Collaborative Research: Elements: EdgeVPN: Seamless Secure Virtual Networking for Edge and Fog Computing
协作研究:要素:EdgeVPN:用于边缘和雾计算的无缝安全虚拟网络
基本信息
- 批准号:2004441
- 负责人:
- 金额:$ 51.96万
- 依托单位:
- 依托单位国家:美国
- 项目类别:Standard Grant
- 财政年份:2020
- 资助国家:美国
- 起止时间:2020-06-01 至 2024-05-31
- 项目状态:已结题
- 来源:
- 关键词:
项目摘要
Edge computing encompasses a variety of technologies that are poised to enable new applications across the Internet that support data capture, storage, processing and communication near the edge of the Internet. Edge computing environments pose new challenges, as devices are heterogeneous, widely distributed geographically, and physically closer to end users, such as mobile and Internet-of-Things (IoT) devices. This project develops EdgeVPN, a software element that addresses a fundamental challenge of networking for edge computing applications: establishing Virtual Private Networks (VPNs) to logically interconnect edge devices, while preserving privacy and integrity of data as it flows through Internet links. More specifically, the EdgeVPN software developed in this project addresses technical challenges in creating virtual networks that self-organize into scalable, resilient systems that can significantly lower the barrier to entry to deploying a private communication fabric in support of existing and future edge applications. There are a wide range of applications that are poised to benefit from EdgeVPN; in particular, this project is motivated by use cases in ecological monitoring and forecasting for freshwater lakes and reservoirs, situational awareness and command-and-control in defense applications, and smart and connected cities. Because EdgeVPN is open-source and freely available to the public, the software will promote progress of science and benefit society at large by contributing to the set of tools available to researchers, developers and practitioners to catalyze innovation and future applications in edge computing.Edge computing applications need to be deployed across multiple network providers, and harness low-latency, high-throughput processing of streams of data from large numbers of distributed IoT devices. Achieving this goal will demand not only advances in the underlying physical network, but also require a trustworthy communication fabric that is easy to use, and operates atop the existing Internet without requiring changes to the infrastructure. The EdgeVPN open-source software developed in this project is an overlay virtual network that allows seamless private networking among groups of edge computing resources, as well as cloud resources. EdgeVPN is novel in how it integrates: 1) a flexible group management and messaging service to create and manage peer-to-peer VPN tunnels grouping devices distributed across the Internet, 2) a scalable structured overlay network topology supporting primitives for unicast, multicast and broadcast, 3) software-defined networking (SDN) as the control plane to support message