BittWare Announces StreamSleuth 100G Network Packet Processing Appliance at RSA
FPGA-Accelerated Line-Rate Packet Processing Without Hassles of Programing FPGAs
February 15, 2017
SAN FRANCISCO, CA – BittWare today announced StreamSleuth, a 100 GbE network packet processing appliance at the RSA Conference, booth S312. StreamSleuth provides FPGA-accelerated monitoring, filtering, and routing at 100 GbE line rate, integrated with a Xeon E5 server for monitoring or packet injection—all in a 1U box. StreamSleuth’s pre-configured FPGA provides advanced filtering designed to augment ASIC-based commodity switching hardware—monitoring and even mitigating attacks that software-only solutions simply can’t handle at 100 gigabit speeds.
“Monitoring and defending 100 gigabit networks is challenging, and that’s why we’ve targeted StreamSleuth at this emerging market,” said Craig Lund, Vice-President and General Manager of the newly-formed BittWare Network Products group. “We’re combining FPGA performance with an API and GUI that network engineers can easily configure using standard BPF/pcap filters. StreamSleuth ensures that the most advanced datacenters stay secure at 100 GbE speeds.”
Today’s datacenters face sophisticated attacks designed to exploit limitations in commodity ASIC-based firewalls and switches. At 10G speeds, software mitigation fills this gap, but at 100G the strain on even the fastest CPUs makes security untenable.
The promise of FPGA reconfigurable hardware has been proposed as a solution, but these devices are notoriously difficult to program, requiring specialized engineers. Addressing both the 100G software limitation and the complexity of FPGA programming were key design goals of StreamSleuth.
The StreamSleuth solution uses a powerful Xilinx UltraScale+ FPGA, but it’s pre-configured with line-rate filtering, load balancing, and routing—no FPGA engineer is required. Users write standard BPF/pcap filters, which take effect instantly in the terabit router inside the FPGA. A built-in web GUI or API defines filters and routes, giving users the opportunity to add filters either manually, or via Python scripting or C code. For software mitigation, packet injection, and more complex analysis, StreamSleuth can route packets via Intel’s DPDK to a high-end Xeon server.
Use modes for StreamSleuth include acting as a network sensor or monitor, as an active monitor with packet injection, or as a supplemental firewall which can be configured to plug holes in standard firewalls. Front ports include 4×100 GbE (with only two used for most applications), and twenty 10 GbE ports for external monitoring or injecting packets back to a datacenter switch. Dual power supplies and vapor cooling are used within the 1U form factor box.
StreamSleuth is the first product from the recently announced BittWare Network Products group, which was formed to focus on 100 GbE—and beyond—solutions for sophisticated datacenters, OEMs, and VARs. BittWare is showcasing StreamSleuth at the RSA Conference, booth S312. For more information visit www.BittWare.net.
About BittWare, Inc.
For over 25 years, BittWare has made it easier for their OEM customers to quickly harness the power of programmable logic while simultaneously reducing technology risk and time-to-revenues. The company leverages their decades-long FPGA expertise by designing and deploying high-end network processing, high performance computing, and signal processing platforms. Our products utilize the latest FPGA technologies on industry-standard COTS form factors, including PCIe, and are available either as boards or in boxes. We also provide a great deal of value-add with IP, software, support, and services. When customer requirements make it difficult to use industry-standard boards, BittWare can provide modified solutions and/or licensed designs. For more information on BittWare and its innovative FPGA COTS solutions, visit BittWare.com.