NSDI 26 - CStar Gateway: Augmenting Public Cloud Infrastructure for Heterogeneous Network... @UsenixOrg
NSDI 26 - CStar Gateway: Augmenting Public Cloud Infrastructure for Heterogeneous Network...  @UsenixOrg
Uploaded June 2026 | Updated September 2026, 3 weeks ago
NSDI '26 - CStar Gateway: Augmenting Public Cloud Infrastructure for Heterogeneous Network Function Virtualization

Haonan Li, Tian Pan, Jin Ke, Baohai Hu, Changgang Zheng, Enge Song, Zhi Xu, Ye Yang, Bowen Yang, Donglin Lai, Yisong Qiao, Bengbeng Xue, Jianyuan Lu, Xiaoqing Sun, Shize Zhang, Zihao Fan, Mingxin Li, Yang Song, Jun Liang, Xionglie Wei, and Biao Lyu, Alibaba Cloud; Rong Wen, Fudan University and Alibaba Cloud; Zhigang Zong, Alibaba Cloud; Jiao Zhang and Tao Huang, Purple Mountain Laboratories; Shunmin Zhu, Alibaba Cloud

Major cloud providers often build NFV products by reusing existing architectures. These designs were originally developed and optimized for tenant virtual machines (VMs) that operate at network endpoints. In contrast, network function (NF) VMs function as intermediate forwarding nodes shared by multiple tenants, which have very different resource demands. Directly applying tenant-oriented designs creates mismatches between infrastructure capabilities and NF requirements. A common case arises when NF VMs serve many tenants: they typically exhaust vNIC and sessions on vSwitches well before CPU resources are saturated. At this point, NF VMs cannot accept additional traffic despite having idle CPU cycles. Providers usually address this by scaling out or scaling up NF VMs, which wastes resources and increases cost. This is just one example, where numerous other mismatches remain. To address these, we present CStar Gateway. CStar Gateway shifts NF VM multi-tenancy support from vSwitches into NF VMs, which reduces vNIC and session bottlenecks with minimal changes to the existing cloud infrastructure. CStar Gateway also identifies and redirects I/O- or CPU-intensive flows to FPGA-based NFs, increasing the service capacity. In addition, CStar Gateway takes over NF VM elasticity support from vSwitch, simplifying and accelerating the scaling process, and thereby enhancing overall system flexibility. Deployment results show that the design improves CPU and I/O utilization of NF VMs by at least 5x and reduces NF cluster capital expenditure by 71.91% to 88.57%.

View the full NSDI '26 program at usenix.org/conference/nsdi26/technical-sessions
NSDI 26 - CStar Gateway: Augmenting Public Cloud Infrastructure for Heterogeneous Network...NSDI 26 - Heuristic Analysis from Source Code via Symbolic-Guided OptimizationNSDI 26 - Di-PS: System-Algorithm Co-Design for Asynchronous and Heterogeneous Cross-cluster...NSDI 26 - DistVS: Large-scale Vector Search with Compute-Memory DisaggregationPEPR 26 - Turning Privacy Risk Assessment Into 20 Questions for DevelopersNSDI 26 - Secure Vickrey Auctions for Online AdvertisingNSDI 26 - Slowpoke: End-to-end Throughput Optimization Modeling for Microservice ApplicationsUSENIX Security 25 - FABLE: Batched Evaluation on Confidential Lookup Tables in 2PCPEPR 26 - How Canva Built Simple, Auditable, and Maintainable Data RetentionNSDI 26 - Cortex: Achieving Low-Latency, Cost-Efficient Remote Data Access For LLM viaNSDI 26 - Offloading Cloud Network Services at Production Scale with SONiC DASH SmartSwitchNSDI 26 - Net-P4ct: Enhanced WAN Bandwidth Fair Sharing Using P4 Programmable Switches
USENIX |

NSDI '26 - CStar Gateway: Augmenting Public Cloud Infrastructure for Heterogeneous Network...

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER