On-chip firewall guards PCs

Nvidia chipset includes a hardware firewall to secure desktops

Written by Daniel Robinson

Chip firm Nvidia will this week announce a motherboard chipset with dedicated hardware to support a client-side firewall. The nForce4 chipset offloads from the processor the task of inspecting data traffic, so it can secure a PC without slowing performance.

The Nvidia nForce4 chipset is shipping now to motherboard makers and system builders, and is expected to appear in PCs before the end of the year. However, the system only supports 64bit AMD chips, while most companies still only buy desktops running Intel processors.

Unsecured networks are a major threat to business, according to Nvidia. "Newly deployed Windows PCs can get infected in seconds, just by being connected to the network," said Drew Henry, general manager of Nvidia's platform business. But he added that software-based firewalls cause the lion's share of processor time to be devoted to filtering IP traffic, especially when using high-speed network technologies such as Gigabit Ethernet.

The Secure Networking Engine (SNE) inside nForce4 serves as dedicated hardware for the Nvidia Firewall app that ships with it. The SNE performs stateful inspection on all data coming in from nForce4's integrated Gigabit Ethernet adapter and blocks any bad packets. "And the advantage is, we can do this at full Gigabit Ethernet speed without slowing down the CPU," Henry said.

Nvidia said that the SNE also monitors outbound traffic, and can alert the user if an unknown program tries to open an internet connection. This capability is already supported by firewalls such as ZoneAlarm from Zone Labs, but not by the Windows Firewall that ships as part of Microsoft's SP2 update for Windows XP.

The Nvidia Firewall ships with predefined security profiles to make it easier to use, but administrators can create customised profiles for their firms' security policies and deploy them using standard management tools, according to Henry.

Nvidia said its system is compliant with Microsoft's TCP Chimney Architecture, a forthcoming Windows API that will support the offloading of portions of the TCP protocol stack to hardware, typically a LAN adapter.

The nForce4 is the first chipset for AMD's Athlon 64 and Opteron chips to support the new PCI Express I/O standard, according to Nvidia. As well as integrated Gigabit Ethernet, it supports a faster 3Gbit/s interface for Serial ATA (Sata) hard disks, and the 1GB/s version of AMD's HyperTransport technology that links the chipset to the processor.

Three versions of the nForce4 chipset are shipping. The baseline nForce4 lacks SNE, while the nForce4 SLI supports multiple Nvidia graphics cards. Business desktops will likely use the mid-range nForce4 Ultra. An nForce4 Pro chipset to support dual processors on workstations is planned.

  • Have your say
  • Send to a friend
  • Print this
  • Share

Tags:

reader comments

related articles

Daniel Robinson

Silicon builds stronger security

There's a clear need for better PC security - and purpose-built chips could help 03 Nov 2004

 

Emulex unveils unified network adapters

OneConnect range has offload support for TCP/IP, iSCSI and FCoE 28 Oct 2009

related whitepapers

today's top stories

Telepresence: coming to a screen near you?

Telepresence systems enable organisations to hold boardroom-style meetings with far-flung participants without the hassle and expense of arranging travel and accommodation. But while the technology is impressive, it does not come cheap, as Martin Courtney discovered when he sat in on a virtual meeting with executives from Philips 10 Mar 2010

Users give their verdict on Azure

Some of the first wave of UK adopters met in London recently to air their views on Microsoft’s cloud computing platform. Dave Bailey listened in 10 Mar 2010

Protests greet new Digital Economy Bill amendment

ISPs, digital rights groups and Liberal Democrat supporters cry foul 05 Mar 2010

Publishing special - Publishers innovate to survive

1) IT could hold the key to the future of publishing 2) Case Study: The Guardian harnesses social and mobile apps 3) How publishers are reacting to the iPad 02 Mar 2010

IT Leaders' Forum in association with IBM

A unique opportunity to hear from expert speakers and engage in a debate about the future of the CIO job function 29 Jan 2010

Advertisement

Keys to successful Service‐Oriented Architecture implementation

This white paper explores best practices and general design patterns for service oriented architecture (SOA).

The Roadmap to IT Maturity — Matching Strategy to Infrastructure for Business Success

This paper defines a roadmap for matching infrastructure strategy to business success.

Advertisement

Keep up to date with the latest products, services and technologies from the world's leading IT companies; ITHound.com brings you over 6,000 white papers, case studies and analyst reports.

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

More available - click 'submit' to view

Existing User

Newsletter user login:

Jobs

Related jobs

Job of the week

Job alerts

Sign up here

Find your next job

IT Salary Checker

Check salary here

Advertisement

Latest poll

NHS centralised data

NHS centralised data

Do you think the NHS can be trusted to safely look after personal data electronically?

View poll results

Latest audio and video articles

Video

HP unveils S Series notebooks

'Prosumer' line overhauled 01 Mar 2010

Web Seminar Listings

Preparing for enterprise-scale Windows 7 migration

The web seminar on 18 Feb will discuss how Windows 7 migration can increase IT efficiency in large enterprises, freeing up budgetary and personnel resources to focus on business innovation. Our panel of experts will examine the strategies, tools and services IT leaders can use to migrate successfully and reap the rewards of increased efficiency. 19 Feb 2010

Latest in-depth articles

Derek FindlayComment

Hot Seat: Derek Findlay

Derek Findlay is computing support officer at the University of Aberdeen where he works with a team of more than 20 people 18 Mar 2010

David ChanComment

Do we want to play musical chairs?

More attention to training and development would improve IT staff retention and reduce costs 18 Mar 2010

Primary Navigation