Home Gateway: the next battle ground. Majid Bemanian Security & Networking Marketing

Similar documents
Security for Secure IoT: Advanced Architectures for IoT Gateways. Simon Forrest Director of Segment Marketing, Consumer Electronics

Multicore and MIPS: Creating the next generation of SoCs. Jim Whittaker EVP MIPS Business Unit

SIERRAWARE SIERRATEE FOR MIPS OMNISHIELD

PowerVR virtualization: a critical feature for automotive GPUs

Delivering the Wireless Software-Defined Branch

How to Introduce Virtualization in AGL? Objectives, Plans and Targets for AGL EG-VIRT

UNIK Building Mobile and Wireless Networks Maghsoud Morshedi

A Big Little Hypervisor for IoT Development February 2018

Building blocks for 64-bit Systems Development of System IP in ARM

Oracle Solaris Virtualization: From DevOps to Enterprise

Internet of Everything for Industry SFO15-209

Universal CPE. OCP Telco Engineering Workshop AT&T Labs. John Gibbons Tom Anschutz. Workshop sponsored by:

Oberon M2M IoT Platform. JAN 2016

Live Demo: A New Hardware- Based Approach to Secure the Internet of Things

Virtual Open Systems (VOSyS)

New trends in IT. Network Functions Virtualization (NFV) & Software Defined-WAN

Introduction to Virtualization

Video & Vision: New IP, New Standards, New Solutions

Cloud for the Enterprise

Cisco SP Wi-Fi Solution Support, Optimize, Assurance, and Operate Services

Virtualizaton: One Size Does Not Fit All. Nedeljko Miljevic Product Manager, Automotive Solutions MontaVista Software

Building High Performance, Power Efficient Cortex and Mali systems with ARM CoreLink. Robert Kaye

EdgeConnectSP The Premier SD-WAN Solution

Cisco Prime Central for HCS Assurance

Simplifying the Branch Network

Feature Comparison Summary

2017 Storage Developer Conference. Mellanox Technologies. All Rights Reserved.

SICS Software Week, October 2014

Enterprise Network Compute System (ENCS)

The Convergence of Storage and Server Virtualization Solarflare Communications, Inc.

Virtualizing JBoss Enterprise Middleware with Azul

Unify DevOps and SecOps: Security Without Friction

SmartNICs: Giving Rise To Smarter Offload at The Edge and In The Data Center

IO virtualization. Michael Kagan Mellanox Technologies

NETWORK VIRTUALIZATION THE STORY OF SDN/NFV, NUAGE, DATACENTERS, VCPE

90 % of WAN decision makers cite their

Container Adoption for NFV Challenges & Opportunities. Sriram Natarajan, T-Labs Silicon Valley Innovation Center

The Consumable. Preparing business networks for the cloud with Software Defined Networking

ARM mbed Towards Secure, Scalable, Efficient IoT of Scale

Microsoft Windows Server 2008 R2 Remote Desktop Services Session Virtualization and VDI Microsoft RemoteFX

Private Cloud Database Consolidation Name, Title

Evolution of Data Center Security Automated Security for Today s Dynamic Data Centers

Multiband Capacity utilization Compact design SMALL CELL SOLUTION

24th MONDAY. Overview 2018

Real-Time Internet of Things

Our Virtual Intelligent Network Overlay (VINO) solutions bring next-generation performance and efficiency to business networks throughout North

Enterprise Cloud Computing. Eddie Toh Platform Marketing Manager, APAC Data Centre Group Cisco Summit 2010, Kuala Lumpur

What is it? A cloud based facility, linking key communications services and business applications, securely, via a web browser or mobile app

Performance Evaluation of Virtualization Technologies

Silver Bullet of Virtualization. Challenges and Concerns. May 27, 2013 v1.0

Benchmarking Real-World In-Vehicle Applications

T14 - Network, Storage and Virtualization Technologies for Industrial Automation. Copyright 2012 Rockwell Automation, Inc. All rights reserved.

Enterprise Mobility Scalable Small Cell Systems

Using Industry Standards to Exploit the Advantages and Resolve the Challenges of Multicore Technology

Corporate Overview. May Imagination Technologies Corporate May 2014 ForDistribution 1

SECURING THE NEXT GENERATION DATA CENTER. Leslie K. Lambert Juniper Networks VP & Chief Information Security Officer July 18, 2011

Product Guide. Simply Connected

HETEROGENOUS COMPUTE IN A QUAD CORE CPU

How SD-WAN will Transform the Network. And lead to innovative, profitable business outcomes

Whitepaper. IoT Protocols. PAASMER Support for Protocols. Website:

About Lantiq: Product Portfolio

Communication Patterns in Safety Critical Systems for ADAS & Autonomous Vehicles Thorsten Wilmer Tech AD Berlin, 5. March 2018

MPLS vs SDWAN.

