HAProxy is a well known high performance TCP/HTTP load balancer used as a front end to applications by many very-large sites. Often HAProxy is stationed at the frontiers of the wild wild ^Wwest internet in the defense against DDOS - and at the heart of the storm sits PacketShield. PacketShield is built using NDIV. NDIV has been deployed very effectively todate and handles the intended line-rate 10Gbps processing under a variety of hostile real-world DDOS attacks.
Willy Tarreau and Emeric Brun have been contemplating migrating NDIV to use XDP. In this talk they will describe what NDIV does well and what is currently lacking with XDP to make it convincing to make the jump. More details: https://www.netdevconf.org/0x12/session.html?challenges-migrating-from-ndiv-...
Reminder: Early bird registration expires on June 1st.
cheers, jamal