VXLAN-IPSec dual-overlay as a security technique in virtualized datacenter environments


Abstract:

In a modern datacenter environment that needs scalability and a simple addressing scheme, VXLAN is the ideal protocol to provide strong overlay environment supported by an end-to-end connectivity in a L3 underlay fabric. On the other hand, IPSec has been chosen as the second overlay to provide encryption to the communication between terminal devices of the network. This proof-of-concept scenario is implemented as Spine-Leaf architecture, mixing Cumulus Linux appliances (Open-Networking) and Cisco routers, leading to a liable configuration without latency and jitter problems. It proves that Dual-Overlay is a strong solution, it is ideal for DC scenarios.

Año de publicación:

2020

Keywords:

  • VxLAN
  • Overlay-Underlay
  • Open-Networking
  • Ipsec
  • Spine-Leaf architecture

Fuente:

googlegoogle
scopusscopus

Tipo de documento:

Conference Object

Estado:

Acceso restringido

Áreas de conocimiento:

  • Ciencias de la computación

Áreas temáticas:

  • Ciencias de la computación
  • Programación informática, programas, datos, seguridad
  • Funcionamiento de bibliotecas y archivos