Skip to Main Content (Press Enter)

Logo CNR
  • ×
  • Home
  • Persone
  • Pubblicazioni
  • Strutture
  • Competenze

UNI-FIND
Logo CNR

|

UNI-FIND

cnr.it
  • ×
  • Home
  • Persone
  • Pubblicazioni
  • Strutture
  • Competenze
  1. Pubblicazioni

Combining system visibility and security using eBPF

Contributo in Atti di convegno
Data di Pubblicazione:
2019
Abstract:
Network security is traditionally based on the analysis and dissection of network packets. The widespread use of data encryption and the increase of network traffic created many challenges in terms of visibility and performance, making security tools less effective and both hard to deploy and maintain as network size and speed increase. The advent of eBPF in modern Linux systems enables introspection and adds the ability to inject code in the kernel at specific tracepoints. This work leverages eBPF to combine system introspection with a novel system-level security policer that enables the creation of fine-grained security policies tailored for specific users, processes and containers. This is a major advance for network security applications that can benefit from system introspection to enrich information extracted from network packets, paving the way for the implementation of system- and network-aware security polices that combine visibility and security at a fraction of the computational cost of existing solutions.
Tipologia CRIS:
04.01 Contributo in Atti di convegno
Keywords:
Traffic Monitoring; Network Security; eBPF; Software Containers
Elenco autori:
Deri, Luca
Link alla scheda completa:
https://iris.cnr.it/handle/20.500.14243/419589
Pubblicato in:
CEUR WORKSHOP PROCEEDINGS
Series
  • Dati Generali

Dati Generali

URL

http://www.scopus.com/inward/record.url?eid=2-s2.0-85061368362&partnerID=q2rCbXpz
  • Utilizzo dei cookie

Realizzato con VIVO | Designed by Cineca | 26.5.0.0 | Sorgente dati: PREPROD (Ribaltamento disabilitato)