This Article 
   
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
5th IEEE Symposium on FPGA-Based Custom Computing Machines (FCCM '97)
An FPGA-based coprocessor for ATM firewalls
Napa Valley, CA
April 16-April 18
ISBN: 0-8186-8159-4
J.T. McHenry, Dept. of Defense, Fort Meade, ID, USA
P.W. Dowd, Dept. of Defense, Fort Meade, ID, USA
F.A. Pellegrino, Dept. of Defense, Fort Meade, ID, USA
T.M. Carrozzi, Dept. of Defense, Fort Meade, ID, USA
W.B. Cocks, Dept. of Defense, Fort Meade, ID, USA
This implementation of the firewall enables a high degree of traffic selectability yet avoids the usual performance penalty associated with IP level firewalls. This approach is applicable to high-speed broadband networks, and asynchronous transfer mode (ATM) networks are addressed in particular. Security management is achieved through a new technique of active connection management with authentication. Past approaches to network security involve firewalls providing selection based on packet filtering and application level proxy gateways. IP level firewalling was sufficient for traditional networks but causes a severe performance degradation in high speed broadband environments. The approach described in this paper discusses the use of an FPGA-based front end processor that filters relevant signaling information to the firewall host while at the same time allowing friendly connections to proceed at line speed with no performance degradation.
Index Terms:
field programmable gate arrays; FPGA-based coprocessor; ATM firewalls; traffic selectability; performance penalty; IP level firewalls; high-speed broadband networks; asynchronous transfer mode networks; ATM networks; security management; active connection management; authentication; network security; packet filtering; application level proxy gateways; performance degradation; front end processor; signaling information
Citation:
J.T. McHenry, P.W. Dowd, F.A. Pellegrino, T.M. Carrozzi, W.B. Cocks, "An FPGA-based coprocessor for ATM firewalls," fccm, pp.30, 5th IEEE Symposium on FPGA-Based Custom Computing Machines (FCCM '97), 1997
Usage of this product signifies your acceptance of the Terms of Use.