Skip to Main Content (Press Enter)

Logo CNR
  • ×
  • Home
  • Persone
  • Pubblicazioni
  • Strutture
  • Competenze

UNI-FIND
Logo CNR

|

UNI-FIND

cnr.it
  • ×
  • Home
  • Persone
  • Pubblicazioni
  • Strutture
  • Competenze
  1. Pubblicazioni

Monitoring Network Flows in Containerized Environments

Capitolo di libro
Data di Pubblicazione:
2022
Abstract:
With the progressive implementation of digital services over virtualized infrastructures and smart devices, the inspection of network traffic becomes more challenging than ever, because of the difficulty to run legacy cybersecurity tools in novel cloud models and comput- ing paradigms. The main issues concern i) the portability of the service across heterogeneous public and private infrastructures, that usually lack hardware and software acceleration for efficient packet processing, and ii) the difficulty to integrate monolithic appliances in modular and agile containerized environments. In this Chapter, we investigate the usage of the extended Berkeley Packet Filter (eBPF) for effective and efficient packet inspection in virtualized environments. Our preliminary implementation demonstrates that we can achieve the same performance as well-known packet inspection tools, but with far less resource consumption. This motivates further research work to extend the capability of our framework and to integrate it in Kubernetes.
Tipologia CRIS:
02.01 Contributo in volume (Capitolo o Saggio)
Keywords:
network flow monitoring; cloud computing; eBPF; cloud-native applications
Elenco autori:
Repetto, Matteo
Autori di Ateneo:
REPETTO MATTEO
Link alla scheda completa:
https://iris.cnr.it/handle/20.500.14243/444044
Titolo del libro:
Cybersecurity of Digital Service Chains: Challenges, Methodologies and Tools
  • Dati Generali

Dati Generali

URL

https://link.springer.com/chapter/10.1007/978-3-031-04036-8_2
  • Utilizzo dei cookie

Realizzato con VIVO | Designed by Cineca | 26.5.0.0 | Sorgente dati: PREPROD (Ribaltamento disabilitato)