2022
DOI: 10.1016/j.jnca.2021.103283
|View full text |Cite
|
Sign up to set email alerts
|

Design and implementation of an intrusion detection system by using Extended BPF in the Linux kernel

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1
1
1

Citation Types

0
2
0
1

Year Published

2022
2022
2024
2024

Publication Types

Select...
6
2
1
1

Relationship

1
9

Authors

Journals

citations
Cited by 16 publications
(6 citation statements)
references
References 14 publications
0
2
0
1
Order By: Relevance
“…Recently, the authors in [22] used eBPF [23] in the Linux kernel to pre-drop the packets that need not be delivered to the Snort program for further checking, and achieved a speedup of 3 against the typical implementation of Snort under many evaluated cases. In that work, the authors evaluated the performance of their eBPF-based implementation of Snort on a server machine equipped with an 8-core 3.5 GHZ CPU.…”
Section: Discussionmentioning
confidence: 99%
“…Recently, the authors in [22] used eBPF [23] in the Linux kernel to pre-drop the packets that need not be delivered to the Snort program for further checking, and achieved a speedup of 3 against the typical implementation of Snort under many evaluated cases. In that work, the authors evaluated the performance of their eBPF-based implementation of Snort on a server machine equipped with an 8-core 3.5 GHZ CPU.…”
Section: Discussionmentioning
confidence: 99%
“…eBPF has been widely used to build fast and complex applications in several domains such as tactile [35], security [36], cloud computing [37] and network function virtualization [38]. In what follows, we limit our analysis to the limitations of the system and the relevant frameworks.…”
Section: Related Workmentioning
confidence: 99%
“…The paper [12] makes a suggestion for the design and implementation of an IDS that makes use of eBPF inside the Linux kernel. To begin, they suggested using a method based on eBPF to design and deploy IDS systems.…”
Section: Related Workmentioning
confidence: 99%