Skip to main content
CORDIS - Forschungsergebnisse der EU
CORDIS

Provably Correct Networks

Ziel

Networks are the backbone of our society, but configuring them is error-prone and tedious: misconfigured networks result in headline grabbing network outages that affect many users and hurt company revenues while security breaches that endanger millions of customers. There are currently no guarantees that deployed networks correctly implement their operator’s policy.

Existing research has focused on two directions: a) low level analysis and instrumentation of real networking code prevents memory bugs in individual network elements, but does not capture network-wide properties desired by operators such as reachability or loop freedom; b) high-level analysis of network-wide properties to verify operator policies on abstract network models; unfortunately, there are no guarantees that the models are an accurate representation of the real network code, and often low-level errors invalidate the conclusions of the high-level analysis.

We propose to achieve provably correct networks by simultaneously targeting both low-level security concerns and network-wide policy compliance checking. Our key proposal is to rely on exhaustive network symbolic execution for verification and to automatically generate provably correct implementations from network models. Generating efficient code that is equivalent to the model poses great challenges that we will address with three key contributions:

a) We will develop a novel theoretical equivalence framework based on symbolic execution semantics, as well as equivalence-preserving model transformations to automatically optimize network models for runtime efficiency.

b) We will develop compilers that take network models and generate functionally equivalent and efficient executable code for different targets (e.g. P4 and C).

c) We will design algorithms that generate and insert runtime guards that ensure correctness of the network with respect to the desired policy even when legacy boxes are deployed in the network.

Finanzierungsplan

ERC-STG - Starting Grant

Gastgebende Einrichtung

UNIVERSITATEA POLITEHNICA DIN BUCURESTI
Netto-EU-Beitrag
€ 1 325 000,00
Adresse
SPLAIUL INDEPENDENTEI 313 SECT 6
060042 Bucharest
Rumänien

Auf der Karte ansehen

Region
Macroregiunea Trei Bucureşti-Ilfov Bucureşti
Aktivitätstyp
Higher or Secondary Education Establishments
Links
Gesamtkosten
€ 1 325 000,00

Begünstigte (1)