DocumentCode :
3408092
Title :
Integrated Services Provisioning Across Cryptographic Boundaries
Author :
Brewer, Orlie T. ; Ayyagari, Arun ; Foster, Michael S.
Author_Institution :
Boeing Phantom Works, Seattle, WA
fYear :
2006
fDate :
23-25 Oct. 2006
Firstpage :
1
Lastpage :
7
Abstract :
IntServ resource reservation protocol (RSVP) is based on end-to-end signaling and the current HAIPE specification does not allow for RSVP signaling to be bypassed across cryptographic boundaries. Since end-to-end RVSP signaling traffic is not bypassed across HAIPE boundaries, it does not seamlessly allow for IntServ based QoS provisioning within the core Black network. This leads us to the challenge of defining a mechanism by which IntServ/RSVP can be supported within the core Black network. We built upon our prior work on a dynamic diffserv network QoS management framework developing an IntServ implementation that operates across HAIPE boundary. The objective of our effort was to allow for individual IntServ/RSVP sessions in the red security enclave to be aggregated into a finite set of dynamically instantiated IntServ/RSVP sessions between ingress and egress nodes within the black security enclave. We used simple policy based management whereby the RSVP daemon on the ingress black node monitors the DSCP values on its outbound ports to initiate the creation or deletion of aggregated IntServ/RSVP sessions to the appropriate egress black node. These egress black node sessions are dynamically resized based on traffic demand and network state. This approach allowed for end-to-end IntServ across HAIPE boundaries
Keywords :
IntServ networks; Internet; cryptography; quality of service; resource allocation; signalling protocols; telecommunication network management; telecommunication security; telecommunication traffic; Black network; HAIPE; IntServ resource reservation protocol; RSVP; black security enclave; cryptographic boundary; diffserv network QoS management framework; end-to-end signaling; high assurance Internet protocol encryptor; integrated services provisioning; quality of service; traffic demand; Cryptographic protocols; Cryptography; Data security; Diffserv networks; IP networks; Imaging phantoms; Intserv networks; Peer to peer computing; Telecommunication traffic; Transport protocols; DiffServ; HAIPE; IP Security; IntServ; QoS; RSVP; dynamic ad hoc mobile heterogeneous networks;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Military Communications Conference, 2006. MILCOM 2006. IEEE
Conference_Location :
Washington, DC
Print_ISBN :
1-4244-0617-X
Electronic_ISBN :
1-4244-0618-8
Type :
conf
DOI :
10.1109/MILCOM.2006.302473
Filename :
4086678
Link To Document :
بازگشت