{"bundle_type":"pith_open_graph_bundle","bundle_version":"1.0","pith_number":"pith:2018:HP7Q7DT7XWAYHHTAEIZH5R6QZU","short_pith_number":"pith:HP7Q7DT7","canonical_record":{"source":{"id":"1802.00508","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.NI","submitted_at":"2018-02-01T22:11:50Z","cross_cats_sorted":["cs.CR"],"title_canon_sha256":"ca1bff10d62a5327c608fd6afeba643b82999b071b6c754806289cdadb8aee4a","abstract_canon_sha256":"945fd08f0fc366bb57c8a1480dd2af120b123aeb081b1706ad5eb9f92bb4e678"},"schema_version":"1.0"},"canonical_sha256":"3bff0f8e7fbd81839e6022327ec7d0cd1aa8bbbe95381c3ce7372332e6a4ad55","source":{"kind":"arxiv","id":"1802.00508","version":1},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1802.00508","created_at":"2026-05-18T00:24:33Z"},{"alias_kind":"arxiv_version","alias_value":"1802.00508v1","created_at":"2026-05-18T00:24:33Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1802.00508","created_at":"2026-05-18T00:24:33Z"},{"alias_kind":"pith_short_12","alias_value":"HP7Q7DT7XWAY","created_at":"2026-05-18T12:32:28Z"},{"alias_kind":"pith_short_16","alias_value":"HP7Q7DT7XWAYHHTA","created_at":"2026-05-18T12:32:28Z"},{"alias_kind":"pith_short_8","alias_value":"HP7Q7DT7","created_at":"2026-05-18T12:32:28Z"}],"events":[{"event_type":"record_created","subject_pith_number":"pith:2018:HP7Q7DT7XWAYHHTAEIZH5R6QZU","target":"record","payload":{"canonical_record":{"source":{"id":"1802.00508","kind":"arxiv","version":1},"metadata":{"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.NI","submitted_at":"2018-02-01T22:11:50Z","cross_cats_sorted":["cs.CR"],"title_canon_sha256":"ca1bff10d62a5327c608fd6afeba643b82999b071b6c754806289cdadb8aee4a","abstract_canon_sha256":"945fd08f0fc366bb57c8a1480dd2af120b123aeb081b1706ad5eb9f92bb4e678"},"schema_version":"1.0"},"canonical_sha256":"3bff0f8e7fbd81839e6022327ec7d0cd1aa8bbbe95381c3ce7372332e6a4ad55","receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-05-18T00:24:33.005177Z","signature_b64":"X+qF5IAMR7fUL+AAgg1bU1Gt2fruckeZ3tq9UmiGTUVOjdTl6vjIuI+7FlAy+wRSGVLaCfOXuP5k02zdB/jdAA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"3bff0f8e7fbd81839e6022327ec7d0cd1aa8bbbe95381c3ce7372332e6a4ad55","last_reissued_at":"2026-05-18T00:24:33.004774Z","signature_status":"signed_v1","first_computed_at":"2026-05-18T00:24:33.004774Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"source_kind":"arxiv","source_id":"1802.00508","source_version":1,"attestation_state":"computed"},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:24:33Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"34jJBGesC1UTFUxqo3IybCnZg1jwpDUb/MAOUpBQ2IyIE9qUPPRJhOiEkdLYezm0DLkHK26P5EcgXQhLJs56BQ==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-09T08:45:12.564035Z"},"content_sha256":"6a56c27fdb0b6f247b3376595ba3c0df6ebc65f90e0aa528c27123c6a41b6eec","schema_version":"1.0","event_id":"sha256:6a56c27fdb0b6f247b3376595ba3c0df6ebc65f90e0aa528c27123c6a41b6eec"},{"event_type":"graph_snapshot","subject_pith_number":"pith:2018:HP7Q7DT7XWAYHHTAEIZH5R6QZU","target":"graph","payload":{"graph_snapshot":{"paper":{"title":"Snort Intrusion Detection System with Intel Software Guard Extension (Intel SGX)","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","headline":"","cross_cats":["cs.CR"],"primary_cat":"cs.NI","authors_text":"Dmitrii Kuvaiskii, Mona Vij, Somnath Chakrabarti","submitted_at":"2018-02-01T22:11:50Z","abstract_excerpt":"Network Function Virtualization (NFV) promises the benefits of reduced infrastructure, personnel, and management costs by outsourcing network middleboxes to the public or private cloud. Unfortunately, running network functions in the cloud entails security challenges, especially for complex stateful services. In this paper, we describe our experiences with hardening the king of middleboxes - Intrusion Detection Systems (IDS) - using Intel Software