@inproceedings{463349c31d5645228c84113e67b309c6,
title = "Elastic virtual private cloud",
abstract = "Several Virtual Private Networks are based on IPsec. How-ever, IPsec has not been designed with elasticity in mind, which makes clusters of IPsec security gateways hard to manage for providing high Service Level Agreement (SLA). Thus, these SG clusters need management techniques to maintain their Quality of Service. For example, ISPs use VPNs to secure millions of communications when offloading End-Users from Radio Access Networks towards alternative access networks such as WLANs. Additionally, Virtual Private Cloud (VPC) providers also handle thousands of VPN connections when remote EUs access private clouds services. This paper describes how to provide Traffic Management (TM) and High Availability (HA) for VPN infrastructures by sharing or transferring an IPsec session. TM and HA have been implemented and evaluated over a 2-nodes cluster. We measured their impact on a real time audio streaming simulating a phone conversation. We found out that over a 2 minutes conversation, the impact on QoS measured with POLQA while applying TM or HA, is less than 3\%.",
keywords = "Context transfer, High availability, IKEv2, IPsec, POLQA, QoS, VPN management, Virtual private cloud",
author = "Daniel Palomares and Daniel Migault and H. Hendrik and Maryline Laurent and Guy Pujolle",
note = "Publisher Copyright: Copyright 2014 ACM.; 10th ACM Symposium on QoS and Security for Wireless and Mobile Networks, Q2SWinet 2014 ; Conference date: 21-09-2014 Through 22-09-2014",
year = "2014",
month = sep,
day = "21",
doi = "10.1145/2642687.2642704",
language = "English",
series = "Q2SWinet 2014 - Proceedings of the 10th ACM Symposium on QoS and Security for Wireless and Mobile Networks",
publisher = "Association for Computing Machinery",
pages = "127--131",
booktitle = "Q2SWinet 2014 - Proceedings of the 10th ACM Symposium on QoS and Security for Wireless and Mobile Networks",
}