Boston
May 8-11, 2017

Event Details

Please note: All times listed below are in Central Time Zone


Advanced Threat Prediction and Orchestration for Service Chains in SP Cloud

Problem Statement

Organizations are susceptible to security threats targeted at the weakest point in the systems which can be scaled east-west into the organization. This requires the cloud to have the capability to predict possible threats and seamlessly orchestrate policies to address them.

Proposed Solution

A controller placed in the SP cloud which performs deep packet inspection on the traffic. Since traffic inspection of packets is a memory overhead, the controller has ability to maintain a label for each packet class and use it to rule out overlapping inspections for subsequent packets. The controller logs threat data and provides input to the operator to design and insert security rules seamlessly. It provides capability to monitor the rate of traffic passing through the NFVs and provide clustering and load balancing capabilities. It also provides capability to spawn network functions on demand or modify the existing network functions based on refined security policies.

 


What can I expect to learn?

The key takeaways for cloud developers and designers are

  • Different kinds of possible threats in a cloud environment.
  • Implementation of Virtual Network Functions like ASA, WSA, CSR.
  • Deep packet inspection and prediction algorithms.
  • How to Clusterise NFVs and load balance traffic across them?
  • How to design security rules based on zero trust policy?
  • Insight into the seamless orchestration of NFVs
Thursday, May 11, 10:05am-10:15am (2:05pm - 2:15pm UTC)
Difficulty Level: Intermediate
Engineer - NFV BU Cisco Systems
I have been working as a Software Engineer in the NFV BU for the last 4 years. I have worked on Cisco's custom implementation for SD-WAN called as the IWAN (Intelligent WAN). I have programmed service packs on Cisco NSO (Network Service Orchestrator) which is used to create NFV VM/containers on top of Openstack/Docker cloud platforms. Apart from this, I have been a part of medium scale... FULL PROFILE
Cisco Systems
I am an OpenStack engineer, who loves new technologies and is always on the lookout for areas to innovate. I have been working in virtualization and cloud based technologies for the past several years. Previously worked on various components of Openstack such as Compute, Neutron, Scheduler, Cinder and Ceph. Currently working on cloud and network solutions for Cisco Systems.... FULL PROFILE
Cisco Systems India Pvt Ltd
Has have been working in virtualization and cloud based technologies for the past four years. Previously worked on various components of Openstack such as Compute, Neutron, Scheduler, Cinder and Ceph. Currently working on cloud and network solutions for Cisco Systems. Have been an active participant in Openstack meetups and have presented sessions on various topics on Openstack... FULL PROFILE