Modelos de Negócio na Era das Clouds. André Rodrigues, Cloud Systems Engineer

RED HAT CLOUD STRATEGY (OPEN HYBRID CLOUD) Ahmed El-Rayess Solutions Architect

Security and Performance Benefits of Virtualization

EDGE COMPUTING & IOT MAKING IT SECURE AND MANAGEABLE FRANCK ROUX MARKETING MANAGER, NXP JUNE PUBLIC

Build application-centric data centers to meet modern business user needs

Converged Platforms and Solutions. Business Update and Portfolio Overview

AGM Hossein Yassaie, CEO and Richard Smith, CFO. 18 th September

Transform your network and your customer experience. Introducing SD-WAN Concierge

Versa Software-Defined Solutions for Service Providers

Broadband Forum Remote Management Specifications

From Zero Touch Provisioning to Secure Business Intent

VPN Cloud. Mako s SD-WAN Technology

Data Path acceleration techniques in a NFV world

Cisco Enterprise Cloud Suite Overview Cisco and/or its affiliates. All rights reserved.

mbed OS Update Sam Grove Technical Lead, mbed OS June 2017 ARM 2017

Sounding Better Than Ever: High Quality Audio. Simon Forrest Connected Home Marketing

Infrastructure for the Next Generation Virtualized Data Centre. DC3LaunchMsg/os 2007 Cisco Systems, Inc. All rights reserved.

Nested Virtualization and Server Consolidation

Title DC Automation: It s a MARVEL!

Virtualizing Managed Business Services for SoHo/SME Leveraging SDN/NFV and vcpe

Managing the Journey Through the Clouds

Borderless Networks. Tom Schepers, Director Systems Engineering

Feature Comparison Summary

Deliver Office 365 Without Compromise Ensure successful deployment and ongoing manageability of Office 365 and other SaaS apps

PowerVR GPU IP from Wearables to Servers. Kristof Beets Director of Business Development May 2015

Question No : 1 Which three options are basic design principles of the Cisco Nexus 7000 Series for data center virtualization? (Choose three.

HPE SimpliVity. The new powerhouse in hyperconvergence. Boštjan Dolinar HPE. Maribor Lancom

Akraino & Starlingx: A Technical Overview

A Cloud WHERE PHYSICAL ARE TOGETHER AT LAST

Selling the Total Converged Solution Module #1: Nortel Enterprise Networking Overview of the 4 Pillars and Why Nortel Tom Price Nortel HQ Sales

Merging Enterprise Applications with Docker* Container Technology

Secure Access - Update

Network Processing Technology for Terminals Enabling High-quality Services

Creator Ci40 product brief

DRAM and Storage-Class Memory (SCM) Overview

HYPER INTEGRATION! LANCOM Management Cloud

SOLUTION BRIEF Enterprise WAN Agility, Simplicity and Performance with Software-Defined WAN

Transcription:

Home Gateway: the next battle ground Majid Bemanian Security & Networking Marketing www.imgtec.com

Home Gateway in Transition The next battleground Fast changing consumer demands solutions that allow operators to rapidly introduce new services Home Energy Home Security Gaming Household Appliance Monitor and mange home environment and security Home Gateway Secure personal healthcare, fitness and video exchange Broadband Conn. Energy management & household appliances VoIP Connected medicine cabinet, pantries, Public Hotspots over residential CPE Impact CPEs become increasingly complex Lifecycle of CPEs mismatch with rapid pace of innovation Home Services Imagination Technologies US Summit May 2015 2

Home Gateway Challenges Resiliency, Scalability, Protection & Service Provisioning Broadband Home Gateway Local Area Gaming LTE DSL Cable PON Baseline S/W (Routing, Switching, Networking) Wi-Fi (private hotspot) 100/1000Mbit Storage (SATA, USB3.0) Public Hotspot IoT Services Zigbee Bluetooth 802.11n/ac Home Energy Home Appliance Home Security Imagination Technologies US Summit May 2015 3

