xPF: Packet Filtering for Low-Cost Network Monitoring

نویسندگان

  • S. Ioannidis
  • K. G. Anagnostakis
  • J. Ioannidis
  • A. D. Keromytis
چکیده

The ever-increasing complexity in network infrastructures is making critical the demand for network monitoring tools. While the majority of network operators rely on low-cost open-source tools based on commodity hardware and operating systems, the increasing link speeds and complexity of network monitoring applications have revealed inefficiencies in the existing software organization, which may prohibit the use of such tools in high-speed networks. Although several new architectures have been proposed to address these problems, they require significant effort in re-engineering the existing body of applications. In this paper we present an alternative approach that addresses the primary sources of inefficiency without significantly altering the software structure. Specifically, we enhance the computational model of the Berkeley Packet Filter (BPF) to move much of the processing associated with monitoring into the kernel, thereby removing the overhead associated with context switching between kernel and applications. The resulting packet filter, called xPF, allows new tools to be more efficiently implemented and existing tools to be easily optimized for high-speed networks. We present the design and implementation of xPF as well as several example applications that demonstrate the efficiency of our approach.

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Low-cost Vector Network Analyzer for Biomedical Applications

A low-cost and portable vector network analyzer (VNA) which covered operating frequency between 1MHz to 3GHz is used for vector reflection coefficient and standing wave ratio (swr) of the various microstrip antennas. This paper presents measurements of various ultra wideband (uwb) microstrip antennas for applications in biomedical field. Selection of antenna is an important key for detection of...

متن کامل

The Feedback Based Mechanism for Video Streaming Over Multipath Ad Hoc Networks

Ad hoc networks are multi-hop wireless networks without a pre-installed infrastructure. Such networks are widely used in military applications and in emergency situations as they permit the establishment of a communication network at very short notice with a very low cost. Video is very sensitive for packet loss and wireless ad-hoc networks are error prone due to node mobility and weak links. H...

متن کامل

Packet Sniffing for Automated Chat Room Monitoring and Evidence Preservation

Packet sniffers are designed to intercept network traffic in shared communication channels. This is accomplished by re-configuring network interface cards to permit device drivers to process all network traffic, including packets that are not addressed to the host computer. Packet sniffing is primarily used in intrusion detection, network management, wiretapping and hacking. This paper describe...

متن کامل

New High Secure Network Steganography Method Based on Packet Length

In network steganography methods based on packet length, the length of the packets is used as a carrier for exchanging secret messages. Existing methods in this area are vulnerable against detections due to abnormal network traffic behaviors. The main goal of this paper is to propose a method which has great resistance to network traffic detections. In the first proposed method, the sender embe...

متن کامل

THE STUDY OF PACKET LOSS EFFECT ON NETWORK CONTROL SYSTEM ERROR FUNCTION MODEL

Modern control systems widely use network to decrease the implementation cost and also increase the performance. Although they have several advantages, they suffer from some limitations and deficiencies. Packet loss is one of the main limitations which affect the control system in different conditions and finally can lead to system instability. To prevent such problems it is important to model ...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2002