Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

Linux Foundation

Tracing: The Bane of Security Folks - Understanding Kernel Tracing Techniques

Linux Foundation via YouTube

Overview

Explore the complex relationship between tracing and security in this 34-minute conference talk by Steven Rostedt from VMware Inc. Delve into the conflicting goals of tracing and security in the Linux kernel, examining how tracing aims to provide maximum information while security strives to conceal it. Learn about the tactics employed by tracing mechanisms, including live text modification and call redirection, which mirror techniques used by rootkits. Gain insights into the challenges of balancing tracing functionality with security concerns, and understand why security professionals must be well-versed in tracing methodologies. Discover topics such as isolation, lockdown, function tracing, and FTrace, concluding with a Q&A session to address audience inquiries.

Syllabus

Intro
What is your goal
Isolation
Lockdown
Conflicting agendas
Security folks must know tracing
Live kernel patching
Function Tracing
Peters
FTrace
FTrace Direct
Conclusion
Questions

Taught by

Linux Foundation

Reviews

Start your review of Tracing: The Bane of Security Folks - Understanding Kernel Tracing Techniques

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.