Sony Pixel Power calrec Sony

NVIDIA and Palo Alto Networks Boost Cyber Defenses with DPU Acceleration

12/07/2021

Cybercrime cost the American public more than $4 billion in reported losses over the course of 2020, according to the FBI.

To stay ahead of emerging threats, Palo Alto Networks, a global cybersecurity leader, has developed the first virtual next-generation firewall (NGFW) designed to be accelerated by NVIDIA's BlueField data processing unit (DPU).

The DPU accelerates packet filtering and forwarding by offloading traffic from the host processor to dedicated hardware that is separate from the server CPU. The solution delivers the intrusion prevention and advanced security capabilities of Palo Alto Networks' virtual NGFWs to every server without sacrificing network performance. It also allows network flows that were previously impossible or impractical to inspect by intelligently screening the relevant parts of the flow and offloading the rest to the DPU.

This hardware-accelerated software NGFW is a milestone in boosting software firewall performance and maximizing data center security coverage and efficiency by being first to market to be accelerated by a DPU.

The recently announced DPU-enabled Palo Alto Networks VM-Series NGFW uses zero trust network security principles. The DPU operates as an intelligent network filter to parse, classify and steer traffic flows with zero ReCPU overhead, which enables the NGFW to support close to 100Gb/s throughput for typical use cases. This is a 5x performance boost versus running the VM-Series firewall on a CPU alone - and up to 150 percent capex savings compared to legacy hardware.

As enterprises and telcos build cloud-like data centers, they need the agility and automation of the cloud without compromising performance. Together with NVIDIA, we are turbocharging our VM-Series virtual ML-powered NGFWs, said Muninder Singh Sambi, senior vice president of Products at Palo Alto Networks. The industry-leading NVIDIA BlueField DPU is ideal for cybersecurity solutions operating in cloud-like environments.

The first BlueField-enabled NGFW to market, the VM-Series enables application-aware segmentation, prevents malware, detects new threats and stops data exfiltration with the BlueField DPU offloading the host processor to accelerate packet filtering and forwarding functionality.

Intelligent Traffic Offload Service In certain customer environments, the majority of traffic either does not need inspection (for example, streaming traffic such as video, gaming and video conferencing) or can't be inspected, such as encrypted traffic for which the customer is unable to assign corresponding decryption policy on firewall. In such environments, Intelligent Traffic Offload will ensure that firewall resources are optimally utilized to inspect only those flows that benefit from continuous security inspection.

Up to 80 percent of network traffic, including media and encrypted data in a data center, doesn't need to be - or can't be - inspected by a firewall. To address this, the NVIDIA and Palo Alto Networks joint solution includes the Intelligent Traffic Offload (ITO) service, which examines network traffic to determine whether or not each session will benefit from security inspection.

The ITO service examines every session of the traffic to determine whether or not that session will benefit from security inspection. If the firewall determines that the session will not benefit from security inspection, ITO instructs the BlueField-2 DPU to forward all subsequent packets in that session directly to their destination without sending them to the firewall. (See the chart below.)

By only examining flows that can benefit from security inspection and offloading the rest to the DPU, the overall load on the firewall and the host CPU is reduced and performance increases without sacrificing security.

The ITO empowers enterprise, telco and cloud operators to protect end-users with an NGFW that can run on every host in a zero trust environment, helping expedite their digital transformation while keeping them safe from a myriad of cyberthreats.

Palo Alto Networks' integration with the NVIDIA BlueFIeld DPU allows the ITO service to intelligently offload traffic that does not benefit from further security inspection. Expanding Developer Ecosystem Around NVIDIA DOCA SDK Palo Alto Networks began development of the NGFW on the BlueField DPU by using the gRPC open source remote procedure call framework (a project of the Cloud Native Computing Foundation) and NVIDIA ASAP2, an open-source driven hardware acceleration framework.

