• DocumentCode
    1313849
  • Title

    Inter-Domain Path Provisioning with Security Features: Architecture and Signaling Performance

  • Author

    Polito, Silvana Greco ; Zaghloul, Said ; Chamania, Mohit ; Jukan, Admela

  • Author_Institution
    Univ. degli Studi di Enna Kore, Enna, Italy
  • Volume
    8
  • Issue
    3
  • fYear
    2011
  • fDate
    9/1/2011 12:00:00 AM
  • Firstpage
    219
  • Lastpage
    233
  • Abstract
    Significant research and standardization efforts are underway to enable automated computation and reservation of connection-oriented paths (circuits) across multiple domains. In the absence of a secure authentication and authorization mechanism, however, carriers continue to provision connections manually, which leads to large setup delays and increases possibility of configuration errors. Carriers also lack mechanisms to meter connection quality during the service lifetime and typically do not exchange accounting information for established connections for auditing and billing purposes. In this paper, we address the challenge for automatic multi-domain path provisioning with authentication, authorization and accounting (AAA) capabilities in carrier-grade transport networks. The designed solution secures computation and reservation for path provisioning and also leverages a standard accounting model which incorporates the accounting signaling for an inter-domain connection. In order to evaluate the impact of the proposed framework on signaling performance, we also provide an analytical framework scalable to large inter-domain network scenarios. We verify the analysis using event-driven simulations and then use this analytical model to quantify the feasibility of our model in terms of signaling load and signaling delay for a wide range of network scenarios.
  • Keywords
    authorisation; computer network security; accounting signaling; authentication authorization and accounting; carrier grade transport networks; connection oriented paths; event driven simulations; inter domain path provisioning; security features; Authentication; Authorization; Computational modeling; Computer architecture; Protocols; Servers; AAA; Diameter; PCE; RSVP; connection-oriented networks; inter-domain routing; peering agreements;
  • fLanguage
    English
  • Journal_Title
    Network and Service Management, IEEE Transactions on
  • Publisher
    ieee
  • ISSN
    1932-4537
  • Type

    jour

  • DOI
    10.1109/TCOMM.2011.072611.100047
  • Filename
    6009142