Re: Packet number encryption

Mikkel Fahnøe Jørgensen <mikkelfj@gmail.com> Mon, 12 February 2018 08:15 UTC

Return-Path: <mikkelfj@gmail.com>
X-Original-To: quic@ietfa.amsl.com
Delivered-To: quic@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9E6FE127011 for <quic@ietfa.amsl.com>; Mon, 12 Feb 2018 00:15:32 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.698
X-Spam-Level:
X-Spam-Status: No, score=-2.698 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001, UNPARSEABLE_RELAY=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id mztevBsg3wBA for <quic@ietfa.amsl.com>; Mon, 12 Feb 2018 00:15:30 -0800 (PST)
Received: from mail-it0-x234.google.com (mail-it0-x234.google.com [IPv6:2607:f8b0:4001:c0b::234]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 0EB501201F8 for <quic@ietf.org>; Mon, 12 Feb 2018 00:15:30 -0800 (PST)
Received: by mail-it0-x234.google.com with SMTP id b66so5695793itd.5 for <quic@ietf.org>; Mon, 12 Feb 2018 00:15:30 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=from:in-reply-to:references:mime-version:date:message-id:subject:to :cc; bh=+cfT9MELYg8r/6T7YFNdQ/8RSCKk4yo3Op0AHh8Bc4I=; b=dpcO0WyxmBLyOzyvqKzWMnP1AbPFgEh2r99zYmVDplCvK4Bm2fJVBowtCxrwzr6g0r jitlBF01dBsgbM0Q+sb373E3XgBCKlLWm0leV95y4eRVP1PuEzzQHs7k8RVtiKri6ra+ frMwFuDEyJvvyp2MOdm8w2y4Tzf5r6obXCgxjsV8KCoDqbtL1EVF/vS9mdIH83Q3E1Wo N/nMLfv+j0p0REBZauOFAvKYkBEcyyMI39qETYwhNU4ovHjauvorL+d9sa+fk53F57qH h7aiS8h1xJJi14hUn/5H+GQBFK8OttI8PNAdMqOreqYZDb5WbH36eFCi784b4AJit/Ez X9Ww==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:from:in-reply-to:references:mime-version:date :message-id:subject:to:cc; bh=+cfT9MELYg8r/6T7YFNdQ/8RSCKk4yo3Op0AHh8Bc4I=; b=jPc7dyFBX9VT9qUU+pLP8hFMvPGYbUAHPWW1hfx0Hbafpr0bvbpORdCHupdK1/IvzM d2+fOUTWk96Tn3120zYY6lTo9ZLLk3eoGmmRuqhS82ERRGx/UyidFm0rEgq599lczAsE nBRKHM5mXX7qtDEo7FCo43l6dNDIE2gccm8x6eADReO0fJ7MIbF0ewZPY2+P5tamp4Xk FQ7KeXYCQ5057twcYtA/UlfKMly3ieMtj838lYzYtI5zxGDtaYji0jxQyNTYpIhuoTQ6 r13XF5YQZGMR+1WqCz9gXuy1+jdHABQOwSKd9mLKx4ZuTGgUUF8dKyESx7GQsELKO92O eKfg==
X-Gm-Message-State: APf1xPAKVdtB4lJ1X+O5v3khoKymuhWABjx0O6KlVp0LLZ4aMTPyscmP 9jDWx9VKXZY5mAuAQaXAdhmG2RMMrbl7fJ/IRnI=
X-Google-Smtp-Source: AH8x225ZCmTyDPq9mCUOf8lyQk3IzWn2UumGROts4vvq8CrOgEN5hI6x0yuwy57FxB8IQ+jwz+019xqQTBA0Ud4bx7s=
X-Received: by 10.36.46.23 with SMTP id i23mr4504227ita.55.1518423329440; Mon, 12 Feb 2018 00:15:29 -0800 (PST)
Received: from 1058052472880 named unknown by gmailapi.google.com with HTTPREST; Mon, 12 Feb 2018 00:15:28 -0800
From: Mikkel Fahnøe Jørgensen <mikkelfj@gmail.com>
In-Reply-To: <CAAZdMaeCoSwCMT3W=8bUPFXjFc8=UcTwa_2_MoKt8FjP0JQtgg@mail.gmail.com>
References: <CABkgnnVyo3MmWtVULiV=FJTnR528qfY8-OmKGWAs0bCvri-a_g@mail.gmail.com> <2102BDC2-62C0-4A76-8ADE-8167437E2D07@trammell.ch> <CAN1APde6o6=aCXuWajPFSU=jXv-ERdVHk=uyjM71uQ_uU-oMTg@mail.gmail.com> <8e833029-68b5-2787-3897-a0f7818a259f@tik.ee.ethz.ch> <1de39727-eeec-0e7a-1e8b-5ed50433c5bd@cs.tcd.ie> <MWHPR08MB2432D0216BC8FE1B0D9E3690DAFD0@MWHPR08MB2432.namprd08.prod.outlook.com> <CAGD1bZauKbucs_5n7RQbK8H2HiyfiqpGVEcKreGA6umhMBSFgg@mail.gmail.com> <CABcZeBPNrc-9vANSH02r++p53s6gN4pVB8DMd80nUxOhKTp3dA@mail.gmail.com> <CAKcm_gMvHSBhpUvsQCCkV2_o+d_wchF3R3L6H8mp6nKNaaRmSw@mail.gmail.com> <CY4PR21MB0133CCAA6807469BA983D00BB6FC0@CY4PR21MB0133.namprd21.prod.outlook.com> <CABkgnnW4xr_YzpsvCxaJJgcQdBTuX=Yv735_sdd4VoMfji8mbA@mail.gmail.com> <CY4PR21MB0133C759D4A08A4988B641B2B6FC0@CY4PR21MB0133.namprd21.prod.outlook.com> <bdf88936-8edc-d56e-ee59-c9d597058edd@huitema.net> <CY4PR21MB01337C8A700E58B49D90B712B6FC0@CY4PR21MB0133.namprd21.prod.outlook.com> <119b3276-5799-1cc3-8982-7479171bbf27@huitema.net> <CAOYVs2pi8-NVuS+crNMfjsP-n5upK3=5tPeQ8OSGpOvL6RTrjA@mail.gmail.com> <CY4PR21MB0133A1117B2733BBCF049C5FB6FC0@CY4PR21MB0133.namprd21.prod.outlook.com> <CAAZdMad-vEBj4Zw-9=bM8hfSui68YBPTi88ZB434giYMXA1viQ@mail.gmail.com> <MWHPR21MB0144A36781B9AB9BEC7B99A8B6F30@MWHPR21MB0144.namprd21.prod.outlook.com> <CAAZdMaf_okyh1FHemPK90=RQp2Tb-p34SA_C77RLp68bwWSE2Q@mail.gmail.com> <CAN1APdchpj++3K5AcYZk-SMPBRDi3jvo7gjSMQwdYY_NuLNkgQ@mail.gmail.com> <CAAZdMaf-+q+3L9XPBLgDq6qGzVed4NaGOL63DqjGTcSm8g6oBA@mail.gmail.com> <DB6PR10MB176692436653B08C1CA949C2ACF10@DB6PR10MB1766.EURPRD10.PROD.OUTLOOK.COM> <CAN1APddho1==P7x3PV-F2Rj5DJkfzGLx5UqsN4fxOBg-C30RDg@mail.gmail.com> <CY4PR21MB0133D903AD60734920BBC910B6F10@CY4PR21MB0133.namprd21.prod.outlook.com> <CAAZdMaeCoSwCMT3W=8bUPFXjFc8=UcTwa_2_MoKt8FjP0JQtgg@mail.gmail.com>
X-Mailer: Airmail (420)
MIME-Version: 1.0
Date: Mon, 12 Feb 2018 00:15:28 -0800
Message-ID: <CAN1APdepbAwqh5_tw7RDfp4q_CxGdzhQ5jus1z8hY-iTCH0Ohg@mail.gmail.com>
Subject: Re: Packet number encryption
To: Victor Vasiliev <vasilvv@google.com>, Praveen Balasubramanian <pravb@microsoft.com>
Cc: Marten Seemann <martenseemann@gmail.com>, huitema <huitema@huitema.net>, "quic@ietf.org" <quic@ietf.org>
Content-Type: multipart/alternative; boundary="001a114a9d822b87020564ff7b8c"
Archived-At: <https://mailarchive.ietf.org/arch/msg/quic/C32v_U5Hosi70MC63FQ4Y8ehNuU>
X-BeenThere: quic@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: Main mailing list of the IETF QUIC working group <quic.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/quic>, <mailto:quic-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/quic/>
List-Post: <mailto:quic@ietf.org>
List-Help: <mailto:quic-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/quic>, <mailto:quic-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 12 Feb 2018 08:15:33 -0000

Running the math with 0.1% PN encrypt overhead and an assumed 1200 byte
packet size

We get 66 cycles for PN encrypt (lower bound) and 66000 cycles for total
processing. AEAD is 1200 * 1,03 = 1236 cycles.
This means non-crypto processing is 66000 - 66 - 1236 = 64698 cycles.
1200/

On a 3GHz core this is 21566ns.
The Solarflare 98 ns/68 bytes result scaled to 1200 bytes is 1729 ns, which
suggests there is a theoretical 10x optimisation potential (which of course
is not realistic in a large scale production environment).

In packets per second this is 1e9/21566 packets/s = 46369pps
With 1200 bytes / packet this is 55,64 MiB/s.

This is roughly 1/2 Gbps which could be related to the network throughput
including loss and retransmission, context switches, and cache effects.

To compare with raw processing time, 55MiB/s is more than 10x slower than a
JSON parser that I have.


On 12 February 2018 at 08.19.07, Victor Vasiliev (vasilvv@google.com) wrote:

 I looked at the profiles of various workloads we're running in production,
and I estimate that none of them would be impacted by PN encryption by
worse than 0.1%.