Flow Bypass Using XDP Hardware for Suricata

Bavarian Academy of Sciences and Humanities - Leibniz Supercomputing Centre

Using Suricata at high speed (100 Gbit/s and beyond) on commodity hardware requires a lot of tuning and bypassing as much traffic as possible. We want to run comparisons on how much throughput we can gain by implementing XDP filters on hardware, compared to using XDP filters at driver level.

Tobias Appel