NFV Manager Policy Conflict Resolution via VNF Indication
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current NFV systems lack a defined mechanism for managing policy conflicts between virtual network functions (VNFs) and NFV managers, leading to inefficiencies in policy administration and management.
Innovation Solution
The introduction of VNF policy management categories (fully policed, partly policed, and non-policed) allows NFV managers to define and manage policies, with policy indications configuring priority between VNF-provided and NFV-manager-provided policies, enabling effective conflict resolution and flexible policy management.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Stability of the object's composition
If NFV manager imposes centralized policy control on VNF instances, then policy management consistency is improved, but VNF operational flexibility deteriorates
Solution Approach 1:
The patent implements dynamic policy management where VNF instances can transition between different policy states (fully policed, partly policed, non-policed) based on operational needs. The VNF can dynamically indicate its policy acceptance status and the NFV manager can adjust policy application accordingly, allowing the system to adapt between centralized control and VNF autonomy as conditions change.
Solution Approach 2:
The patent segments policy management into three distinct categories: fully policed VNFs (complete NFV manager control), partly policed VNFs (shared control with VNF autonomy), and non-policed VNFs (VNF autonomous control). This segmentation allows different levels of policy enforcement to be applied to different VNF instances based on their specific requirements, resolving the contradiction between centralized consistency and operational flexibility.
2Reliability
If NFV manager enforces strict policy compliance on all VNF instances, then network security is improved, but system complexity increases
Solution Approach 1:
The patent applies local quality by allowing different policy enforcement strategies to be applied to different VNF instances based on their specific characteristics and security requirements. Rather than uniformly enforcing strict policies on all VNFs, the system can apply full policy control to critical VNFs while allowing more autonomy for less critical ones, thereby maintaining security where needed without unnecessarily complicating the overall system.
3Adaptability or versatility
If multiple policy sources (VNF and NFV manager) are allowed, then policy adaptability is improved, but policy conflict resolution difficulty increases
Solution Approach 1:
The patent introduces the VNF instance itself as an intermediary in the policy management chain. The VNF can indicate its policy acceptance status to the NFV manager, creating a communication bridge that allows both the NFV manager's centralized policies and the VNF's operational requirements to be expressed and reconciled. This intermediary role simplifies conflict resolution by making the VNF's policy preferences explicit rather than implicit.
Data Source
Figure 1~2
Figure 3
Figure 4~5
AI summary
In a described embodiment of the disclosure, a method is described including a network function virtualization (NFV) manager obtaining a plurality of policies for managing a plurality of virtual network function (VNF) instances on a computing platform. The NFV manager also defines at least one VNF instance operating on the computing platform. The at least one VNF instance has a definition comprising a policy indication indicating acceptance, modification, or rejection of at least one of the plurality of policies managed by the NFV manager.