Adding Security to Network Via Network Processors

Hao Yin,Zhangxi Tan,Chuang Lin,Guangxi Zhu
DOI: https://doi.org/10.1007/978-3-540-30141-7_60
2004-01-01
Abstract:With the increasing need of security, cryptographic processing becomes a crucial issue for network devices. Traditionally security functions are implemented with Application Specific Integrated Circuit (ASIC) or General-Purposed Processors (GPPs). Network processors (NPs) are emerging as a programmable alternative to the conventional solutions to deliver high performance and flexibility at moderate cost. This work compares and analyzes architectural characteristics of many widespread cryptographic algorithms on Intel IXP2800 network processor. In addition, we investigate several implementation and optimization principles that can improve the cryptographic performance on NPs. Most of the results reported here should be applicable to other network processors since they have similar components and architectures.
What problem does this paper attempt to address?