Affiliation:
1. Peng Cheng Laboratory Shenzhen Guangdong China
Abstract
AbstractCybersecurity events occur frequently. When it comes to investigating security threats, it is essential to offer a 100 percent accurate and packet‐level network history, which depends on packet capture with high precision packet timestamping. Many packet capture applications are developed based on data plane development kit (DPDK)—a set of libraries and drivers for fast packet processing. However, DPDK cannot give an accurate timestamp for every packet, and it is unable to truly reflect the order in which packets arrive at the network interface card. In addition, DPDK‐based applications cannot achieve zero packet loss when the packet is small such as 64 B for beyond 10 Gigabit Ethernet. Therefore, the authors proposed a new method based on Field‐Programmable Gate Array (FPGA) to solve this problem. The authors also develop a DPDK driver for FPGA devices to make the design compatible with all DPDK‐based applications. The proposed method performs timestamping at line‐rate for 10 Gigabit Ethernet traffic at 4 ns precision and 1 ns precision for 25 Gigabit, which greatly improves the accuracy of security incident retrospective analysis. Furthermore, the design can capture full‐size packets for any protocol with zero packet loss and can be applied to 40/100 Gigabit systems as well.
Funder
National Key Research and Development Program of China
Publisher
Institution of Engineering and Technology (IET)
Reference35 articles.
1. Data-Driven Cybersecurity Incident Prediction: A Survey
2. Cisco 2018 annual cybersecurity report.https://www.cisco.com/c/dam/m/hu_hu/campaigns/security‐hub/pdf/acr‐2018.pdfAccessed 1 May 2023
3. Challenges of managing and securing the network(2019).https://www2.endace.com/cmsn‐2019Accessed 1 May 2023
4. nCap: wire-speed packet capture and transmission
5. PacketShader
Cited by
1 articles.
订阅此论文施引文献
订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献
1. Meeting Latency and Jitter Demands of Beyond 5G Networking Era: Are CNFs Up to the Challenge?;2024 IEEE 48th Annual Computers, Software, and Applications Conference (COMPSAC);2024-07-02