routing through the peer-to-peer data path, and 4) network virtualization and integration with virtualized compute/storage endpoints with Docker containers to allow existing Internet applications to work unmodified. EdgeVPN self-organizes an overlay topology of tunnels that enables encrypted, authenticated communication among edge devices connected across disparate providers in the Internet, possibly subject to mobility and constraints imposed by firewalls and Network Address Translation, NATs. It builds upon standard SDN interfaces to implement packet manipulation primitives for virtualization supporting the ubiquitous Ethernet and IP-layer protocols.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
Edge计算涵盖了各种技术,这些技术有望在互联网上启用新的应用程序,以支持互联网边缘附近的数据捕获,存储,处理和通信。边缘计算环境提出了新的挑战,因为设备是异质的,在地理位置上广泛分布,并且在物理上更接近最终用户,例如移动和互联网设备(IOT)设备。该项目开发EdgeVPN,这是一个软件元素,该软件元素可以解决边缘计算应用程序网络的基本挑战:建立虚拟专用网络(VPN)以在逻辑上互连边缘设备,同时在流入Internet链接时保留数据的隐私和完整性。更具体地说,在本项目中开发的EdgeVPN软件解决了创建虚拟网络的技术挑战,这些虚拟网络会自组织为可扩展的弹性系统,这些系统可以大大降低进入私人通信结构以支持现有和未来边缘应用程序的障碍。有很多应用程序可以从EdgeVPN中受益;特别是,该项目是由生态监测和预测淡水湖泊和水库,情境意识以及国防应用中的指挥与控制以及智能和互联城市的用例所激发的。由于EdgeVPN是开源的,并且可以向公众免费提供,因此该软件将通过为研究人员,开发人员和实践者提供的一组工具来促进科学的进步,并在整个社会中受益,以促进Edge计算中的创新和未来应用。实现这一目标不仅需要在基础物理网络中进步,而且还需要易于使用的可信赖的通信结构,并且在现有的Internet上运行,而无需更改基础架构。在此项目中开发的EdgeVPN开源软件是一个覆盖虚拟网络,它允许在边缘计算资源组和云资源组之间进行无缝的专用网络。 EdgeVPN is novel in how it integrates: 1) a flexible group management and messaging service to create and manage peer-to-peer VPN tunnels grouping devices distributed across the Internet, 2) a scalable structured overlay network topology supporting primitives for unicast, multicast and broadcast, 3) software-defined networking (SDN) as the control plane to support message routing through the peer-to-peer data path, and 4) network virtualization and与虚拟化的计算/存储端点与Docker容器集成,以允许现有的Internet应用程序未修改。 EdgeVPN自行组织了隧道的覆盖拓扑,该拓扑可以在Internet中跨不同提供商连接的边缘设备之间进行加密的经过认证的通信,这可能会受到防火墙和网络地址翻译施加的移动性和约束。它建立在标准SDN接口的基础上,以实现数据包操作原始功能,以虚拟化支持无处不在的以太网和IP层协议。该奖项反映了NSF的法定任务,并被认为是通过基金会的知识分子优点和更广泛的审查标准通过评估来通过评估来支持的。
项目成果
期刊论文数量(4)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
Demo: Software-defined Virtual Networking Across Multiple Edge and Cloud Providers with EdgeVPN.io
演示:使用 EdgeVPN.io 跨多个边缘和云提供商的软件定义虚拟网络
- DOI:10.1109/icdcs51616.2021.00107
- 发表时间:2021
- 期刊:
- 影响因子:0
- 作者:Figueiredo, Renato;Subratie, Kensworth
- 通讯作者:Subratie, Kensworth
Edge-to-cloud Virtualized Cyberinfrastructure for Near Real-time Water Quality Forecasting in Lakes and Reservoirs
用于湖泊和水库近实时水质预测的边缘到云虚拟化网络基础设施
- DOI:10.1109/escience51609.2021.00024
- 发表时间:2021
- 期刊:
- 影响因子:0
- 作者:Daneshmand, Vahid;Breef-Pilz, Adrienne;Carey, Cayelan C.;Jin, Yuqi;Ku, Yun-Jung;Subratie, Kensworth C.;Thomas, R. Quinn;Figueiredo, Renato J.
- 通讯作者:Figueiredo, Renato J.
EdgeVPN: Self-organizing layer-2 virtual edge networks
EdgeVPN:自组织二层虚拟边缘网络
- DOI:10.1016/j.future.2022.10.007
- 发表时间:2023
- 期刊:
- 影响因子:0
- 作者:Subratie, Kensworth;Aditya, Saumitra;Figueiredo, Renato J.
- 通讯作者:Figueiredo, Renato J.
