A Benchmarking Methodology for NPU-Based Stateful Firewall

t is currently a challenge to evaluate and compare network processor-based (a.k.a. NPU-based) applications due to the heterogeneity of the application designs and hardware architectures. Many research works have been done in the area of packet classifications, which were directed towards proposing h...

Full description

Bibliographic Details
Main Authors: Lee, Eng Kean, Mohd. Nor, Sulaiman
Format: Conference or Workshop Item
Language:English
Published: 2003
Subjects:
Online Access:http://eprints.utm.my/2121/
http://eprints.utm.my/2121/1/SulaimanMN2003_Benchmark_methodology_for_NPU_Based.pdf
Description
Summary:t is currently a challenge to evaluate and compare network processor-based (a.k.a. NPU-based) applications due to the heterogeneity of the application designs and hardware architectures. Many research works have been done in the area of packet classifications, which were directed towards proposing high-speed firewall implementation algorithms. However, few researches focus on providing standard benchmarking methodology for a specific class of firewall. This paper presents a benchmarking methodology for NPU-based stateful firewall. The aim is to allow ‘apple-to-apple’ comparison among similar firewalls available in the market, and to provide practical benchmarks that exhibit realistic performance numbers. The key aspects of this work are benchmark specifications, separation of benchmark granularity in a layered manner, and the means of measurement. Finally, a system-level benchmark is applied on a stateful firewall implemented on Intel’s IXP1200 network processor as a proof-of-concept of this work.