A Parallel Architecture for Stateful, High-Speed Intrusion Detection

被引:0
|
作者
Foschini, Luca [1 ]
Thapliyal, Ashish V. [1 ]
Cavallaro, Lorenzo [1 ]
Kruegel, Christopher [1 ]
Vigna, Giovanni [1 ]
机构
[1] Univ Calif Santa Barbara, Dept Comp Sci, Santa Barbara, CA 93106 USA
来源
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The increase in bandwidth over processing power has made stateful intrusion detection for high-speed networks snore difficult,, and, in certain cases, impossible. The problem of real-time stateful intrusion detection in high-speed networks cannot easily be solved by optimizing the packet; matching algorithm utilized by a, centralized process or by using custom-developed hardware. Instead, there is a need for a parallel approach that is able to decompose the problem into subproblems of manageable size. We present a novel parallel matching algorithm for the signature-based detection of network attacks. The algorithm is able to perform stateful signature matching and has been implemented only using off-the-shelf components. Our initial experiments confirm that, by making the rule snatching process parallel, it is possible to achieve a, scalable implementation of a stateful, network-based intrusion detection system.
引用
收藏
页码:203 / 220
页数:18
相关论文
共 50 条
  • [1] Stateful intrusion detection for high-speed networks
    Kruegel, C
    Valeur, F
    Vigna, G
    Kemmerer, R
    [J]. 2002 IEEE SYMPOSIUM ON SECURITY AND PRIVACY, PROCEEDINGS, 2002, : 285 - 293
  • [2] A stateful real time intrusion detection system for high-speed network
    Sourour, Meharouech
    Adel, Bouhoula
    Tarek, Abbes
    [J]. 21st International Conference on Advanced Networking and Applications, Proceedings, 2007, : 404 - 411
  • [3] A memory-efficient parallel string matching architecture for high-speed intrusion detection
    Lu, Hongbin
    Zheng, Kai
    Liu, Bin
    Zhang, Xin
    Liu, Yunhao
    [J]. IEEE JOURNAL ON SELECTED AREAS IN COMMUNICATIONS, 2006, 24 (10) : 1793 - 1804
  • [4] A parallel intrusion detection system for high-speed networks
    Lai, HG
    Cai, SW
    Huang, H
    Xie, JY
    Li, H
    [J]. APPLIED CRYPTOGRAPHY AND NETWORK SECURITY, PROCEEDINGS, 2004, 3089 : 439 - 451
  • [5] Smart architecture for high-speed intrusion detection and prevention systems
    Wu, Chih-Chiang
    Wen, Sung-Hua
    Huang, Nen-Fu
    [J]. CRYPTOLOGY AND NETWORK SECURITY, PROCEEDINGS, 2006, 4301 : 318 - 328
  • [6] Intrusion detection system for high-speed network
    Yang, W
    Fang, BX
    Liu, B
    Zhang, HL
    [J]. COMPUTER COMMUNICATIONS, 2004, 27 (13) : 1288 - 1294
  • [7] Efficient Intrusion Detection for High-speed Networks
    Ma, Gaolong
    Tang, Wen
    [J]. INFORMATION TECHNOLOGY APPLICATIONS IN INDUSTRY, PTS 1-4, 2013, 263-266 : 2915 - 2919
  • [8] Intrusion detection and simulation for high-speed networks
    Yu, F
    Dai, XP
    Shen, Y
    Huang, H
    Zhu, ML
    [J]. 2005 INTERNATIONAL CONFERENCE ON SERVICES SYSTEMS AND SERVICES MANAGEMENT, VOLS 1 AND 2, PROCEEDINGS, 2005, : 835 - 840
  • [9] A high-speed parallel architecture for stereo matching
    Park, Sungchan
    Jeong, Hong
    [J]. ADVANCES IN VISUAL COMPUTING, PT 1, 2006, 4291 : 334 - +
  • [10] Efficient Memristor-Based Architecture for Intrusion Detection and High-Speed Packet Classification
    Bontupalli, Venkataramesh
    Yakopcic, Chris
    Hasan, Raqibul
    Taha, Tarek M.
    [J]. ACM JOURNAL ON EMERGING TECHNOLOGIES IN COMPUTING SYSTEMS, 2018, 14 (04)