Secure Fabric OmniShield How to Secure a Platform? Hardware supported virtualized + Hardware supported virtualized GPU + Secure Fabric + Trusted + Virtualized or para-virtualized connectivity and offloads + Root of Trust = Base-Line Services IoT Service Trusted MIPS Virtualized Cores PowerVR Virtualized GPU Cores Ensigma NPU Public Hotspot Service Deployment of multiple containers fully isolated and protected Ensigma RPU Root of Trust Memory Imagination Technologies US Summit May 2015 4

Hardware Software Home Gateway True Isolation Virtualization Benefits Mature and proven technology H/W Firewall high level of security Secure services can only affect their container Highest flexibility and performance IP protection provided through system partitioning Secure Extranet Broadband App s Network Interface Baseline Software IPC Trusted MIPS Heterogeneous Platform Secure Fabric Offloads RoT DRAM Secure Intranet LAN App s Kernel Network Interface WAN LAN Imagination Technologies US Summit May 2015 5

Breaking the 2-Zone Barrier Secure heterogeneous operation Binding of + GPU into secure containers VM0 VM1 VM7 Binding VM1 VM7 Up to 7 Secure containers (current configuration) Concurrent and independent Secure operation Coherent and Isolated operation Trusted Env. Secure Rich App/ Rich App/ Os Secure Containers (scales to 255) up to 31 GPU up to 7 Trusted VZ I6400 Cluster RoT GPU Cluster H/W VZ Guest-ID H/W VZ Domain-ID Secure Fabric Heterogeneous Operation Domain-ID DDR Memory R TE VM1 VM7 Unified Memory Isolated and Protected +GPU bindings Imagination Technologies US Summit May 2015 6

Root Guest H/W Thread Realtime secure operation in virtual environment Intersection of Isolation and Concurrency Isolation Concurrency Virtualization RT RT Single Thread H/W VZ Context Switch RT RT RT switches context enforcing CoS, QoS and isolation. Response time adequate for many applications. H/W Multi-Threading enable concurrent operation of Applications. Context switch at rate of clock T0 Multi-Threading T1 T2 Quad Thread Concurrent RT RT RT RT T3 t 0 t 1 t 2 t 3 t 4 t 5 t 0 t 5 Imagination Technologies US Summit May 2015 7

Root Root Guest Guest H/W Thread Realtime secure operation in virtual environment Isolation Concurrent Multi-domain Execution Environment Zero overhead & real-time Concurrency Virtualization Virtualized Multi-Threading Multi-Threading RT RT RT RT RT RT Single Thread H/W VZ Context Switch RT RT RT T0 RT RT T1 T0 T1 T2 Quad Thread Concurrent t t 0 t 1 t 2 t 3 t 4 t 0 t 5 5 t 0 t 3 t 7 T2 Quad Thread RT RT T3 RT RT T3 Imagination Technologies US Summit May 2015 8

Root Root Guest Guest H/W Thread Realtime secure operation in virtual environment Automotive System Use case Navigation Linux Virtualization Lower Priority / Framerate RT RT RT Cluster Secure RT High Priority 60 FPS Multi-Threading RT RT Single Thread H/W VZ Context Switch Infotainment Linux/Android Medium Priority / Framerate RT RT RT T0 RT T1 T0 T1 T2 T3 Quad Thread ADAS Linux Variable Priority GPU Compute Concurrent t t 0 t 1 t 2 t 3 t 4 t 0 t 5 5 T2 Quad Thread RT RT T3 RT RT RT t 0 t 3 Imagination Technologies t7 US Summit May 2015 9

Resiliency, protection & services provisioning Home gateway use case Broadband Home Gateway Local Area Gaming LTE DSL Cable PON Baseline S/W (Routing, Switching, Networking) Wi-Fi (private hotspot) 100/1000Mbit Storage (SATA, USB3.0) Public Hotspot IoT Services Zigbee Bluetooth 802.11n/ac Home Energy Home Appliance Secure Domain Applications Secure Domain Applications Secure Domain Applications Home Security MIPS trusted hypervisor Secure Fabric (NoC) Memory Ensigma RPU/NPU Imagination Technologies US Summit May 2015 10

Summary Virtualization is indispensable to the future of embedded system design A virtualized environment offers flexible software management and integration 1. Hardware firewall-grade security 2. Scalability 3. Reliability OmniShield is the foundation of providing multiple Trusted Execution Domains MIPS Multi-Threading enables real-time operation of trusted functions w/ zero penalty Total cost of ownership is dramatically reduced OmniShield is the right technology for the secure digital world Imagination Technologies US Summit May 2015 11

Thank you! www.imgtec.com