Collecting packet traces at high speed
Date
2006Version
Acceso abierto / Sarbide irekia
Type
Contribución a congreso / Biltzarrerako ekarpena
Impact
|
nodoi-noplumx
|
Abstract
In order to capture packet traces at high speed using a
low-cost platform, we have to optimize the networking stack of a
general purpose operating system. Different techniques are
compared with the final objective of avoiding packet loss. Among
those techniques we will study the performance of NAPI [6] and
PF-RING [9]. Depending on the final application, we should tune
certain parameters accordin ...
[++]
In order to capture packet traces at high speed using a
low-cost platform, we have to optimize the networking stack of a
general purpose operating system. Different techniques are
compared with the final objective of avoiding packet loss. Among
those techniques we will study the performance of NAPI [6] and
PF-RING [9]. Depending on the final application, we should tune
certain parameters accordingly. We also present the advantages
of a multiprocessor platform and the problematic of storing full
packets directly to hard disk. [--]
Subject
Network monitoring,
Packet capture,
Interrupt coalescence,
Shared memory
Published in
Carle, G., Sloman, M., Paul, O. (Editeurs): Proceedings of first IEEE/IST Workshop on Monitoring, Attack Detection and Mitigation
Description
Trabajo presentado a IEEE / IST Workshop on Monitoring, Attack Detection and Mitigation (MonAM 2006), 28-29 de septiembre de 2006, Tubinga (Alemania)
Departament
Universidad Pública de Navarra. Departamento de Automática y Computación /
Nafarroako Unibertsitate Publikoa. Automatika eta Konputazioa Saila
Sponsorship
This work was supported by the Spanish Ministry of Education and Science
(Project PINTA TEC2004-06437-C05-03).