Elastic virtual private cloud

Daniel Palomares, Daniel Migault, H. Hendrik, Maryline Laurent, Guy Pujolle

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

Several Virtual Private Networks are based on IPsec. How-ever, IPsec has not been designed with elasticity in mind, which makes clusters of IPsec security gateways hard to manage for providing high Service Level Agreement (SLA). Thus, these SG clusters need management techniques to maintain their Quality of Service. For example, ISPs use VPNs to secure millions of communications when offloading End-Users from Radio Access Networks towards alternative access networks such as WLANs. Additionally, Virtual Private Cloud (VPC) providers also handle thousands of VPN connections when remote EUs access private clouds services. This paper describes how to provide Traffic Management (TM) and High Availability (HA) for VPN infrastructures by sharing or transferring an IPsec session. TM and HA have been implemented and evaluated over a 2-nodes cluster. We measured their impact on a real time audio streaming simulating a phone conversation. We found out that over a 2 minutes conversation, the impact on QoS measured with POLQA while applying TM or HA, is less than 3%.

Original languageEnglish
Title of host publicationQ2SWinet 2014 - Proceedings of the 10th ACM Symposium on QoS and Security for Wireless and Mobile Networks
PublisherAssociation for Computing Machinery
Pages127-131
Number of pages5
ISBN (Electronic)9781450330275
DOIs
Publication statusPublished - 21 Sept 2014
Externally publishedYes
Event10th ACM Symposium on QoS and Security for Wireless and Mobile Networks, Q2SWinet 2014 - Montreal, Canada
Duration: 21 Sept 201422 Sept 2014

Publication series

NameQ2SWinet 2014 - Proceedings of the 10th ACM Symposium on QoS and Security for Wireless and Mobile Networks

Conference

Conference10th ACM Symposium on QoS and Security for Wireless and Mobile Networks, Q2SWinet 2014
Country/TerritoryCanada
CityMontreal
Period21/09/1422/09/14

Keywords

  • Context transfer
  • High availability
  • IKEv2
  • IPsec
  • POLQA
  • QoS
  • VPN management
  • Virtual private cloud

Fingerprint

Dive into the research topics of 'Elastic virtual private cloud'. Together they form a unique fingerprint.

Cite this