Demo: EdgeVPN.io: Open-source Virtual Private Network for Seamless Edge Computing with Kubernetes
演示:EdgeVPN.io:使用 Kubernetes 实现无缝边缘计算的开源虚拟专用网络
- DOI:10.1109/sec50012.2020.00032
- 发表时间:2020
- 期刊:
- 影响因子:0
- 作者:Figueiredo, Renato;Subratie, Kensworth
- 通讯作者:Subratie, Kensworth
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
Renato Figueiredo其他文献
On the Performance and Cost of Cloud-Assisted Multi-Path Bulk Data Transfer
云辅助多路径批量数据传输的性能和成本
- DOI:
- 发表时间:
2017 - 期刊:
- 影响因子:0
- 作者:
Kyuho Jeong;Renato Figueiredo;Kohei Ichikawa - 通讯作者:
Kohei Ichikawa
A Pipeline for Deep Learning with Specimen Images in iDigBio - Applying and Generalizing an Examination of Mercury Use in Preparing Herbarium Specimens
iDigBio 中标本图像深度学习的流程 - 应用和推广汞在制备植物标本室标本中的使用检查
- DOI:
- 发表时间:
2018 - 期刊:
- 影响因子:0
- 作者:
Matthew Collins;G. Yeole;P. Frandsen;Rebecca B. Dikow;Sylvia S. Orli;Renato Figueiredo - 通讯作者:
Renato Figueiredo
Extending PRAGMA-ENT for End Users using IPOP Overlay Networks
使用 IPOP 覆盖网络为最终用户扩展 PRAGMA-ENT
- DOI:
- 发表时间:
2016 - 期刊:
- 影响因子:0
- 作者:
Kyuho Jeong;Renato Figueiredo;Kohei Ichikawa - 通讯作者:
Kohei Ichikawa
Investigating the Performance and Scalability of Kubernetes on Distributed Cluster of Resource-Constrained Edge Devices
研究 Kubernetes 在资源受限边缘设备分布式集群上的性能和可扩展性
- DOI:
- 发表时间:
2019 - 期刊:
- 影响因子:0
- 作者:
Vahid Daneshmand;Renato Figueiredo;Kohei Ichikawa;Keichi Takahashi;Kundjanasith Thonglek and Kensworth Subratie - 通讯作者:
Kundjanasith Thonglek and Kensworth Subratie
保育者は保育カンファレンスを行うことで何を学ぶのか?ー質的研究のメタ統合の試みからー
托儿工作者通过举办托儿会议学到了什么?
- DOI:
- 发表时间:
2018 - 期刊:
- 影响因子:0
- 作者:
Kyuho Jeong;Renato Figueiredo;Kohei Ichikawa;上田敏丈 - 通讯作者:
上田敏丈
Renato Figueiredo的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
{{ truncateString('Renato Figueiredo', 18)}}的其他基金
Collaborative Research: URoL:ASC: Applying rules of life to forecast emergent behavior of phytoplankton and advance water quality management
合作研究:URoL:ASC:应用生命规则预测浮游植物的紧急行为并推进水质管理
- 批准号:
2318862 - 财政年份:2023
- 资助金额:
$ 51.96万 - 项目类别:
Standard Grant
Collaborative Research: Elements: FaaSr: Enabling Cloud-native Event-driven Function-as-a-Service Computing Workflows in R
协作研究:要素:FaaSr:在 R 中启用云原生事件驱动的函数即服务计算工作流程
- 批准号:
2311123 - 财政年份:2023
- 资助金额:
$ 51.96万 - 项目类别:
Standard Grant
I-Corps: Software-Defined Overlay Virtual Private Network for Edge Computing
I-Corps:用于边缘计算的软件定义的覆盖虚拟专用网络
- 批准号:
2134548 - 财政年份:2021
- 资助金额:
$ 51.96万 - 项目类别:
Standard Grant
SaTC: CORE: Small: GOALI: Predicting and Labeling Email Phishing from Social Influence Cues and User Characteristics.
