A Parallel Architecture for Stateful, High-Speed Intrusion Detection

被引:0
|
作者
Foschini, Luca [1 ]
Thapliyal, Ashish V. [1 ]
Cavallaro, Lorenzo [1 ]
Kruegel, Christopher [1 ]
Vigna, Giovanni [1 ]
机构
[1] Univ Calif Santa Barbara, Dept Comp Sci, Santa Barbara, CA 93106 USA
来源
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The increase in bandwidth over processing power has made stateful intrusion detection for high-speed networks snore difficult,, and, in certain cases, impossible. The problem of real-time stateful intrusion detection in high-speed networks cannot easily be solved by optimizing the packet; matching algorithm utilized by a, centralized process or by using custom-developed hardware. Instead, there is a need for a parallel approach that is able to decompose the problem into subproblems of manageable size. We present a novel parallel matching algorithm for the signature-based detection of network attacks. The algorithm is able to perform stateful signature matching and has been implemented only using off-the-shelf components. Our initial experiments confirm that, by making the rule snatching process parallel, it is possible to achieve a, scalable implementation of a stateful, network-based intrusion detection system.
引用
收藏
页码:203 / 220
页数:18
相关论文
共 50 条
  • [21] High-performance stateful intrusion detection system
    Yoon, Seungyong
    Kim, Byoungkoo
    Oh, Jintae
    2006 INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE AND SECURITY, PTS 1 AND 2, PROCEEDINGS, 2006, : 574 - 579
  • [22] Evaluating Network Intrusion Detection Systems for High-Speed Networks
    Hu, Qinwen
    Asghar, Muhammad Rizwan
    Brownlee, Nevil
    2017 27TH INTERNATIONAL TELECOMMUNICATION NETWORKS AND APPLICATIONS CONFERENCE (ITNAC), 2017, : 402 - 407
  • [23] Study of High-Speed Processing for Network Intrusion Detection System
    Liu, Hui
    MATERIALS AND MANUFACTURING TECHNOLOGY, PTS 1 AND 2, 2010, 129-131 : 1410 - 1414
  • [24] Intrusion detection for high-speed networks based on producing system
    Chen, Ken
    Yu, Fei
    Xu, Cheng
    Liu, Yan
    FIRST INTERNATIONAL WORKSHOP ON KNOWLEDGE DISCOVERY AND DATA MINING, PROCEEDINGS, 2007, : 532 - +
  • [25] High-speed intrusion detection in support of critical infrastructure protection
    D'Antonio, Salvatore
    Oliviero, Francesco
    Setola, Roberto
    CRITICAL INFORMATION INFRASTRUCTURES SECURITY, 2006, 4347 : 222 - 234
  • [26] Intrusion detection technology research based high-speed network
    Bo, S
    Ming, Y
    Jie, L
    PARALLEL AND DISTRIBUTED COMPUTING, APPLICATIONS AND TECHNOLOGIES, PDCAT'2003, PROCEEDINGS, 2003, : 206 - 210
  • [27] Real-time intrusion detection for high-speed networks
    Jiang, WB
    Song, H
    Dai, YQ
    COMPUTERS & SECURITY, 2005, 24 (04) : 287 - 294
  • [28] Hardware Acceleration of Intrusion Detection Systems for High-Speed Networks
    Kucera, Jan
    Kekely, Lukas
    Pus, Viktor
    Piecek, Adam
    Korenek, Jan
    PROCEEDINGS OF THE 2018 SYMPOSIUM ON ARCHITECTURES FOR NETWORKING AND COMMUNICATIONS SYSTEMS (ANCS '18), 2018, : 177 - 178
  • [29] Parallel architecture for high-speed Reed-Solomon codec
    Matsushima, TK
    Matsushima, T
    Hirasawa, S
    ITS '98 PROCEEDINGS - SBT/IEEE INTERNATIONAL TELECOMMUNICATIONS SYMPOSIUM, VOLS 1 AND 2, 1998, : 468 - 473
  • [30] Data Plane Offloading on a High-speed Parallel Processing Architecture
    Cerovic, Danilo
    Del Piccolo, Valentin
    Amamou, Ahmed
    Haddadou, Kamel
    Pujolle, Guy
    PROCEEDINGS 2018 IEEE 11TH INTERNATIONAL CONFERENCE ON CLOUD COMPUTING (CLOUD), 2018, : 229 - 236