Rethink DPI Testing

A methodology to realistically validate the performance, security and stability of DPI capable network devices

 

Deep packet inspection (DPI) receives a lot of attention, primarily due to the controversy over privacy concerns and P2P bandwidth shaping. Often, these debates overshadow the important role of DPI in providing value for increased security, tiered services and data-loss prevention. Validating DPI functionality is critical for equipment manufacturers who produce these devices and for the service providers, enterprises and government agencies that depend on these elements.

DPI functionality allows network devices such as content-aware switches and routers, next-generation firewalls, intrusion prevention systems (IPS) and application delivery controllers to inspect and take action based on the contents and context of packets as they travel across the network. DPI is heavily leveraged in helping to prevent buffer overflow attacks, denial of service (DoS) attacks and intrusions.

"Rethink DPI Testing: A Methodology for Infrastructure Resiliency" is the next generation of test methodologies, designed to accurately emulate the production environment in which the DPI-capable device will be deployed. Using the BreakingPoint Storm CTM™, this Methodology rethinks DPI testing and outlines how to simulate the most recent vulnerabilities, stateful application mixes, accurate load, a pseudo-random number generator (PRNG) and more to ensure the examination of the DPI-capable device is realistic, repeatable and deterministic.