Guard Extensions (Intel SGX) technology. Our IDS secured using Intel SGX, called SEC-IDS, is an unmodified Snort 3 with a DPDK network layer that ac"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1802.00508","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"verdict_id":null},"signer":{"signer_id":"pith.science","signer_type":"pith_registry","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"created_at":"2026-05-18T00:24:33Z","supersedes":[],"prev_event":null,"signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"1KEVFmpVKaOg6FBYK0A6BsBItaMU87bfBjc70V0G5gFY9SvXaMNQZbgPm4bawyILqM1yiHKJ4rLD2PE206KuCA==","signed_message":"open_graph_event_sha256_bytes","signed_at":"2026-06-09T08:45:12.564781Z"},"content_sha256":"c7b5d45b8e40194223d0fc0fd007a1a7857f4bb4894a1a635bea289718336b23","schema_version":"1.0","event_id":"sha256:c7b5d45b8e40194223d0fc0fd007a1a7857f4bb4894a1a635bea289718336b23"}],"timestamp_proofs":[],"mirror_hints":[{"mirror_type":"https","name":"Pith Resolver","base_url":"https://pith.science","bundle_url":"https://pith.science/pith/HP7Q7DT7XWAYHHTAEIZH5R6QZU/bundle.json","state_url":"https://pith.science/pith/HP7Q7DT7XWAYHHTAEIZH5R6QZU/state.json","well_known_bundle_url":"https://pith.science/.well-known/pith/HP7Q7DT7XWAYHHTAEIZH5R6QZU/bundle.json","status":"primary"}],"public_keys":[{"key_id":"pith-v1-2026-05","algorithm":"ed25519","format":"raw","public_key_b64":"stVStoiQhXFxp4s2pdzPNoqVNBMojDU/fJ2db5S3CbM=","public_key_hex":"b2d552b68890857171a78b36a5dccf368a953413288c353f7c9d9d6f94b709b3","fingerprint_sha256_b32_first128bits":"RVFV5Z2OI2J3ZUO7ERDEBCYNKS","fingerprint_sha256_hex":"8d4b5ee74e4693bcd1df2446408b0d54","rotates_at":null,"url":"https://pith.science/pith-signing-key.json","notes":"Pith uses this Ed25519 key to sign canonical record SHA-256 digests. Verify with: ed25519_verify(public_key, message=canonical_sha256_bytes, signature=base64decode(signature_b64))."}],"merge_version":"pith-open-graph-merge-v1","built_at":"2026-06-09T08:45:12Z","links":{"resolver":"https://pith.science/pith/HP7Q7DT7XWAYHHTAEIZH5R6QZU","bundle":"https://pith.science/pith/HP7Q7DT7XWAYHHTAEIZH5R6QZU/bundle.json","state":"https://pith.science/pith/HP7Q7DT7XWAYHHTAEIZH5R6QZU/state.json","well_known_bundle":"https://pith.science/.well-known/pith/HP7Q7DT7XWAYHHTAEIZH5R6QZU/bundle.json"},"state":{"state_type":"pith_open_graph_state","state_version":"1.0","pith_number":"pith:2018:HP7Q7DT7XWAYHHTAEIZH5R6QZU","merge_version":"pith-open-graph-merge-v1","event_count":2,"valid_event_count":2,"invalid_event_count":0,"equivocation_count":0,"current":{"canonical_record":{"metadata":{"abstract_canon_sha256":"945fd08f0fc366bb57c8a1480dd2af120b123aeb081b1706ad5eb9f92bb4e678","cross_cats_sorted":["cs.CR"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.NI","submitted_at":"2018-02-01T22:11:50Z","title_canon_sha256":"ca1bff10d62a5327c608fd6afeba643b82999b071b6c754806289cdadb8aee4a"},"schema_version":"1.0","source":{"id":"1802.00508","kind":"arxiv","version":1}},"source_aliases":[{"alias_kind":"arxiv","alias_value":"1802.00508","created_at":"2026-05-18T00:24:33Z"},{"alias_kind":"arxiv_version","alias_value":"1802.00508v1","created_at":"2026-05-18T00:24:33Z"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.1802.00508","created_at":"2026-05-18T00:24:33Z"},{"alias_kind":"pith_short_12","alias_value":"HP7Q7DT7XWAY","created_at":"2026-05-18T12:32:28Z"},{"alias_kind":"pith_short_16","alias_value":"HP7Q7DT7XWAYHHTA","created_at":"2026-05-18T12:32:28Z"},{"alias_kind":"pith_short_8","alias_value":"HP7Q7DT7","created_at":"2026-05-18T12:32:28Z"}],"graph_snapshots":[{"event_id":"sha256:c7b5d45b8e40194223d0fc0fd007a1a7857f4bb4894a1a635bea289718336b23","target":"graph","created_at":"2026-05-18T00:24:33Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"graph_snapshot":{"author_claims":{"count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","strong_count":0},"builder_version":"pith-number-builder-2026-05-17-v1","claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"paper":{"abstract_excerpt":"Network