Flexible software-hardware Network Intrusion Detection System

被引:3
|
作者
Proudfoot, Ryan [1 ]
Kent, Kenneth [1 ]
Aubanel, Eric [1 ]
Chen, Nan [1 ]
机构
[1] Univ New Brunswick, Fac Comp Sci, Fredericton, NB E3B 5A3, Canada
关键词
D O I
10.1109/RSP.2008.11
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Network Intrusion Detection System (NIDS) demands have been steadily increasing over the past few years. Current solutions using software become inefficient running on high speed high volume networks and will end up dropping packets. Hardware solutions are available and result in much higher efficiency but present problems such as flexibility and cost. Our proposed system uses a modified version of Snort, a robust widely deployed open-sourced NIDS. Snort spends a significant fraction of its processing time doing pattern matching. Our proposed system runs Snort in software until it gets to the pattern matching function and then offloads that processing to the Field Programmable Gate Array (FPGA). The hardware is able to process data at up to 1.7GB/s on one Xilinx XC2VP100 FPGA. Our system is more flexible than other FPGA string matching designs in that the rules are not hard-coded. The design is scalable and allows FPGAs to be used in parallel to increase the processing speed even further.
引用
收藏
页码:182 / 188
页数:7
相关论文
共 50 条
  • [41] A METHODOLOGY FOR IDENTIFYING HARDWARE STATES AND REQUIREMENTS TO ENSURE SYSTEM RELIABILITY AND SUCCESS IN SOFTWARE-HARDWARE SYSTEMS
    Mueller, Jonathan D.
    Tumer, Irem Y.
    IMECE 2008: SAFETY ENGINEERING, RISK ANALYSIS, AND RELIABILITY METHODS, VOL 16, 2009, : 115 - 122
  • [42] Assisting network intrusion detection with reconfigurable hardware
    Hutchings, BL
    Franklin, R
    Carver, D
    10TH ANNUAL IEEE SYMPOSIUM ON FIELD-PROGRAMMABLE CUSTOM COMPUTING MACHINES, PROCEEDINGS, 2002, : 111 - 120
  • [43] Cosmic shear systematics: software-hardware balance
    Amara, A.
    Refregier, A.
    Paulin-Henriksson, S.
    MONTHLY NOTICES OF THE ROYAL ASTRONOMICAL SOCIETY, 2010, 404 (02) : 926 - 930
  • [44] Software-Hardware Cosystem Brain Interface Design
    Cai, Wei
    Wu, NanSong
    Shi, Frank
    Tong, Jialing
    2017 2ND INTERNATIONAL CONFERENCE ON INTELLIGENT INFORMATICS AND BIOMEDICAL SCIENCES (ICIIBMS), 2017, : 115 - 121
  • [45] Mobile simulator control system for isolating breathing apparatus of software-hardware platform
    Obukhov A.
    Dedov D.
    Siukhin A.
    Arkhipov A.
    Obukhov, Artem (obuhov.art@gmail.com), 1600, International Association of Online Engineering (14): : 32 - 42
  • [46] Software-hardware system for the design of adaptive fuzzy digital signal processing applications
    Sultan, L
    UNIVERSITY AND INDUSTRY - PARTNERS IN SUCCESS, CONFERENCE PROCEEDINGS VOLS 1-2, 1998, : 461 - 464
  • [47] Rainbow: An Operating System for Software-Hardware Multitasking on Dynamically Partially Reconfigurable FPGAs
    Jozwik, Krzysztof
    Honda, Shinya
    Edahiro, Masato
    Tomiyama, Hiroyuki
    Takada, Hiroaki
    INTERNATIONAL JOURNAL OF RECONFIGURABLE COMPUTING, 2013, 2013
  • [48] Neural network based intrusion detection system for detecting changes in hardware profile
    Om, Hari
    Sarkar, Tapas K.
    JOURNAL OF DISCRETE MATHEMATICAL SCIENCES & CRYPTOGRAPHY, 2009, 12 (04): : 451 - 466
  • [49] Software-hardware embedded system reliability modeling with failure dependency and masked data
    Zheng, Zhoutao
    Yang, Jianfeng
    Huang, Jiayue
    COMPUTERS & INDUSTRIAL ENGINEERING, 2023, 186
  • [50] Convolutional Neural Network Model Compression Method for Software-Hardware Co-Design
    Jang, Seojin
    Liu, Wei
    Cho, Yongbeom
    INFORMATION, 2022, 13 (10)