LWN.net Logo

TCP connection hijacking and parasites - as a good thing

TCP connection hijacking and parasites - as a good thing

Posted Aug 11, 2011 22:27 UTC (Thu) by bronson (subscriber, #4806)
In reply to: TCP connection hijacking and parasites - as a good thing by Cyberax
Parent article: TCP connection hijacking and parasites - as a good thing

cipsuite looks impressive! Wish I'd had it back in my embedded days.

Agreed, the article's technique not the best way of doing it. /proc/pid/fd-pickle seems like it would be somewhat high maint and prone to racing... Is it possible to extract the fd info and other kernel state after the process is frozen?

(asking as someone who has never actually checkpointed a process...)


(Log in to post comments)

TCP connection hijacking and parasites - as a good thing

Posted Aug 11, 2011 22:52 UTC (Thu) by Cyberax (✭ supporter ✭, #52523) [Link]

It shouldn't be hard, actually I'm thinking of implementing it myself.

Race conditions would be a problem, but:
1) Checkpoint/restart is inherently racy. Network packets might got lost, connections can time out during migration, etc.
2) It can be mitigated somewhat by providing kernel-level support for freezing.

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds