Elastic Deep Packet Inspection

被引:0
|
作者
Watson, Bruce W. [1 ]
机构
[1] Univ Stellenbosch, Dept Informat Sci, ZA-7600 Stellenbosch, South Africa
关键词
deep packet inspection (DPI); speed/memory performance; incremental defense;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Deep packet inspection (DPI) systems are required to perform at or near network line-rate speeds, matching thousands of rules against the network traffic. The engineering performance and price trade-offs are such that DPI is difficult to virtualize, either because of very high memory consumption or the use of custom hardware; similarly, a running DPI instance is difficult to 'move' cheaply to another part of the network. Algorithmic constraints make it costly to update the set of rules, even with minor edits. In this paper, we present Elastic DPI. Thanks to new algorithms and data-structures, all of these performance and flexibility constraints can be overcome - an important development in an increasingly virtualized network environment. The ability to incrementally update rule sets is also a potentially interesting use-case in next generation firewall appliances that rapidly update their rule sets.
引用
收藏
页码:241 / 253
页数:13
相关论文
共 50 条
  • [11] Solutions for Deep Packet Inspection in Industrial Communications
    Zamfir, S.
    Balan, T.
    Sandu, F.
    Costache, C.
    [J]. 2016 INTERNATIONAL CONFERENCE ON COMMUNICATIONS (COMM 2016), 2016, : 153 - 158
  • [12] Using string matching for deep packet inspection
    Lin, Po-Ching
    Lin, Ying-Dar
    Lee, Tsern-Huei
    Lai, Yuan-Cheng
    [J]. COMPUTER, 2008, 41 (04) : 23 - +
  • [13] A Workload for Evaluating Deep Packet Inspection Architectures
    Becchi, Michela
    Franklin, Mark
    Crowley, Patrick
    [J]. 2008 IEEE INTERNATIONAL SYMPOSIUM ON WORKLOAD CHARACTERIZATION, 2008, : 73 - 83
  • [14] Deep Packet Inspection Using Quotient Filter
    Al-hisnawi, Mohammad
    Ahmadi, Mahmood
    [J]. IEEE COMMUNICATIONS LETTERS, 2016, 20 (11) : 2217 - 2220
  • [15] A Sophisticated Packet Forwarding Scheme with Deep Packet Inspection in an OpenFlow Switch
    Cho, ChoongHee
    Lee, JungBok
    Kim, Eun-Do
    Ryoo, Jeong-dong
    [J]. 2016 INTERNATIONAL CONFERENCE ON SOFTWARE NETWORKING (ICSN), 2016, : 1 - 5
  • [16] Network Packet Filtering and Deep Packet Inspection Hybrid Mechanism for IDS Early Packet Matching
    Trabelsi, Zouheir
    Zeidan, Safaa
    Masud, Mohammad M.
    [J]. IEEE 30TH INTERNATIONAL CONFERENCE ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS IEEE AINA 2016, 2016, : 808 - 815
  • [17] Performance Improvement of Deep Packet Inspection for Intrusion Detection
    Parvat, Thaksen J.
    Chandra, Pravin
    [J]. 2014 IEEE GLOBAL CONFERENCE ON WIRELESS COMPUTING AND NETWORKING (GCWCN), 2014, : 224 - 228
  • [18] Deep packet inspection using parallel bloom filters
    Dharmapurikar, S
    Krishnamurthy, P
    Sproull, TS
    Lockwood, JW
    [J]. IEEE MICRO, 2004, 24 (01) : 52 - 61
  • [19] Improved deep packet inspection in data stream detection
    Yin, Chunyong
    Wang, Hongyi
    Yin, Xiang
    Sun, Ruxia
    Wang, Jin
    [J]. JOURNAL OF SUPERCOMPUTING, 2019, 75 (08): : 4295 - 4308
  • [20] Using Deep Packet Inspection in Cyber Traffic Analysis
    Deri, Luca
    Fusco, Francesco
    [J]. PROCEEDINGS OF THE 2021 IEEE INTERNATIONAL CONFERENCE ON CYBER SECURITY AND RESILIENCE (IEEE CSR), 2021, : 89 - 94