Function Virtualization (NFV) promises the benefits of reduced infrastructure, personnel, and management costs by outsourcing network middleboxes to the public or private cloud. Unfortunately, running network functions in the cloud entails security challenges, especially for complex stateful services. In this paper, we describe our experiences with hardening the king of middleboxes - Intrusion Detection Systems (IDS) - using Intel Software Guard Extensions (Intel SGX) technology. Our IDS secured using Intel SGX, called SEC-IDS, is an unmodified Snort 3 with a DPDK network layer that ac","authors_text":"Dmitrii Kuvaiskii, Mona Vij, Somnath Chakrabarti","cross_cats":["cs.CR"],"headline":"","license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.NI","submitted_at":"2018-02-01T22:11:50Z","title":"Snort Intrusion Detection System with Intel Software Guard Extension (Intel SGX)"},"references":{"count":0,"internal_anchors":0,"resolved_work":0,"sample":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"1802.00508","kind":"arxiv","version":1},"verdict":{"created_at":null,"id":null,"model_set":{},"one_line_summary":"","pipeline_version":null,"pith_extraction_headline":"","strongest_claim":"","weakest_assumption":""}},"verdict_id":null}}],"author_attestations":[],"timestamp_anchors":[],"storage_attestations":[],"citation_signatures":[],"replication_records":[],"corrections":[],"mirror_hints":[],"record_created":{"event_id":"sha256:6a56c27fdb0b6f247b3376595ba3c0df6ebc65f90e0aa528c27123c6a41b6eec","target":"record","created_at":"2026-05-18T00:24:33Z","signer":{"key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signer_id":"pith.science","signer_type":"pith_registry"},"payload":{"attestation_state":"computed","canonical_record":{"metadata":{"abstract_canon_sha256":"945fd08f0fc366bb57c8a1480dd2af120b123aeb081b1706ad5eb9f92bb4e678","cross_cats_sorted":["cs.CR"],"license":"http://arxiv.org/licenses/nonexclusive-distrib/1.0/","primary_cat":"cs.NI","submitted_at":"2018-02-01T22:11:50Z","title_canon_sha256":"ca1bff10d62a5327c608fd6afeba643b82999b071b6c754806289cdadb8aee4a"},"schema_version":"1.0","source":{"id":"1802.00508","kind":"arxiv","version":1}},"canonical_sha256":"3bff0f8e7fbd81839e6022327ec7d0cd1aa8bbbe95381c3ce7372332e6a4ad55","receipt":{"algorithm":"ed25519","builder_version":"pith-number-builder-2026-05-17-v1","canonical_sha256":"3bff0f8e7fbd81839e6022327ec7d0cd1aa8bbbe95381c3ce7372332e6a4ad55","first_computed_at":"2026-05-18T00:24:33.004774Z","key_id":"pith-v1-2026-05","kind":"pith_receipt","last_reissued_at":"2026-05-18T00:24:33.004774Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","receipt_version":"0.3","signature_b64":"X+qF5IAMR7fUL+AAgg1bU1Gt2fruckeZ3tq9UmiGTUVOjdTl6vjIuI+7FlAy+wRSGVLaCfOXuP5k02zdB/jdAA==","signature_status":"signed_v1","signed_at":"2026-05-18T00:24:33.005177Z","signed_message":"canonical_sha256_bytes"},"source_id":"1802.00508","source_kind":"arxiv","source_version":1}}},"equivocations":[],"invalid_events":[],"applied_event_ids":["sha256:6a56c27fdb0b6f247b3376595ba3c0df6ebc65f90e0aa528c27123c6a41b6eec","sha256:c7b5d45b8e40194223d0fc0fd007a1a7857f4bb4894a1a635bea289718336b23"],"state_sha256":"d47d8547cf43dd017881f448a786595e1bec50bba53fe10fd783e9ddee44d8c6"},"bundle_signature":{"signature_status":"signed_v1","algorithm":"ed25519","key_id":"pith-v1-2026-05","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54","signature_b64":"iFZ2DgyEjXRvQ8zlcDYkr1AtxUs77M9UQATWBbme9Gnb86tOeMumy/w0/7/bi3agyC4JISYc8dN+U9w4VEeXDQ==","signed_message":"bundle_sha256_bytes","signed_at":"2026-06-09T08:45:12.568642Z","bundle_sha256":"e5cc2f791fcd89e799793b13b4245cef04fb57ba4a0728bd72e4becb8bc9af09"}}