anomaly detection and policy filtering. The attacking packets with spoofed source IP addresses are detected through two-dimensional (2D) matching. The key features of the solution are: (1) setting flag bits in TCAM action code to support various packet treatments; (2) managing TCP flow state in pair to do 2D matching. We evaluate the solution’s ability to detect TCP-based flooding attacks based on real-world-trace simulations. The results show that the proposed solution can match up OC-192 line rate. The possible modifications of the solution for the detection of low rate TCP-targeted attacks are also discussed. 相似文献
9.
基于TCAM的大容量文本搜索 总被引:1,自引:0,他引:1
传统的基于软件的文本搜索在处理大容量文本集时往往很难满足实时性需求,该文给出了一种基于硬件搜索平台TCAM的解决疗案,它可以较好地实现对大容量文本集的实时搜索,从而极大地增强了信息处理的能力。 相似文献
10.