• español
    • English
  • Login
  • español 
    • español
    • English
  • Tipos de Publicaciones
    • bookbook partconference objectdoctoral thesisjournal articlemagazinemaster thesispatenttechnical documentationtechnical report
Ver ítem 
  •   IMDEA Networks Principal
  • Ver ítem
  •   IMDEA Networks Principal
  • Ver ítem
JavaScript is disabled for your browser. Some features of this site may not work without it.

Columnar Packet Traces for Scalable Encrypted-Internet Measurement

Compartir
Ficheros
pcaptoparquet.pdf (361.2Kb)
Identificadores
URI: https://hdl.handle.net/20.500.12761/2103
Metadatos
Mostrar el registro completo del ítem
Autor(es)
Rojo, Pablo; Ramirez Rondon, Juan Marcos; Mancuso, Vincenzo; Fernández Anta, Antonio
Fecha
2026-06
Resumen
Internet traffic volumes continue to grow while transport and application encryption increasingly limit payload visibility. However, modern transport protocols such as QUIC complicate traditional packet-trace analytics built around pcap (e.g., tshark-to-CSV), and row-oriented extraction increases the cost of repeated analysis. This paper makes repeated offline mea- surement practical by converting packet traces into a column- oriented representation that separates one-time parsing from downstream analytics. Concretely, we introduce an advanced benchmarked software implementation that converts pcap files to the column-oriented Apache parquet format. To the best of our knowledge, this is among the first end-to-end pipelines that (i) converts pcap/pcapng traces into parquet with a schema aimed at repeated offline measurement and (ii) is engineered around a convert-once, query-many workflow with measured end-to-end time-to-insight benefits. The pipeline leverages par- allel parsing to produce a columnar dataset that can be queried efficiently by standard analytics engines. We benchmark end- to-end time-to-insight and storage costs across representative workloads and diverse datasets. Our results show that after a one-time conversion, subsequent analyses can exploit column pruning and vectorized scans to reduce query time compared with re-parsing pcap or re-extracting row-oriented text formats, while maintaining storage costs competitive with compressed pcap and CSV baselines.
Compartir
Ficheros
pcaptoparquet.pdf (361.2Kb)
Identificadores
URI: https://hdl.handle.net/20.500.12761/2103
Metadatos
Mostrar el registro completo del ítem

Listar

Todo IMDEA NetworksPor fecha de publicaciónAutoresTítulosPalabras claveTipos de contenido

Mi cuenta

Acceder

Estadísticas

Ver Estadísticas de uso

Difusión

emailContacto person Directorio wifi Eduroam rss_feed Noticias
Iniciativa IMDEA Sobre IMDEA Networks Organización Memorias anuales Transparencia
Síguenos en:
Comunidad de Madrid

UNIÓN EUROPEA

Fondo Social Europeo

UNIÓN EUROPEA

Fondo Europeo de Desarrollo Regional

UNIÓN EUROPEA

Fondos Estructurales y de Inversión Europeos

© 2021 IMDEA Networks. | Declaración de accesibilidad | Política de Privacidad | Aviso legal | Política de Cookies - Valoramos su privacidad: ¡este sitio no utiliza cookies!