DocumentCode
3101867
Title
Restoring End-to-End Resilience in the Presence of Middleboxes
Author
Brown, Eric J. ; Gardner, Mark K. ; Kalim, Umar ; Feng, Wu-chun
Author_Institution
Dept. of Comput. Sci., Virginia Tech, Blacksburg, VA, USA
fYear
2011
fDate
July 31 2011-Aug. 4 2011
Firstpage
1
Lastpage
7
Abstract
The philosophy upon which the Internet was built places the intelligence close to the edge. As the Internet has matured, intermediate devices or middleboxes, such as firewalls or application gateways, have been introduced, thereby weakening the end-to-end nature of the network. As a result, applications must often modify their behavior to accommodate the middleboxes. This is is especially true in the case of transient failure of stateful devices. The failure of a middlebox causes it to lose the state it maintained, causing the failure of the associated TCP connections. Rather than assign the responsibility for recovery to applications, we incorporate a mechanism called an isolation boundary into TCP itself. The isolation boundary maintains a small amount of state across TCP connections, thus enabling reconnection. Furthermore, it does so without breaking backward compatibility with existing TCP. We present an implementation of the isolation boundary in the FreeBSD kernel and demonstrate its backward compatibility with TCP. We quantify the performance impact of the proposed mechanism on the establishment of new and resumed connections for both legacy and extended TCP stacks.
Keywords
Internet; telecommunication network reliability; transport protocols; FreeBSD kernel; Internet; TCP connections; application gateways; backward compatibility; end-to-end resilience; firewalls; isolation boundary; middleboxe failure; stateful devices; transient failure; Context; IP networks; Kernel; Middleboxes; Receivers; Servers; Synchronization;
fLanguage
English
Publisher
ieee
Conference_Titel
Computer Communications and Networks (ICCCN), 2011 Proceedings of 20th International Conference on
Conference_Location
Maui, HI
ISSN
1095-2055
Print_ISBN
978-1-4577-0637-0
Type
conf
DOI
10.1109/ICCCN.2011.6006072
Filename
6006072
Link To Document