Популярное

Музыка Кино и Анимация Автомобили Животные Спорт Путешествия Игры Юмор

Интересные видео

2025 Сериалы Трейлеры Новости Как сделать Видеоуроки Diy своими руками

Топ запросов

смотреть а4 schoolboy runaway турецкий сериал смотреть мультфильмы эдисон
dTub
Скачать

LPC2018 - WireGuard: Next-Generation Secure Kernel Network Tunnel

Автор: Linux Plumbers Conference

Загружено: 2018-12-03

Просмотров: 17394

Описание:

url: https://linuxplumbersconf.org/event/2...
speaker: Jason Donenfeld


WireGuard [1] [2] is a new network tunneling mechanism written for
Linux, which, after three years of development, is nearly ready for
upstream. It uses a formally proven cryptographic protocol, custom
tailored for the Linux kernel, and has already seen very widespread
deployment, in everything from smart phones to massive data center
clusters. WireGuard uses a novel timer mechanism to hide state from
userspace, and in general presents userspace with a "stateless" and
"declarative" system of establishing secure tunnels. The codebase is
also remarkably small and has been written with a number of defense in
depth techniques. Integration into the larger Linux ecosystem is
advancing at a health rate, with recent patches for systemd and
NetworkManager merged. There is also ongoing work into combining
WireGuard with automatic configuration and mesh routing daemons on
Linux. This talk will focus on a wide variety of WireGuard’s innards
and tentacles onto other projects. The presentation will walk through
WireGuard's integration into the netdev subsystem, its unique use of
network namespaces, why kernel space is necessary is necessary, the
various hurdles that have gone into designing a cryptographic protocol
specifically with kernel constraints in mind. It will also examine a
practical approach to formal verification, suitable for kernel
engineers and not just academics, and connect the ideas of that with
our extensive continuous integration testing framework across multiple
kernel architectures and versions. As if that was not already enough,
we will also take a close look at the interesting performance aspects
of doing high throughput CPU-bound computations in kernel space while
still keeping latency to a minimum. On the topic of smartphones, the
talk will examine power efficiency techniques of both the
implementation and of the protocol design, our experience in
integrating this into Android kernels, and the relationship between
cryptographic secrets and smartphones suspend cycles. Finally we will
look carefully at the WireGuard userspace API and its usage in various
daemons and managers. In short, this presentation will examine the
networking and cryptography design, the kernel engineering, and the
userspace integration considerations of WireGuard.

[1] https://www.wireguard.com
[2] https://www.wireguard.com/papers/wire...

LPC2018 - WireGuard: Next-Generation Secure Kernel Network Tunnel

Поделиться в:

Доступные форматы для скачивания:

Скачать видео mp4

  • Информация по загрузке:

Скачать аудио mp3

Похожие видео

LPC2018 - What could be done in the kernel to make strace happy

LPC2018 - What could be done in the kernel to make strace happy

WireGuard: Next Generation Secure Network Tunnel

WireGuard: Next Generation Secure Network Tunnel

The Noise protocol framework| | Trevor Perrin | RWC 2018

The Noise protocol framework| | Trevor Perrin | RWC 2018

Wireguard, Jason A. Donenfeld, SSTIC 2018

Wireguard, Jason A. Donenfeld, SSTIC 2018

LISA21 — Производительность вычислений: на горизонте

LISA21 — Производительность вычислений: на горизонте

[2016] An Introduction to PCI Device Assignment with VFIO by Alex Williamson

[2016] An Introduction to PCI Device Assignment with VFIO by Alex Williamson

Run containers on bare metal already!

Run containers on bare metal already!

[CB16] WireGuard: Next Generation Abuse-Resistant Kernel Network Tunnelby Jason Donenfeld

[CB16] WireGuard: Next Generation Abuse-Resistant Kernel Network Tunnelby Jason Donenfeld

LinuxKit Security SIG: WireGuard Deep Dive

LinuxKit Security SIG: WireGuard Deep Dive

Velocity 2017: возможности анализа производительности с Linux eBPF

Velocity 2017: возможности анализа производительности с Linux eBPF

Акунин ошарашил прогнозом! Финал войны уже решён — Кремль скрывает правду

Акунин ошарашил прогнозом! Финал войны уже решён — Кремль скрывает правду

How to Speak

How to Speak

WireGuard and the Future of Cloud Networking - Alex Feiszli, Netmaker

WireGuard and the Future of Cloud Networking - Alex Feiszli, Netmaker

Real Time Security - eBPF for Preventing attacks - Liz Rice, Isovalent

Real Time Security - eBPF for Preventing attacks - Liz Rice, Isovalent

Чем ОПАСЕН МАХ? Разбор приложения специалистом по кибер безопасности

Чем ОПАСЕН МАХ? Разбор приложения специалистом по кибер безопасности

LPC2018 - A practical introduction to XDP

LPC2018 - A practical introduction to XDP

WireGuard: Next Generation Secure Kernel Network Tunnel Cutting edge crypto, shrewd kernel design, …

WireGuard: Next Generation Secure Kernel Network Tunnel Cutting edge crypto, shrewd kernel design, …

Как Ubuntu Предала Linux - Вся Правда о Взлёте и Падении Canonical

Как Ubuntu Предала Linux - Вся Правда о Взлёте и Падении Canonical

How to select SAS cables

How to select SAS cables

Как Tailscale упрощает управление Wireguard

Как Tailscale упрощает управление Wireguard

© 2025 dtub. Все права защищены.



  • Контакты
  • О нас
  • Политика конфиденциальности



Контакты для правообладателей: [email protected]