Suricata With Rte_flow: Improving the Performance of IPS and IDS With Hardware Acceleration
DPDK Project via YouTube
NY State-Licensed Certificates in Design, Coding & AI — Online
Become an AI & ML Engineer with Cal Poly EPaCE — IBM-Certified Training
Overview
Google, IBM & Meta Certificates — All 10,000+ Courses at 40% Off
One annual plan covers every course and certificate on Coursera. 40% off for a limited time.
Get Full Access
Discover how to accelerate Intrusion Detection and Prevention Systems (IDS/IPS) in high-speed network environments in this conference talk by Adam Kiripolský and Eliška Červinková from Cesnet. Learn about enhancing Suricata's performance using DPDK's rte_flow API for hardware acceleration. Explore various optimization techniques including encapsulation stripping, filtering user-predefined traffic, and dynamic insertion of rte_flow rules to bypass undesired flows such as elephant or encrypted flows. See how adding a prefiltration step directly to the network card enhances Suricata's existing software filtering capabilities. Examine the evaluation process using Suricata-CI, an open-source toolset for testing Suricata with different traffic profiles, and review the performance improvements achieved through hardware acceleration in high-speed network analysis.
Syllabus
Suricata With Rte_flow: Improving the Performance of IPS an... - Adam Kiripolský & Eliška Červinková
Taught by
DPDK Project