The gRPC interface to BlueField and ASAP2 are now merged into the NVIDIA DOCA SDK, the data center infrastructure-on-a-chip architecture that gives developers an open platform for building software-defined, hardware-accelerated networking, storage, security and management applications running on BlueField DPUs.

DOCA is part of NVIDIA's commitment to building a broad developer community that revolutionizes data center infrastructure applications and services powered by NVIDIA GPUs and BlueField DPUs.

Learn more about the DOCA ecosystem and join our developer community.
LINK: https://blogs.nvidia.com/blog/2021/07/12/palo-alto-networks-cyber-defe...
See more stories from nvidia

Most recent headlines

04/08/2024

Dalet Appoints Santiago Solanas as CEO to Lead Next Era of Growth and Innovation

Dalet, a leading technology and service provider for media-rich organizations, is excited to announce Santiago Solanas as its new Chief Executive Officer (CEO)....

03/06/2024

Dalet and Veritone Reach Agreement to Distribute, Transact and Monetize Media Archives

Dalet, a leading technology and service provider for media-rich organizations, a...

07/05/2024

Survey: Amazon's Push into Ad-Supported Streaming Is Working

PORTSMOUTH, N.H. New findings from Hub Entertainment Research provides extensive data showing that the majority of consumers will opt for lower cost ad-supporte...

07/05/2024

The Library of American Broadcasting Foundation Unveils the 2024 Award Recipients

NEW YORK The Library of American Broadcasting Foundation (LABF) has announced th...

07/05/2024

Lindsey Reiser Joins CBS News 24/7 as Anchor and Correspondent

CBS News has named Lindsey Reiser an anchor and correspondent for CBS News 24/7, the network's live, streaming news service. Reiser, who was most recently a...

07/05/2024

Tablet Shipments Show Signs of Recovery in Q1

NEEDHAM, Mass. After more than two years of decline, worldwide tablet shipments posted modest year-over-year growth of 0.5% in the first quarter of 2024 (1Q24),...

07/05/2024

ESPN Pulls in Highest April Prime Time Audiences on Record

ESPN is reporting that April was a record-setting month as the network delivered its best April prime time audience on record, dating back more than 30 years....

07/05/2024

Kirsten Donaldson Joins NAB as VP of Public Policy

WASHINGTON, D.C. The National Association of Broadcasters (NAB) has announced that Kirsten Donaldson has joined NAB as vice president of public policy. Donaldso...

07/05/2024

Don't miss Bark in the Park, Margaritaville Night & Bull Sharks Night this week at the DBAP

The Bulls are back home again this week from May 7-12! Don't miss out on any...

06/05/2024

Gathering Is a Call to Action: A Letter From Ilyse McKimmie

By Ilyse McKimmie Now, more than ever That's a phrase so often used in the last few years that I've come to dread seeing it in notes like this one. A...

06/05/2024

From Petabytes To Exabytes: The Future Of Shared Storage

alt= class=wp-image-12099 data-lazy-src=/wp-content/uploads/2024/05/Blog-Exabyte-Storage-Demand-960x540-1.jpg/> Demand for storage solutions has reached unprece...

06/05/2024

Spotify Uplifts Bold, Emerging Artists in Honor of Asian and Pacific Islander Heritage Month

Around the world, Asian and Pacific Islander (API) artists continue to impact mu...

06/05/2024

Never Miss a New Release With Countdown Pages for Audiobooks

Spotify is making it easier for booklovers to count down the days, hours, minutes, and seconds until a new audiobook releases. With Countdown Pages for audioboo...

06/05/2024

Get Ready to join Dan Hong as he hits the streets in his ultimate culinary journey

Get Ready to join Dan Hong as he hits the streets in his ultimate culinary journ...

06/05/2024

Lighting a Day-Interior Caf With LEE Filters

In this video, cinematographer Simon Rowling welcomes viewers behind the scenes as he lights a daytime-interior scene inside a coffee shop. Shooting on Panavisi...

