Proxy Response Mechanism for OpenFlow Controller Load Reduction
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
In centralized-control-type networks, such as those using OpenFlow, a concentration of packets to the controller leads to increased load and performance deterioration due to the need for all packets addressed to the controller to be transmitted to it, causing system performance issues.
Innovation Solution
A control apparatus and communication system that sets proxy-response control information in communication apparatuses, enabling them to generate and transmit response packets directly to the source, reducing the load on the controller and the secure channel by allowing network apparatuses to handle certain packet responses.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Extent of automation
If all packets addressed to the controller are transmitted to the controller for processing, then the controller can perform centralized path control, but the load on the controller and secure channel increases causing performance deterioration
Solution Approach 1:
The patent segments packet processing into two parts: control packets (requiring controller processing) and data packets (handled by network apparatus). This segmentation allows the controller to focus only on control plane operations while network apparatus handle data plane operations, reducing the controller's load and improving overall system performance.
Solution Approach 2:
The patent introduces a proxy response mechanism where the network apparatus acts as an intermediary to generate and transmit responses for certain packets without requiring controller involvement. This intermediary approach reduces the number of packets that must traverse the secure channel to the controller, alleviating the performance bottleneck.
2Reliability
If the controller processes all packets, then accurate path control is achieved, but the secure channel becomes a bottleneck due to high traffic volume
Solution Approach 1:
The patent extracts the response generation function for data packets from the controller and assigns it to the network apparatus. This extraction removes unnecessary traffic from the secure channel while maintaining the controller's authority over control plane operations, thus reducing channel traffic without compromising path control accuracy.
Solution Approach 2:
The patent implements preliminary action by having the controller pre-configure flow rules and proxy response behaviors in the network apparatus before data traffic arrives. This preliminary configuration enables the network apparatus to autonomously handle data packets according to pre-established policies, preventing excessive traffic from reaching the controller.
3Device complexity
If network apparatus perform only packet forwarding, then the architecture remains simple, but flexible control such as load balancing and aggregation cannot be performed
Solution Approach 1:
The patent makes the network apparatus multi-functional by enabling it to perform both traditional packet forwarding and autonomous response generation. The apparatus can operate in different modes depending on the packet type and configured policies, providing flexibility for load balancing, aggregation, and other advanced control functions while maintaining architectural simplicity through a unified device.
Data Source
AI summary
A control apparatus connected to a communication apparatus(es) that processes received packets in accordance with control information includes a control information generation unit generating control information to be set in the communication apparatus(es) and a communication apparatus control unit setting the generated control information in the communication apparatus(es). This control apparatus sets proxy-response control information in the communication apparatus(es), the proxy-response control information defining a processing content(s) for causing the communication apparatus(es), when the communication apparatus(es) receives a certain packet, to generate a response packet for the certain packet and to transmit the response packet to a source of the certain packet.


