TY - GEN
T1 - Analysis of IPSec overheads for VPN servers
AU - Shue, Craig
AU - Shin, Youngsang
AU - Gupta, Minaxi
AU - Choi, Jong Youl
PY - 2005
Y1 - 2005
N2 - Internet Protocol Security (IPSec) is a widely deployed mechanism for implementing Virtual Private Networks (VPNs). This paper evaluates the performance overheads associated with IPSec. We use Openswan, an open source implementation of IPSec, and measure the running times of individual security operations and also the speedup gained by replacing various IPSec components with no-ops. The main findings of this study include: VPN connection establishment and maintenance overheads for short sessions could be significantly higher than those incurred while transferring data, and cryptographic operations contribute 32 - 60% of the total IPSec overheads.
AB - Internet Protocol Security (IPSec) is a widely deployed mechanism for implementing Virtual Private Networks (VPNs). This paper evaluates the performance overheads associated with IPSec. We use Openswan, an open source implementation of IPSec, and measure the running times of individual security operations and also the speedup gained by replacing various IPSec components with no-ops. The main findings of this study include: VPN connection establishment and maintenance overheads for short sessions could be significantly higher than those incurred while transferring data, and cryptographic operations contribute 32 - 60% of the total IPSec overheads.
UR - http://www.scopus.com/inward/record.url?scp=33749071849&partnerID=8YFLogxK
U2 - 10.1109/NPSEC.2005.1532049
DO - 10.1109/NPSEC.2005.1532049
M3 - Conference contribution
AN - SCOPUS:33749071849
SN - 0780394275
SN - 9780780394278
T3 - 2005 First Workshop on Secure Network Protocols, NPSec, held in conjunction with ICNP 2005: 13th IEEE International Conference on Network Protocols
SP - 25
EP - 30
BT - 2005 First Workshop on Secure Network Protocols, NPSec, held in conjunction with ICNP 2005
T2 - 2005 First Workshop on Secure Network Protocols, NPSec, held in conjunction with ICNP 2005: 13th IEEE International Conference on Network Protocols
Y2 - 6 November 2005 through 6 November 2005
ER -