首页> 外文OA文献 >FPGA based CAM architecture string matching for network intrusion detection
【2h】

FPGA based CAM architecture string matching for network intrusion detection

机译:基于FPGA的CAM架构字符串匹配用于网络入侵检测

摘要

String matching for network processing is the method of analyzing if a particular pattern or signature is observed in the received packet or data. Executing string matching with software approaches could not meet multi-giga bandwidth specifications and very time consuming. A hardware string matching able to speed up the string matching process significantly. The focus of this project is to present hardware CAMs (Content Addressable Memories) based string matching to perform pattern searching process for network intrusion detection (NIDS) applications on Field Programmable Gate Array (FPGA). The hardware pattern matching system is designed and developed in Verilog RTL language targeting the Altera Stratix-III FPGA. The developed string matching system is simulated with Snort NIDS ruleset. Its results are evaluated in terms of the string matching delay and resource utilization. The algorithm is compatible to support flexible signature length and different number of signature sets requirements. The CAM based string matching architecture can be extended to support parallel signatures searching and approximate string matching.
机译:用于网络处理的字符串匹配是一种分析在接收到的数据包或数据中是否观察到特定模式或签名的方法。用软件方法执行字符串匹配不能满足千兆带宽的规范,并且非常耗时。硬件字符串匹配能够显着加快字符串匹配过程。该项目的重点是提出基于硬件CAM(内容可寻址内存)的字符串匹配,以在现场可编程门阵列(FPGA)上为网络入侵检测(NIDS)应用程序执行模式搜索过程。硬件模式匹配系统以Verilog RTL语言设计和开发,针对Altera Stratix-III FPGA。使用Snort NIDS规则集对开发的字符串匹配系统进行了仿真。根据字符串匹配延迟和资源利用率评估其结果。该算法兼容以支持灵活的签名长度和不同数量的签名集要求。基于CAM的字符串匹配体系结构可以扩展为支持并行签名搜索和近似字符串匹配。

著录项

  • 作者

    Gan Chong Gim;

  • 作者单位
  • 年度 2012
  • 总页数
  • 原文格式 PDF
  • 正文语种 {"code":"en","name":"English","id":9}
  • 中图分类

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号