Packet Scheduling with Optional Client Privacy
Andrew Beams, Sampath Kannan, Sebastian Angel
Abstract
Existing network switches implement scheduling disciplines such as FIFO or deficit round robin that provide good utilization or fairness across flows, but do so at the expense of leaking a variety of information via timing side channels. To address this privacy breach, we propose a new scheduling mechanism for switches called indifferent-first scheduling (IFS). A salient aspect of IFS is that it provides privacy (a notion of strong isolation) to clients that opt-in, while preserving the (good) performance and utilization of FIFO or round robin for clients that are satisfied with the status quo. Such a hybrid scheduling mechanism addresses the main drawback of prior proposals such as time-division multiple access (TDMA) that provide strong isolation at the cost of low utilization and increased packet latency for all clients. We identify limitations of modern programmable switches which inhibit an implementation of IFS without compromising its privacy guarantees, and show that a version of IFS with full security can be implemented at line rate in the recently proposed push-in-first-out (PIFO) queuing architecture.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Cited by top-tier papers2
- NetShaper: A Differentially Private Network Side-Channel Mitigation SystemAmir Sabzi, Rut Vora, Swati Goswami, Margo I. Seltzer et al.USENIX Security 2024 · 7 citations
- Pacer: Comprehensive Network Side-Channel Mitigation in the CloudAastha Mehta, Mohamed Alzayat, Roberta De Viti, Björn B. Brandenburg et al.USENIX Security 2022
Builds on5
- Port Contention for Fun and ProfitAlejandro Cabrera Aldaya, Billy Bob Brumley, Sohaib ul Hassan, Cesar Pereida García et al.S&P 2019 · 240 citations
- SP-PIFO: Approximating Push-In First-Out Behaviors using Strict-Priority QueuesAlbert Gran Alcoz, Alexander Dietmüller, Laurent VanbeverNSDI 2020 · 140 citations
- TEA: Enabling State-Intensive Network Functions on Programmable SwitchesDaehyeok Kim, Zaoxing Liu, Yibo Zhu, Changhoon Kim et al.SIGCOMM 2020 · 121 citations
- Programmable packet scheduling with a single queueZhuolong Yu, Chuheng Hu, Jingfeng Wu, Xiao Sun et al.SIGCOMM 2021 · 100 citations
- Private resource allocators and their applicationsSebastian Angel, Sampath Kannan, Zachary B. RatliffS&P 2020 · 15 citations
Related papers
- Everything Matters in Programmable Packet SchedulingAlbert Gran Alcoz, Balázs Vass, Pooria Namyar, Behnaz Arzani et al.NSDI 2025
- Lark: A Buffer-aware Building Block for Programmable Packet Scheduling in DatacentersSong Zhang, Wenxin Li, Yulong Li, Yuan Liu et al.INFOCOM 2025
- vPIFO: Virtualized Packet Scheduler for Programmable Hierarchical Scheduling in High-Speed NetworksZhiyu Zhang, Shili Chen, Ruyi Yao, Ruoshi Sun et al.SIGCOMM 2024 · 11 citations
- O-TSN: Enabling Oblivious Traffic Switch for Time-Sensitive NetworkingBo Zhang, Helei Cui, Cong Wang, Xingliang Yuan et al.INFOCOM 2026
- Managing Congestion Control Heterogeneity on the Internet with Approximate Performance IsolationAyush Mishra, Archit Bhatnagar, Yixuan Zhang, Ben Leong et al.NSDI 2026
