Advertisement

Capturing Domain Knowledge Through Extensible Components

  • Erik Kline
  • Genevieve BartlettEmail author
  • Geoff Lawler
  • Robert Story
  • Michael Elkins
Conference paper
Part of the Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering book series (LNICST, volume 270)

Abstract

Recreating real-world network scenarios on testbeds is common in validating security solutions, but modeling networks correctly requires a good deal of expertise in multiple domains. A testbed user must understand the solution being validated, the real-world deployment environments, in addition to understanding what features in these environments matter and how to model these features correctly in a testbed. As real-world scenarios and the security solutions we design become more diverse and complex, it becomes less likely that the testbed user is able to be a domain expert in their technology, a field expert in the deploy environments for their technology, and an expert in how to model these environments on the testbed. Without the proper expertise from multiple domains, testbed users produce overly simplified and inappropriate test environments, which do not provide adequate validation. To address this pressing need to share domain knowledge in the testbed community, we introduce our Extensible Components Framework for testbed network modeling. Our framework enables multiple experts to contribute to a complex network model without needing to explicitly collaborate or translate between domains. The fundamental goal of our Extensible Components is to capture the knowledge of domain experts and turn this knowledge into off-the-shelf models that end-users can easily utilize as first-class testbed objects. We demonstrate the design and use of our Extensible Components Framework through implementing Click Modular Router [10] based Extensible Components on the DETER testbed, and advocate that our framework can be applied to other environments. We focus on wired network models, but outline how Extensible Components can be used to model other types of networks such as wireless. (This material is based on research sponsored by DARPA under agreement number HR0011-15-C-0096. The U.S. Government is authorized to reproduce and distribute reprints for Governmental purposes notwithstanding any copyright notation thereon. The views and conclusions contained herein are those of the authors and should not be interpreted as necessarily representing the official policies or endorsements, either expressed or implied, of DARPA or the U.S. Government.)

Keywords

Testbed validation Network models Knowledge capture Network testbed Testbed experimentation 

References

  1. 1.
    Ahrenholz, J.: Comparison of CORE network emulation platforms. In: Military Communications Conference, 2010 - MILCOM 2010, pp. 166–171, October 2010.  https://doi.org/10.1109/MILCOM.2010.5680218
  2. 2.
    Ahrenholz, J., Goff, T., Adamson, B.: Integration of the core and emane network emulators. In: 2011 - MILCOM 2011 Military Communications Conference, pp. 1870–1875, November 2011.  https://doi.org/10.1109/MILCOM.2011.6127585
  3. 3.
    Barbette, T., Soldani, C., Mathy, L.: Fast userspace packet processing. In: Proceedings of the Eleventh ACM/IEEE Symposium on Architectures for Networking and Communications Systems, ANCS 2015, pp. 5–16. IEEE Computer Society, Washington (2015). http://dl.acm.org/citation.cfm?id=2772722.2772727
  4. 4.
    Carbone, M., Rizzo, L.: Dummynet revisited. ACM SIGCOMM Comput. Commun. Rev. 40(2), 12–20 (2010).  https://doi.org/10.1145/1764873.1764876CrossRefGoogle Scholar
  5. 5.
    Chang, X.: Network simulations with OPNET. In: Proceedings of the 31st Conference on Winter Simulation: Simulation–A Bridge to the Future, WSC 1999, vol. 1, pp. 307–314. ACM, New York (1999).  https://doi.org/10.1145/324138.324232
  6. 6.
    Fall, K.: Network emulation in the Vint/NS simulator. In: Proceedings of the fourth IEEE Symposium on Computers and Communications, pp. 244–250 (1999)Google Scholar
  7. 7.
    Floyd, S., Kohler, E.: Internet research needs better models. ACM SIGCOMM Comput. Commun. Rev. 33(1), 29–34 (2003).  https://doi.org/10.1145/774763.774767CrossRefGoogle Scholar
  8. 8.
    Hemminger, S.: Network Emulation with NetEm. In: Linux Conf AU (2005). http://www.linux.org.au/conf/2005/abstract2e37.html?id=163
  9. 9.
    Hench, D.L.: Complex network modeling with an Emulab HPC. In: Proceedings of the 16th Annual IEEE High Performance Extreme Computing Conference (HPEC 2012), September 2012Google Scholar
  10. 10.
    Kohler, E., Morris, R., Chen, B., Jannotti, J., Kaashoek, M.F.: The click modular router. ACM Trans. Comput. Syst. 18(3), 263–297 (2000).  https://doi.org/10.1145/354871.354874CrossRefGoogle Scholar
  11. 11.
    Mirkovic, J., Benzel, T.V., Faber, T., Braden, R., Wroclawski, J.T., Schwab, S.: The DETER project: advancing the science of cyber security experimentation and test. In: 2010 IEEE International Conference on Technologies for Homeland Security (HST), pp. 1–7, November 2010.  https://doi.org/10.1109/THS.2010.5655108
  12. 12.
    White, B., et al.: An integrated experimental environment for distributed systems and networks. In: Proceedings of the Operating System Design and Implementation, pp. 255–270 (2002)Google Scholar
  13. 13.
    DPDK: Data Plane Development Kit. https://dpdk.org/
  14. 14.
    Extendable Mobile Ad-hoc Network Emulator (EMANE). https://www.nrl.navy.mil/itd/ncs/products/emane

Copyright information

© ICST Institute for Computer Sciences, Social Informatics and Telecommunications Engineering 2019

Authors and Affiliations

  • Erik Kline
    • 1
  • Genevieve Bartlett
    • 1
    Email author
  • Geoff Lawler
    • 1
  • Robert Story
    • 1
  • Michael Elkins
    • 1
  1. 1.Information Sciences InstituteUniversity of Southern CaliforniaLos AngelesUSA

Personalised recommendations