2022
DOI: 10.1109/access.2022.3202644
|View full text |Cite
|
Sign up to set email alerts
|

A Control Plane Enabling Automated and Fully Adaptive Network Traffic Monitoring With eBPF

Abstract: The extended Berkeley Packet Filter (eBPF) enables the dynamic injection of user-defined processing logic at run-time in the Linux networking stack without disrupting any active monitoring process. This enables the selective extraction of only the traffic features that are needed in a given instant of time, which is what we define fully adaptive network traffic monitoring. However, eBPF programs require adhoc control plane routines for each specific scenario in order to orchestrate the underlying data plane an… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1

Citation Types

0
3
0

Year Published

2023
2023
2024
2024

Publication Types

Select...
3
1

Relationship

1
3

Authors

Journals

citations
Cited by 4 publications
(3 citation statements)
references
References 32 publications
0
3
0
Order By: Relevance
“…In short, our eBPF solution complements and expands the scope of the works published in [27] and [28] to modern Telco infrastructures running on cloud-native platforms. Our focus is on the application of the eBPF technology, for observability/monitoring, security, and energy, specifically to the latest generation of mobile communication networks deployed on In the high-level logical diagram illustrated in Figure 16, the daemonset (ds) agent, i.e., the Sauron Agent, is deployed on each node in the cluster.…”
Section: ) Ebpf Solutions For Network Observabilitymentioning
confidence: 70%
See 1 more Smart Citation
“…In short, our eBPF solution complements and expands the scope of the works published in [27] and [28] to modern Telco infrastructures running on cloud-native platforms. Our focus is on the application of the eBPF technology, for observability/monitoring, security, and energy, specifically to the latest generation of mobile communication networks deployed on In the high-level logical diagram illustrated in Figure 16, the daemonset (ds) agent, i.e., the Sauron Agent, is deployed on each node in the cluster.…”
Section: ) Ebpf Solutions For Network Observabilitymentioning
confidence: 70%
“…Furthermore, the ideas presented in this paper meet the requirement for fully adaptive and programmable network monitoring. Drawing from similar approaches as described in [28], we propose a highly programmable eBPF solution that allows for efficient, dynamic, and granular monitoring pipelines (i.e., data collection mechanisms) with minimal overhead or impact for Telco networks.…”
Section: ) Ebpf Solutions For Network Observabilitymentioning
confidence: 99%
“…It is used to safely and efficiently extend the capabilities of the kernel without requiring to change kernel source code or load kernel modules [9]. Nowadays witnesses the widespread use of eBPF technology in networking [2,[10][11][12][13], observability [14][15][16][17][18], security, etc., due to its security, flexibility, and low overhead. XDP (eXpress Data Path) is a kind of eBPF program, which enables high-performance programmable access to networking packets before they enter the networking stack.…”
Section: Xdp-based Low-overhead Co-design For the Smartnic Traffic Mo...mentioning
confidence: 99%