Advanced search
Start date
Betweenand


Unlocking Security to the Board: An Evaluation of SmartNIC-driven TLS Acceleration with kTLS

Full text
Author(s):
Novais, Felipe A. S. ; Verdi, Fabio L.
Total Authors: 2
Document type: Journal article
Source: PROCEEDINGS OF 2024 IEEE/IFIP NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM, NOMS 2024; v. N/A, p. 9-pg., 2024-01-01.
Abstract

This work delves into the vital role of TLS (Transport Layer Security) in securing web applications today. We explore kTLS (Kernel TLS) offloading as a possible solution to alleviate resource strain such as CPU time, power consumption, and network speed. By shifting cryptographic tasks closer to the CPU in software offloading or away from the main CPU in hardware offloading, kTLS can improve resource efficiency. Our experimental studies assess various offloading strategies, including software-based kTLS that bring it closer to the Kernel and cutting-edge hardware-accelerated modes such as TOE and coprocessor configurations using the Chelsio T6 SmartNIC. We highlight the immense potential of kTLS and network adapters in reshaping performance and efficiency dynamics for some network environments, considering each approach's benefits and potential drawbacks. (AU)

FAPESP's process: 21/00199-8 - SMART NEtworks and ServiceS for 2030 (SMARTNESS)
Grantee:Christian Rodolfo Esteve Rothenberg
Support Opportunities: Research Grants - Research Centers in Engineering Program