Global ETD Search
Search theses and dissertations gathered from participating repositories worldwide. Every result links back to the library that holds it. No account is needed.
Results
Showing 1 to 10 of 10 for “"eBPF"”.
-
Re-thinking termination guarantee of eBPF
… is becoming critical. We also find that eBPF's termination guarantee is insufficient to protect systems from BPF programs running extraordinarily long due to compute-heavy operations and runtime factors such as contention. Operators lack a crucial mechanism to identify and avoid …
-
On the implications of unsafe eBPF composition
… ough testing to ensure complete safety. The eBPF subsystem in the Linux kernel addresses this challenge by allowing applications to enhance the kernel's capabilities at runtime, while ensuring stability and security. This guaranteed safety is facilitated by the verifier engine, which …
-
Preventing Unintended Data Access: Information Flow Control in eBPF
The extended Berkeley Packet Filter (eBPF) technology has become widely adopted by enterprises due to its flexibility and ability to enhance tracing, observability, monitoring, and security within the kernel. However, since the kernel is a critical resource containing sensitive information, eBPF …
-
eMicro: Real-Time Multi-Hop Access Control for Microservices with eBPF
… lookups and compact label propagation; (3) eBPF-based in-kernel request tracing for transparent, low-overhead enforcement without code changes. Evaluations on DeathStarBench and production cloud traces from Uber, Alibaba, and ByteDance, covering 12 million request workflows and thousands of …
-
Exploring eBPF Capabilities with Hardware Acceleration on FPGAs for High-Performance Networking
… interfaces to facilitate the execution of eBPF/XDP—the de facto standard for Linux kernel programming—and similar networking code directly on an FPGA in a seamless and flexible way. The primary objective is to design a unified programming model that simplifies the deployment of …
-
A methodology for using eBPF to efficiently monitor network behavior in Linux Kubernetes clusters
… level. The extended Berkeley Packet Filter (eBPF) can enable high performance and low overhead collection for platform level monitoring. Existing commercial eBPF monitoring systems are often tightly integrated systems with large dependencies and little flexibility in integration into …
-
EKFuzz: Fuzzing the BPF subsystem
The extended Berkeley Packet Filter (eBPF) framework has revolutionized the way developers interact with the Linux kernel by enabling safe, dynamic programmability. However, this flexibility comes at a cost. The new kernel functions (kfuncs) exposed to eBPF programs are rapidly proliferating, often …
-
Towards Zero Trust Network Security via Programmable Data Planes
… P4Control leverages programmable switches and eBPF to correlate intra-host and inter-host activities to detect attackers that aim to laterally move in the network to evade existing defenses. Second, we leverage such hardware-software co-design to enable in-network fine-grained continuous …
-
Unsafe Nesting in BPF Programs
Safe kernel extensions are crucial for adding features like networking filters, security policies, and monitoring capabilities that organizations require in production environments. The Linux kernel traditionally lacked mechanisms for safe runtime extensions. BPF addressed this problem by enabling …
-
Orchestrating Edge Computing Services with Efficient Data Planes
L'abstract è presente nell'allegato / the abstract is in the attachment