06/05/2024

Technology for the Next Generation of Special Forces

L3Harris is well positioned to support the complex and multifaceted nature of special operations forces in all domains through our agile and responsive technolo...

06/05/2024

Canada Plans May 8 Public Alert System Test

OAKVILLE, Ontario As part of Emergency Preparedness Week, Alert Ready, Canadas national public alerting system, will be distributing a test alert to Canadians i...

06/05/2024

Survey: Pay TV Penetration Falls to 40% in U.S. Hispanic Homes

NEW ROCHELLE, N.Y. Horowitz Research has released a new study on the viewing and media habits of U.S. Hispanic/Latine audiences that shows a dramatic decline in...

06/05/2024

RE:Vision Effects Autograph 2024.4 released! 50% Off Through May 9th

RE:Vision Effects Autograph 2024.4 released! 50% Off Through May 9th Brie Clayton May 6, 2024 0 Comments New game-changing motion graphics & VFX featu...

06/05/2024

NBC Orders More Night Court'

NBC has renewed Night Court for a third season. The courtroom comedy was on the network from 1984 to 1992, and NBC rebooted it in early 2023....

06/05/2024

ABC Shares Summer Premiere Dates

ABC has revealed its summer schedule. The Bachelorette gets going Monday, July 8, with Jenn Tran the star in season 21. Celebrity Family Feud starts up Tuesday,...

06/05/2024

Holly Springs Salamanders Home Opener Less Than Three Weeks Away, Tickets on Sale Now

It's almost go-time for the Holly Springs Salamanders! The season opener is ...

06/05/2024

Tonight on Skeem Saam: Kobus busts Pretty in a compromising position

Tonight on Skeem Saam: Kobus busts Pretty in a compromising positionDon't miss Monday, 6 May's riveting episode of South African soapie Skeem Saam on SA...

06/05/2024

Tonight on House of Zwide: Bra Zakes and Sphamandla agree to leave Tembisa and never come back

Tonight on House of Zwide: Bra Zakes and Sphamandla agree to leave Tembisa and n...

06/05/2024

RT Announces Series of Major TV Debates as part of its European Parliament Election Coverage

RT has announced details of its coverage across digital, TV and Radio in the ru...

06/05/2024

The Pros and Cons of Cloud, Hybrid, or On-Premises Radio Operations

For years, radio stations have used on-premises servers to broadcast content and manage automation, traffic, and billing systems. As technology continues to adv...

06/05/2024

AI and Big Data Take the Centre Stage in Central Asia at Beetech 2024 Hosted by Beeline Kazakhstan and QazCode

06 May 2024 AI and Big Data Take the Centre Stage in Central Asia at Beetech 20...

06/05/2024

NBC Sports and Churchill Downs Extend Historic Partnership, Kentucky Derby to Be Presented on NBC and Peacock Through 2032

NBC Sports and Churchill Downs Extend Historic Partnership, Kentucky Derby to Be...

06/05/2024

Beverly Hills Aerials, LIV Golf Make Australian-Broadcast History by Flying Live Drones Over People in Adelaide

Beverly Hills Aerials, LIV Golf Make Australian-Broadcast History by Flying Live...

06/05/2024

Watch the Trailer for 'A Part of You' - Felicia Maxime, Edvin Ryding and Zara Larsson in Leading Roles

Back to All News Watch the Trailer for A Part of You - Felicia Maxime, Edvin Ry...

06/05/2024

FOR-A to focus on Ultra HD at Broadcast Asia

Leadership in 12G-SDI for low impact migration to 4k production...

06/05/2024

STATEMENT CONCERNING EUTELSAT GROUP'S GROUND NETWORK

Press release - 6 May 2024 07:31 STATEMENT CONCERNING EUTELSAT GROUP'S GROUND NETWORK Facebook LinkedIn Twitter Download as PDF Paris, 06 May 2024 ...

