跳到主要导航 跳到搜索 跳到主要内容

LASF: A flow scheduling policy in stateful packet inspection systems

  • Zhang Zhibin*
  • , Zhang Yanjun
  • , Guo Li
  • , Fang Binxing
  • *此作品的通讯作者
  • CAS - Institute of Computing Technology
  • University of Chinese Academy of Sciences

科研成果: 书/报告/会议事项章节会议稿件同行评审

摘要

Current increase in network bandwidth raised an aggressive challenge in network security, and stateful packet inspection based security systems is playing a more and more important role. Recent advances in scheduling theory show that it is possible to reduce the expected mean response time of a queuing system, simply by changing the order in which we schedule the requests according to the job size, which is so called size-based scheduling policy. In this paper, we start by an analysis of connection sojourn time distribution of network traffic. Based on this analysis, first we design a two level session table in order to avoid session table explosion. Then we propose a connection scheduling policy in stateful packet inspection systems called LASF (Least Attained Sojourn First). We show that our policy can improve mean response time and flow throughput especially when system is overloaded. Finally we assess the costs of LASF in terms of unfairness.

源语言英语
主期刊名12th IEEE International Symposium on Computers and Communications, ISCC '07
87-93
页数7
DOI
出版状态已出版 - 2007
已对外发布
活动12th IEEE International Symposium on Computers and Communications, ISCC '07 - Aveiro, 葡萄牙
期限: 1 7月 20074 7月 2007

丛书

姓名Proceedings - IEEE Symposium on Computers and Communications
ISSN(印刷版)1530-1346

会议

会议12th IEEE International Symposium on Computers and Communications, ISCC '07
国家/地区葡萄牙
Aveiro
时期1/07/074/07/07

学术指纹

探究 'LASF: A flow scheduling policy in stateful packet inspection systems' 的科研主题。它们共同构成独一无二的学术指纹。

引用此