SUBSCRIBE TO TMCnet
TMCnet - World's Largest Communications and Technology Community
 

Telecom Platform Deployment Featured Article


August 01, 2010

Next-Generation ATCA, Meet the SIEM Market

By Jeff Hudgins, VP of Engineering, NEI, Inc.


(NEBS)

This article originally appeared in the August 2010 issue of INTERNET TELEPHONY.

Combating cyber-terrorism is an ever-growing concern as plans to build an effective national cyber security program are taking shape. Last spring, President Obama conceded that the U.S. was not fully prepared to defend itself against serious network threats. As of about a year ago, more than 10 million U.S. residents had been victimized by identity theft alone, and that number is increasing by approximately one victim every second.

Enterprise Security Information and Event Management, or SIEM, applications from companies like NetWitness (News - Alert) and Trustwave promise the intelligence and forensics needed to better secure our nation’s critical networks.

What is stopping us from mobilizing these intelligence-based threat capture and cyber security management systems in a meaningful way? For one, advanced SIEM systems operated by well-trained network information analysts need a highly available, scalable and redundant network infrastructure capable of automating real-time analytics. Most national security and government networked systems cannot accommodate the command and control analytics needed to activate a true security management system. Until critical networks are upgraded, their otherwise static network monitoring and data logging applications will remain insufficient.

Developing a dedicated, real-time system to monitor critical network assets requires deep packet inspection. DPI is used to detect and take action on the granular and often interdependent contents of the packet payload rather than just the packet header. Multi-core scalability and leveraging the sheer number of CPU cores available today are key to maximizing the performance of DPI-based security management. Legacy SIEM architectures can scale from 10,000 to 15,000 events per second, but today’s security market and regulatory requirements demand the capture of 100,000 events per second or more.

Do those requirements sound familiar? They should, because the recently released ATCA multi-core CPU blades based upon Intel’s (News - Alert) Xeon 5600 processors offer six cores per processor to satisfy SIEM’s scalability demands. New platform solutions like the RadiSys ATCA-7220, a dual OCTEON packet processing AdvancedTCA (News - Alert) blade, are ideal for implementing DPI. This blade contains an on-board 10GE switch that acts as a smart front-end for its OCTEON processors. This allows independent resetting of the OCTEON processing complexes for fault isolation, off-loading and augmenting the OCTEON data path processing software, and it provides flexible data flow options.

Real-time access to the critical data needed to manage threats will be more attainable as the AdvancedTCA architecture transitions from 10G to 40G later this year. As packet rates increase, having 40G bandwidth will help reduce the unwanted latencies for deep packet processing and finally begin to align security forces with real-time management.

Final Score

As cyber threats become more complex and severe, SIEM applications and the network platforms on which they operate will improve. Are our national security experts looking at the latest ATCA-based packet processing systems with multi-core CPU blades stacked on a 40G backplane?


Jeff Hudgins (News - Alert), Vice President of Engineering at NEI, writes the Tech Score column for TMCnet. To read more of Jeff’s articles, please visit his columnist page.

Edited by Stefania Viscusi


» More Telecom Platform Deployment Feature Articles


Related content you may also be interested in…

How do I get started?

Download an Information Kit
Gain access to the brochures, webcasts, videos and more listed below
Download an Informative Webinar
The Future of 40G and the Reality of 10G ATCA Solutions
Get to Know NEI – Schedule a Call to Learn More
You've seen the brochures and know the type of solution you need. Now it is time to find a company that has the capabilities you require, the attention to detail you deserve and the ability to get your products to market now.

Telecom Platform Deployment Podcast

NEI Podcast Featuring Austin Hipes, vice president of technology at NEI
As Telecom Equipment Manufacturers are required to keep up-to-date with emerging technologies, several obstacles can get in the way of the support and development of these technologies.
[ Download ]

Whitepaper

Transitioning Application Platforms to Intel�s Sandy Bridge Microarchitecture
[ Download ]

Information Kit Resources

Carrier Class Solutions Brochure
[ Download ]
N-1500 R2 / N-2500 R3 NEBS Systems Brochure
[ Download ]
A-5000 / A-13000 ATCA Systems Brochure
[ Download ]
SN2500 R2 Storage Subsystem Brochure
[ Download ]

Telecom Platform Deployment Webcasts

ATCA vs. Carrier Grade Rack Mount Servers—The Experts Square Off
[ Download ]
ATCA vs. CGRMS—Making the Right Choice Session 1
[ Download ]
ATCA vs. CGRMS—Making the Right Choice Session 2
[ Download ]
ATCA Stateless Server Delivers Unrivaled Manageability and Serviceability
[ Download ]

10Gb ATCA Solution

RadiSys 10GE Promentum ATCA-2210 Switch Brochure
[ Download ]
RadiSys 10GE Promentum ATCA-4310 Processor Blade Brochure
[ Download ]
Emerson Network Power ATCA 9301 OCTEON Processor Blade Brochure
[ Download ]
Kontron ATCA AT8030 Processor Board Brochure
[ Download ]
Astute Networks Caspian R1100 Edge Storage Blade Brochure
[ Download ]

Popular Articles


blog comments powered by Disqus

Technology Marketing Corporation

800 Connecticut Ave, 1st Floor East, Norwalk, CT 06854 USA
Ph: 800-243-6002, 203-852-6800
Fx: 203-866-3326

General comments: tmc@tmcnet.com.
Comments about this site: webmaster@tmcnet.com.

STAY CURRENT YOUR WAY

© 2013 Technology Marketing Corporation. All rights reserved.