06/05/2024

Explore Broadcast Pix's Latest Innovations at InfoComm 2024

Tyngsboro, Mass. - May 6, 2024 - Join us at InfoComm 2024 to experience the latest advancements in live production technology. From June 12-14, 2024, at the Las...

06/05/2024

2024-05-06

To champion global movements to protect and advance equality for LGBTQ+ communities, Apple is introducing a new Apple Watch Pride Edition Braided Solo Loop, ava...

06/05/2024

Actress Matseliso Mohale has joined Muvhango'

Actress Matseliso Mohale has joined Muvhango'Talented actress Matseliso Mohale has joined SABC2's soapie Muvhango' as Vhangani's lover and a c...

06/05/2024

Tonight on Smoke and Mirrors: Leroy refuses to give up fighting to bury Mthetho

Tonight on Smoke and Mirrors: Leroy refuses to give up fighting to bury MthethoDon't miss Monday, 6 May's riveting episode of South African soapie Smoke...

06/05/2024

NVIDIA and Alphabet's Intrinsic Put Next-Gen Robotics Within Grasp

Intrinsic, a software and AI robotics company at Alphabet, has integrated NVIDIA AI and Isaac platform technologies to advance the complex field of autonomous r...

06/05/2024

A Mighty Meeting: Generative AI, Cybersecurity Connect at RSA

Cybersecurity experts at the RSA Conference this week will be on the hunt for ways to secure their operations in the era of generative AI. They'll find man...

06/05/2024

SES to acquire Intelsat: Investor Relations Frequently Asked Questions

1) What is the rationale of the transaction? What is the benefit for SES shareholders? This combination creates a stronger and more competitive multi-orbit ope...

05/05/2024

Singer Becky G To Close Out TelevisaUnivision's Upfront

A special evening performance by multiplatinum singer Becky G will provide a memorable conclusion to TeievisaUnivision's Casa Cultura upfront event on May 1...

05/05/2024

Publicis Won't Use Nielsen's Big Data as Currency in This Upfront

Giant media buyer Publicis is telling network sales executives that it does not think Nielsen's new panel-plus-big-data currency is ready for this upfront....

05/05/2024

Glenn Kirschner, NBC News Legal Analyst, Rips Media Coverage of Trump Trial

WASHINGTON Glenn Kirschner, legal analyst at NBC News, blasted the media for referring to the New York trial of former President Donald Trump as a hush-money ...

05/05/2024

Catchy Comedy Marathons The Beverly Hillbillies' May 4-5

Catchy Comedy's weekend marathon sees The Beverly Hillbillies on the weekend of May 4-5. The event kicks off Saturday, May 4 at 11 a.m. ET, and runs through...

05/05/2024

How NBC Sports Plans to Cover Kentucky Derby

NBC Sports has the 150th Kentucky Derby Saturday, May 4. The coverage begins at 2:30 p.m. ET on NBC and Peacock and the feature race at Churchill Downs in Louis...

05/05/2024

Netflix Announces New Comedy Series 'Roosters', Starring Jeroen Spitzenberger, Waldemar Torenstra, Andr Dongelmans and Benja Bruijning

Back to All News Netflix Announces New Comedy Series Roosters, Starring Jeroen ...

05/05/2024

Showdown Alert: Baki Hanma VS Kengan Ashura' Drops Electrifying Trailer for June 6 Debut

Back to All News Showdown Alert: Baki Hanma VS Kengan Ashura' Drops Electr...

04/05/2024

Nielsen: Asian American Audiences Spend as Much Time on Mobile as TV

NEW YORK As the Asian Pacific American Heritage Month kicks off in May, Nielsen has released an extensive new report diving into their media habits with data sh...

04/05/2024

Comcast Makes $1M Commitment to Military-Serving Nonprofits

PHILADELPHIA As National Military Appreciation Month gets underway, Comcast has announced several new initiatives to help veterans, service members, and their f...