【24h】

A FPGA-based deep packet inspection engine for Network Intrusion Detection System

机译:基于FPGA的网络入侵检测系统深度包检查引擎

获取原文
获取原文并翻译 | 示例

摘要

Pattern matching has became a bottleneck of software based Network Intrusion Detection System (NIDS) as the number of signature have recently increased dramatically. Many FPGA-based architectures for detecting malicious patterns have been proposed recently. However, these approaches have just considered matching pattern separately while more and more complex combination of several patterns are utilized to describe intrusion activities. In this paper we present our work which concentrates on multi-pattern signature and propose a FPGA-based deep packet inspection engine for NIDS. The system can support both static and dynamic patterns. We employ Snort signature set and realize our system on NetFPGA platform. The evaluation on real network environment shows that our system can maintain gigabit line rate throughput without dropping packets.
机译:随着签名数量的急剧增长,模式匹配已成为基于软件的网络入侵检测系统(NIDS)的瓶颈。最近已经提出了许多用于检测恶意模式的基于FPGA的体系结构。但是,这些方法只是单独考虑了匹配模式,而越来越多的几种模式组合被用来描述入侵活动。在本文中,我们介绍了我们专注于多模式签名的工作,并提出了基于FPGA的NIDS深度数据包检查引擎。该系统可以支持静态和动态模式。我们使用Snort签名集并在NetFPGA平台上实现我们的系统。对真实网络环境的评估表明,我们的系统可以保持千兆线速吞吐量,而不会丢包。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号