Title :
Evaluation of a Massively Parallel Architecture for Network Security Applications
Author :
Mason, Blake C. ; Ghosal, Dipak ; Corbett, Cherita
Author_Institution :
Dept. of Comput. Sci., Univ. of California, Davis, CA, USA
Abstract :
Network security applications such as to detect malware, security breaches, and covert channels require packet inspection and processing. Performing these functions at very high network line rates and low power is critical to safe guarding enterprise networks from various cyber-security threats. Solutions based on FPGA and single or multi-core CPUs has several limitations with regards to power and the ability to match the ever increasing line rates. This paper describes a MPPA (Massively Parallelized Processing Architecture) framework based on the Ambric parallel processing device that can speed up computation of network packet processing and analysis tasks. This is accomplished with a programmable processor interconnection that enables parallelizing the application and replication of data through channels. In this paper, we consider three network security applications - detecting malware, detecting covert timing channels, and a symmetric encryption engine. Experimental analyses of parallel implementations of the detection algorithms show that MPAA can easily achieve throughput greater than 1 Gbps with low power usage.
Keywords :
cryptography; field programmable gate arrays; invasive software; multiprocessor interconnection networks; parallel architectures; program processors; CPU; FPGA; MPPA; ambric parallel processing device; covert timing channel; cyber security threats; guarding enterprise networks; malware detection; massively parallelized processing architecture; network security; programmable processor interconnection; symmetric encryption engine; Computer architecture; Computer networks; Computer security; Concurrent computing; Data security; Field programmable gate arrays; Inspection; Parallel architectures; Parallel processing; Timing; Ambric; Massively Parallelized Processing Architecture (MPPA); covert timing channel; entropy function; experimental analysis; malware detection;
Conference_Titel :
Parallel, Distributed and Network-Based Processing (PDP), 2010 18th Euromicro International Conference on
Conference_Location :
Pisa
Print_ISBN :
978-1-4244-5672-7
Electronic_ISBN :
1066-6192
DOI :
10.1109/PDP.2010.20