Cryptographic Path Validation for SCION in P4


연구 분야: Cryptography



학회: EuroP4 '23: Proceedings of the 6th on European P4 Workshop


초록

SCION has been proposed as a new Internet architecture addressing security and scalability shortcomings in the current Internet. Multiple real-world deployments of SCION exist already, nevertheless few hardware implementations of SCION routers are available. In this paper, we implement a SCION border router on a programmable 12.8 Tbit/s Intel Tofino 2 switch. Our router utilizes the multiple separately programmable packet pipelines of Tofino 2 in order to compute SCION's AES-CMAC-based hop authenticators in general-purpose P4 without assistance from specialized hardware. Using three out of four available pipelines, we achieve 394.7 Gbit/s throughput per port on 8 ports for a total of 3.16 Tbit/s capacity. Using only two pipelines we still achieve line rate throughput on 4 ports for a total of 1.58 Tbit/s capacity. To our knowledge there is no other SCION router including the AES-CMAC validation that offers a comparable performance.


Author Profile
Lars Christian Schulz

Otto-von-Guericke Universität Magdeburg Magdeburg Germany

Germany
Author Profile
Robin Wehner

Otto-von-Guericke Universität Magdeburg Magdeburg Germany

Germany
Author Profile
David Hausheer

Otto-von-Guericke Universität Magdeburg Magdeburg Germany

Germany

📄 논문 정보

발행 연도 2023년
인용수 9
출판 국가 Germany
사이트 ACM
좋아요 수 0

연관 논문 목록 (179건)