SaTC:核心:小:GOALI:根据社会影响线索和用户特征预测和标记电子邮件网络钓鱼。
- 批准号:
2028734 - 财政年份:2020
- 资助金额:
$ 51.96万 - 项目类别:
Standard Grant
Collaborative Research: CIBR: Cyberinfrastructure Enabling End-to-End Workflows for Aquatic Ecosystem Forecasting
合作研究:CIBR:网络基础设施支持水生生态系统预测的端到端工作流程
- 批准号:
1933102 - 财政年份:2020
- 资助金额:
$ 51.96万 - 项目类别:
Standard Grant
SaTC: CORE: Medium: Collaborative: REVELARE: A Hardware-Supported Dynamic Information Flow Tracking Framework for IoT Security and Forensics
SaTC:核心:媒介:协作:REVELARE:用于物联网安全和取证的硬件支持的动态信息流跟踪框架
- 批准号:
1801599 - 财政年份:2018
- 资助金额:
$ 51.96万 - 项目类别:
Standard Grant
SaTC: CORE: Small: FIRMA: Personalized Cross-Layer Continuous Authentication
SaTC:核心:小型:FIRMA:个性化跨层连续身份验证
- 批准号:
1814557 - 财政年份:2018
- 资助金额:
$ 51.96万 - 项目类别:
Standard Grant
NeTS: Small: PerSoNet: Overlay Virtual Private Networks Spanning Personal Clouds and Social Peers
NetS:小型:PerSoNet:跨越个人云和社交对等的覆盖虚拟专用网络
- 批准号:
1527415 - 财政年份:2015
- 资助金额:
$ 51.96万 - 项目类别:
Standard Grant
SHF: Small: Collaborative Research: Exploring Energy-Efficient GPGPUs Through Emerging Technology Integration
SHF:小型:协作研究:通过新兴技术集成探索节能 GPGPU
- 批准号:
1320100 - 财政年份:2013
- 资助金额:
$ 51.96万 - 项目类别:
Standard Grant
SI2-SSE: Peer-to-Peer Overlay Virtual Network for Cloud Computing Research
SI2-SSE:用于云计算研究的点对点覆盖虚拟网络
- 批准号:
1339737 - 财政年份:2013
- 资助金额:
$ 51.96万 - 项目类别:
Standard Grant
相似国自然基金
杨柳坪超大型Cu-Ni-PGE矿床硫化物熔体固化过程铂族元素地球化学行为精细研究
- 批准号:42303019
- 批准年份:2023
- 资助金额:30 万元
- 项目类别:青年科学基金项目
深海沉积物中稀土元素超常富集机制――基于富稀土沉积物与水岩实验的对比研究
- 批准号:42372116
- 批准年份:2023
- 资助金额:53 万元
- 项目类别:面上项目
微量元素钒调控能量代谢用于监控结直肠癌治疗及转移抑制的机制研究
- 批准号:62305121
- 批准年份:2023
- 资助金额:30 万元
- 项目类别:青年科学基金项目
稻米镁元素积累新主效QTL克隆和功能研究及其育种利用
- 批准号:32372095
- 批准年份:2023
- 资助金额:50 万元
- 项目类别:面上项目
基于可控同位素中子源的月表元素探测机制与载荷实现关键技术研究
- 批准号:42374226
- 批准年份:2023
- 资助金额:53 万元
- 项目类别:面上项目
相似海外基金
Collaborative Research: Elements: VLCC-States: Versioned Lineage-Driven Checkpointing of Composable States
协作研究:元素:VLCC-States:可组合状态的版本化谱系驱动检查点
- 批准号:
2411387 - 财政年份:2024
- 资助金额:
$ 51.96万 - 项目类别:
Standard Grant
Collaborative Research: Elements: Linking geochemical proxy records to crustal stratigraphic context via community-interactive cyberinfrastructure
合作研究:要素:通过社区交互式网络基础设施将地球化学代理记录与地壳地层背景联系起来
- 批准号:
2311092 - 财政年份:2023
- 资助金额:
$ 51.96万 - 项目类别:
Standard Grant
Collaborative Research: Elements: Lattice QCD software for nuclear physics on heterogeneous architectures
合作研究:Elements:用于异构架构核物理的 Lattice QCD 软件
- 批准号:
2311430 - 财政年份:2023
- 资助金额:
$ 51.96万 - 项目类别:
Standard Grant
Collaborative Research: Elements: ProDM: Developing A Unified Progressive Data Management Library for Exascale Computational Science
协作研究:要素:ProDM:为百亿亿次计算科学开发统一的渐进式数据管理库
- 批准号:
2311757 - 财政年份:2023
- 资助金额:
$ 51.96万 - 项目类别:
Standard Grant
Collaborative Research: FuSe: Monolithic 3D Integration (M3D) of 2D Materials-Based CFET Logic Elements towards Advanced Microelectronics
合作研究:FuSe:面向先进微电子学的基于 2D 材料的 CFET 逻辑元件的单片 3D 集成 (M3D)
- 批准号:
2329189 - 财政年份:2023
- 资助金额:
$ 51.96万 - 项目类别:
Standard Grant