![]() |
![]() |
![]() |
![]() |
|
| Arup Acharya | |||
| Web-Switching | IPv6 CDNs | IPSec | ISCSI | |||
|
|
Internet Infrastructure
MPLS Based Web-switchingIn this project, we are combining two emerging trends in the area of networking:
Web-switches serve four key functions with respect to routing user requests:
Our key idea is to use a MPLS switch as a reverse proxy in front of a server farm (instead of layer 4 or layer 7 switch), to avoid the overhead of TCP termination. A control connection is used between the forward and reverse proxies to map application layer information such as URLs to labels. The client-side MPLS-aware proxy sends HTTP requests to the server farm using labels appropriate to this connection.
Representative Publication:
Patent Issued:
IPv6 Content Distribution Networks (CDNs)IPv6 has in-built support for mobility. We investigated ways in which this intrinsic feature of IPv6 could be useful in CDNs such as for request routing. We found that the functionality needed for request routing in CDNs is in many ways similar to routing packets to mobile nodes.
IP SecurityIn this project, we looked at how do we check if the IPSec transformations are taking place as advertised. The solution was to capture ICMP echo/response from the wire and check if the IPSec headers are correct.
IP Security Validator is an experimental tool that allows validation of Virtual Private Network (VPN) configurations between two network interfaces. As with testing connectivity using the Ping program, IP Security Validator enables verification and validation of VPN configurations and their connectivity. This easy-to-use tool determines whether traffic between two hosts/IP interfaces is encapsulated (for example, IPSEC VPN) or not. IP Security Validator is a single application that can be used by both users and administrators. (Additional Info)
Publications :
Patent Awarded :
Available Software : IP Security Validator available from IBM Alphaworks
Storage VirtualizationIn ISCSI, SCSI commands and data blocks are sent over TCP/IP connections. Disk blocks may be mapped to different storage devices. If blocks are moved between storage devices, then either host mappings need to be changed, or the TCP connection needs to be terminated an intermediate gateway.Our solution consists of assiging a virtual IP address and port number to blocks within Logical Units (LUNs). A gateway provides the mapping between virtual IP address and port number to a corresponding physical address and port number. Thus, when a block is moved to a different device, the host is not affected since only the translation at the gateway is changed.
Patent Issued :
Distributed Admission control for Multicast FlowsMany group communication applications have real-time constraints which can be met by providing QoS for multicast flows. In our proposed architecture, core routers do not perform any admission control. This is done by edge routers and forwarding state is installed at the core-routers using an intra-domain signaling protocol. Joint work with B. R. Badrinath and S. Bhatnagar, Rutgers University.
Publications :
|
| About IBM | Privacy | Terms of Use | Contact |