SECURE NETWORKING PROTOCOL OPTIMIZATION VIA NIC HARDWARE OFFLOADING

    公开(公告)号:US20200059485A1

    公开(公告)日:2020-02-20

    申请号:US16599051

    申请日:2019-10-10

    Abstract: Methods and apparatus for secure networking protocol optimization via NIC hardware offloading. Under a method, security offload entries are cached in a flow table or a security database offload table on a network interface coupled to a host that implements a host security database mapping flows to Security Association (SA) contexts. Each security offload entry includes information identify a flow and information, such as an offset value, to locate a corresponding entry for the flow in the host security database. Hardware descriptors for received packets that belong to flows with matching security offload entries are generated and marked with the information used to locate the corresponding entries in the host security database. The hardware descriptors are processed by software on the host and the location information is used to de-reference the location of applicable entries in the host security database. In effect, the lookup of matching flows in the host security database is offloaded to the network hardware device.

Patent Agency Ranking