• DocumentCode
    885675
  • Title

    Configuration and Extension of Embedded Processors to Optimize IPSec Protocol Execution

  • Author

    Potlapally, Nachiketh R. ; Ravi, Srivaths ; Raghunathan, Anand ; Lee, Ruby B. ; Jha, Niraj K.

  • Author_Institution
    Dept. of Electr. Eng., Princeton Univ., NJ
  • Volume
    15
  • Issue
    5
  • fYear
    2007
  • fDate
    5/1/2007 12:00:00 AM
  • Firstpage
    605
  • Lastpage
    609
  • Abstract
    Security protocols, such as IPSec and SSL, are being increasingly deployed in the context of networked embedded systems. The resource-constrained nature of embedded systems and, in particular, the modest capabilities of embedded processors make it challenging to achieve satisfactory performance while executing security protocols. A promising approach for improving performance in embedded systems is to use application-specific instruction set processors that are designed based on configurable and extensible processors. In this paper, we perform a comprehensive performance analysis of the IPSec protocol on a state-of-the-art configurable and extensible embedded processor (Xtensa from Tensilica Inc.). We present performance profiles of a lightweight embedded IPSec implementation running on the Xtensa processor, and examine in detail the various factors that contribute to the processing latencies, including cryptographic and protocol processing. In order to improve the efficiency of IPSec processing on embedded devices, we then study the impact of customizing an embedded processor by synergistically 1) configuring architectural parameters, such as instruction and data cache sizes, processor-memory interface width, write buffers, etc., and 2) extending the base instruction set of the processor using custom instructions for both cryptographic and protocol processing. Our experimental results demonstrate that upto 3.2times speedup in IPSec processing is possible over a popular embedded IPSec software implementation
  • Keywords
    cryptographic protocols; embedded systems; microprocessor chips; IPsec; configurability; configuration; embedded processors; embedded security; embedded systems; extensibility; extension; performance; security protocols; Application specific processors; Communication system security; Costs; Cryptographic protocols; Cryptography; Embedded computing; Embedded system; Information security; Power system security; Process design; Configurability; IPsec; embedded processors; embedded security; embedded systems; extensibility; performance; security protocols;
  • fLanguage
    English
  • Journal_Title
    Very Large Scale Integration (VLSI) Systems, IEEE Transactions on
  • Publisher
    ieee
  • ISSN
    1063-8210
  • Type

    jour

  • DOI
    10.1109/TVLSI.2007.896912
  • Filename
    4212153