A Parallel Architecture for Stateful, High-Speed Intrusion Detection

被引:0
|
作者
Foschini, Luca [1 ]
Thapliyal, Ashish V. [1 ]
Cavallaro, Lorenzo [1 ]
Kruegel, Christopher [1 ]
Vigna, Giovanni [1 ]
机构
[1] Univ Calif Santa Barbara, Dept Comp Sci, Santa Barbara, CA 93106 USA
来源
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The increase in bandwidth over processing power has made stateful intrusion detection for high-speed networks snore difficult,, and, in certain cases, impossible. The problem of real-time stateful intrusion detection in high-speed networks cannot easily be solved by optimizing the packet; matching algorithm utilized by a, centralized process or by using custom-developed hardware. Instead, there is a need for a parallel approach that is able to decompose the problem into subproblems of manageable size. We present a novel parallel matching algorithm for the signature-based detection of network attacks. The algorithm is able to perform stateful signature matching and has been implemented only using off-the-shelf components. Our initial experiments confirm that, by making the rule snatching process parallel, it is possible to achieve a, scalable implementation of a stateful, network-based intrusion detection system.
引用
收藏
页码:203 / 220
页数:18
相关论文
共 50 条
  • [1] Stateful intrusion detection for high-speed networks
    Kruegel, C
    Valeur, F
    Vigna, G
    Kemmerer, R
    2002 IEEE SYMPOSIUM ON SECURITY AND PRIVACY, PROCEEDINGS, 2002, : 285 - 293
  • [2] A stateful real time intrusion detection system for high-speed network
    Sourour, Meharouech
    Adel, Bouhoula
    Tarek, Abbes
    21st International Conference on Advanced Networking and Applications, Proceedings, 2007, : 404 - 411
  • [3] Architecture of intrusion detection for high-speed networks
    Chen, Xun-Xun
    Fang, Bin-Xing
    Li, Lei
    Jisuanji Yanjiu yu Fazhan/Computer Research and Development, 2004, 41 (09): : 1481 - 1487
  • [4] A memory-efficient parallel string matching architecture for high-speed intrusion detection
    Lu, Hongbin
    Zheng, Kai
    Liu, Bin
    Zhang, Xin
    Liu, Yunhao
    IEEE JOURNAL ON SELECTED AREAS IN COMMUNICATIONS, 2006, 24 (10) : 1793 - 1804
  • [5] A parallel intrusion detection system for high-speed networks
    Lai, HG
    Cai, SW
    Huang, H
    Xie, JY
    Li, H
    APPLIED CRYPTOGRAPHY AND NETWORK SECURITY, PROCEEDINGS, 2004, 3089 : 439 - 451
  • [6] Smart architecture for high-speed intrusion detection and prevention systems
    Wu, Chih-Chiang
    Wen, Sung-Hua
    Huang, Nen-Fu
    CRYPTOLOGY AND NETWORK SECURITY, PROCEEDINGS, 2006, 4301 : 318 - 328
  • [7] Intrusion detection system for high-speed network
    Yang, W
    Fang, BX
    Liu, B
    Zhang, HL
    COMPUTER COMMUNICATIONS, 2004, 27 (13) : 1288 - 1294
  • [8] Efficient Intrusion Detection for High-speed Networks
    Ma, Gaolong
    Tang, Wen
    INFORMATION TECHNOLOGY APPLICATIONS IN INDUSTRY, PTS 1-4, 2013, 263-266 : 2915 - 2919
  • [9] Intrusion detection and simulation for high-speed networks
    Yu, F
    Dai, XP
    Shen, Y
    Huang, H
    Zhu, ML
    2005 INTERNATIONAL CONFERENCE ON SERVICES SYSTEMS AND SERVICES MANAGEMENT, VOLS 1 AND 2, PROCEEDINGS, 2005, : 835 - 840
  • [10] A high-speed parallel architecture for stereo matching
    Park, Sungchan
    Jeong, Hong
    ADVANCES IN VISUAL COMPUTING, PT 1, 2006, 4291 : 334 - +