Advancements in Traffic Processing Using Programmable Hardware Flow Offload

Fuente: arXiv
Salvato in:
Dettagli Bibliografici
Autori principali: Deri, Luca, Cardigliano, Alfredo, Fusco, Francesco
Natura: Preprint
Pubblicazione: 2024
Soggetti:
Accesso online:
Tags: Aggiungi Tag
Nessun Tag, puoi essere il primo ad aggiungerne!!
_version_ 1866917730910732288
author Deri, Luca
Cardigliano, Alfredo
Fusco, Francesco
author_facet Deri, Luca
Cardigliano, Alfredo
Fusco, Francesco
contents The exponential growth of data traffic and the increasing complexity of networked applications demand effective solutions capable of passively inspecting and analysing the network traffic for monitoring and security purposes. Implementing network probes in software using general-purpose operating systems has been made possible by advances in packet-capture technologies, such as kernel-bypass frameworks, and by multi-queue adapters designed to distribute the network workload in multi-core processors. Modern SmartNICs, in addition, have introduced stateful mechanisms to associate actions to network flows such as forwarding packets or updating traffic statistics for an individual flow. In this paper, we describe our experience in exploiting those functionalities in a modern network probe and we perform a detailed study of the performance characteristics under different scenarios. Compared to pure CPU-based solutions, SmartNICs with flow-offload technologies provide substantial benefits when implementing forwarding applications. However, the main limitation of having to keep large flow tables in the host memory remains largely unsolved for realistic monitoring and security applications.
format Preprint
id arxiv_https___arxiv_org_abs_2407_16231
institution arXiv
publishDate 2024
record_format arxiv
spellingShingle Advancements in Traffic Processing Using Programmable Hardware Flow Offload
Deri, Luca
Cardigliano, Alfredo
Fusco, Francesco
Networking and Internet Architecture
The exponential growth of data traffic and the increasing complexity of networked applications demand effective solutions capable of passively inspecting and analysing the network traffic for monitoring and security purposes. Implementing network probes in software using general-purpose operating systems has been made possible by advances in packet-capture technologies, such as kernel-bypass frameworks, and by multi-queue adapters designed to distribute the network workload in multi-core processors. Modern SmartNICs, in addition, have introduced stateful mechanisms to associate actions to network flows such as forwarding packets or updating traffic statistics for an individual flow. In this paper, we describe our experience in exploiting those functionalities in a modern network probe and we perform a detailed study of the performance characteristics under different scenarios. Compared to pure CPU-based solutions, SmartNICs with flow-offload technologies provide substantial benefits when implementing forwarding applications. However, the main limitation of having to keep large flow tables in the host memory remains largely unsolved for realistic monitoring and security applications.
title Advancements in Traffic Processing Using Programmable Hardware Flow Offload
topic Networking and Internet Architecture
url https://arxiv.org/abs/2407.16231