Gain Complete, Dynamic Control Over Traffic Flows in Your Network Monitoring and Cyber Security Applications
A subset of Accolade’s powerful Flow Classification feature set, Flow Shunting (flow filtering) preserves critical CPU cycles to enable FPGA-based host CPU offload, accelerate application performance and significant cost savings.
CPU bound network monitoring and cyber security applications such as Suricata, Wireshark and others can take advantage of Flow Shunting in hardware, optimizing packet processing to scale such software applications at 10, 40 and 100GE.
Packet header and metadata information in addition to a bi-directional flow context is maintained for each flow entry in an onboard look-up table hosted by the ANIC adapter/NIC. This allows each adapter to take specific action on any individual flow to forward, drop or re-direct a given flow.
Control over each of these actions now squarely resides with the application that controls the FPGA based Intelligent NIC.
Key Benefits of Flow Shunting:
- Offload host CPUs from processing unnecessary traffic.
- Eliminate processing (or storage) of unwanted traffic flows.
- Scale network security software apps such as Snort, Suricata & others.
- Achieve cost savings from reduced disk space/CPU utilization requirements.