Middleboxes–that is, non-routing and non-switching network devices such as firewalls and caches–can be expensive, hard to manage, and prone to failure.
But they’re also widely deployed, and show no signs of going away. Today’s Weekly Show episode goes deep on middleboxes to explore why these devices have proliferated, and find ways to make them more reliable and easier to manage.
The show also tackles the challenges of TLS/SSL and middleboxes, including how to balance the need to examine traffic to apply/enforce policy with security and privacy concerns.
Joining Greg to discuss this topic is Justine Sherry, a Ph.D. candidate in Computer Science at the University of California, Berkeley. Her dissertation “focuses on new opportunities and challenges arising from moving middlebox services to clouds and ISPs.”
Tune in for a gloriously nerdy episode!
Sponsor: Talari
Talari creates a THINKING SD-WAN that makes the network smart and responsive, adapting in real time to changing conditions. With Talari, mission-critical apps like VoIP and VDI take priority and always deliver, while less time-sensitive traffic your file backup, for example falls in line. Talari is the proven, leading SD-WAN solution that started in the SD-WAN space before it was labeled as such. Check them out at Talari.com and listen to the Packet Pushers podcast with Talari co-founder and CTO John Dickey.
Sponsor: ThousandEyes
ThousandEyes delivers visibility into every network your organization relies on from your data center to the cloud. You can quickly and precisely pinpoint the root cause of network issues wherever they occur and then share your insights with your vendors and customers. This way, there s less finger pointing and more fist bumping. Sign up for an account at ThousandEyes.com/packetpushers to monitor 3 locations for free, and choose a ThousandEyes t-shirt.
Links:
Check out Justine’s research here:
A Survey of Enterprise Middlebox Deployments
Is it Still Possible to Extend TCP?
BlindBox: Deep Packet Inspection over Encrypted Traffic
Future Architectures for Middlebox Processing Services on the Internet and in the Cloud