‹ BackHN Continuity

Thread

Making Tailscale Faster

250 points · 112 comments · yarapavan

  1. apenwarr · · focus · HN ↗
    (Tailscale cofounder) I see a few comments here that using kernel wireguard would make it faster; it’s not really that simple. In fact, for a while (and we wrote a blog post about it), our optimizations made wireguard-go faster than kernel wireguard because it was better optimized. They adopted some of those improvements and now we’re on to the next order of magnitude together.

    For really high bandwidth cases, things like DPDK are the long term best choice and are primarily userspace, for good reasons. Kernel mode is not the pure benefit it once was (if it ever was).

    Separately, wireguard itself has a problem that the crypto suite it uses is not supported by hardware accelerators. So if we want to get into the hundreds of gigabits range, we will possibly need to switch packet formats entirely. (But, wireguard also needs to update to support post-quantum so maybe they’ll fix both problems at the same time and we can join in.)

    1. ignoramous · · focus · HN ↗
      > wireguard itself has a problem that the crypto suite it uses is not supported by hardware accelerators. So if we want to get into the hundreds of gigabits range, we will possibly need to switch packet formats entirely

      Has hardware-offload (for AES et al) got faster still, or that keeping CPU busy in the data path for 100gbps workloads is not ideal, or something else? The WireGuard website claims ChaPoly is at least as fast as hardware-accelerated AES. And that it can be further sped up with SIMD.

      <a href="https:&#x2F;&#x2F;www.wireguard.com&#x2F;known-limitations" rel="nofollow">https:&#x2F;&#x2F;www.wireguard.com&#x2F;known-limitations

      &gt; now we’re on to the next order of magnitude together

      Curious: Is this work currently in progress? If so, what&#x27;s more that&#x27;s still lined up? The previous GRO&#x2F;GSO(&#x2F;LRO, too?) improvements were incredibly impressive (even to u&#x2F;majke, <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=35567268">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=35567268).

      Thanks.

      1. mxey · · focus · HN ↗
        &gt; The WireGuard website claims ChaPoly is at least as fast as hardware-accelerated AES.

        I haven’t used WireGuard but I have easily doubled OpenSSH performance by switching back to AES.

Open on Hacker News to reply ↗

Unofficial Hacker News client; not affiliated with Y Combinator.