Adaptive Pattern Matching Grammar Generation for use in Deep Packet Inspection

被引:0
|
作者
Menon, Govind [1 ]
Katdare, Sanchit [1 ]
Phatak, Sagar [1 ]
Khengare, Rahul [1 ]
机构
[1] Univ Pune, Pune, Maharashtra, India
来源
UKSIM FIFTH EUROPEAN MODELLING SYMPOSIUM ON COMPUTER MODELLING AND SIMULATION (EMS 2011) | 2011年
关键词
Deep Packet Inspection; Pattern Matching; Grammar; Regular Expressions;
D O I
10.1109/EMS.2011.74
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Deep Packet Inspection (DPI) is becoming more widely used in virtually all applications or services like Denial of Service (DoS), Intrusion Detection System (IDS) etc. that operate with or within a network. However for a developer or team working on any network project who need to perform DPI, there is always the issue of using a third party source which may involve added cost or implementing it themselves which requires time and study of protocols, signatures and the nuances of pattern matching. The paper proposes a solution to the above problem using an adaptive grammar generation algorithm. This method reduces the entropy among similar results given by different patterns. Immense customizability is the foremost advantage of this method. Existing grammars for new signatures can be combined into a single grammar easily rather than new grammars be generated from raw target strings. The paper, thus, looks to limit the detailed knowledge requirement for the design of signature detection procedures and in doing so re-use existing procedures which have been thoroughly debugged and tested.
引用
收藏
页码:119 / 122
页数:4
相关论文
共 50 条
  • [1] A Comparative Study on DFA-Based Pattern Matching for Deep Packet Inspection
    Lenka, Rakesh Kumar
    Ranjan, Prabhat
    2012 THIRD INTERNATIONAL CONFERENCE ON COMPUTER AND COMMUNICATION TECHNOLOGY (ICCCT), 2012, : 255 - 260
  • [2] A Pattern Partitioning Algorithm for Memory-Efficient Parallel String Matching in Deep Packet Inspection
    Kim, HyunJin
    Hong, Hyejeong
    Baek, Dongmyoung
    Kang, Sungho
    IEICE TRANSACTIONS ON COMMUNICATIONS, 2010, E93B (06) : 1612 - 1614
  • [3] MS-DFA: Multiple-Stride Pattern Matching for Scalable Deep Packet Inspection
    Vespa, Lucas
    Weng, Ning
    Ramaswamy, Ramaswamy
    COMPUTER JOURNAL, 2011, 54 (02): : 285 - 303
  • [4] Speculative parallel pattern matching using stride-k DFA for deep packet inspection
    Najam, Maleeha
    Younis, Usman
    Rasool, Raihan Ur
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2015, 54 : 78 - 87
  • [5] Robust and Scalable String Pattern Matching for Deep Packet Inspection on Multicore Processors
    Yang, Yi-Hua E.
    Prasanna, Viktor K.
    IEEE TRANSACTIONS ON PARALLEL AND DISTRIBUTED SYSTEMS, 2013, 24 (11) : 2283 - 2292
  • [6] A Novel Efficient Pattern Matching Packet Inspection by using delta(n)FA
    Raja, N. Kannaiya
    Arulanandam, K.
    Ambika, G.
    INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2013, 13 (01): : 79 - 88
  • [7] Scalable multigigabit pattern matching for packet inspection
    Sourdis, Ioannis
    Pnevmatikatos, Dionisios N.
    Vassiliadis, Stamatis
    IEEE TRANSACTIONS ON VERY LARGE SCALE INTEGRATION (VLSI) SYSTEMS, 2008, 16 (02) : 156 - 166
  • [8] A Hardware-Efficient Pattern Matching Architecture Using Process Element Tree for Deep Packet Inspection
    Ahn, Seongyong
    Hong, Hyejeong
    Kim, HyunJin
    Ahn, Jin-Ho
    Baek, Dongmyong
    Kang, Sungho
    IEICE TRANSACTIONS ON COMMUNICATIONS, 2010, E93B (09) : 2440 - 2442
  • [9] Network Packet Filtering and Deep Packet Inspection Hybrid Mechanism for IDS Early Packet Matching
    Trabelsi, Zouheir
    Zeidan, Safaa
    Masud, Mohammad M.
    IEEE 30TH INTERNATIONAL CONFERENCE ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS IEEE AINA 2016, 2016, : 808 - 815
  • [10] A memory-efficient heterogeneous parallel pattern matching scheme in deep packet inspection
    Kim, HyunJin
    Hong, Hyejeong
    Baek, Dongmyoung
    Ahn, Jin-Ho
    Kang, Sungho
    IEICE ELECTRONICS EXPRESS, 2010, 7 (05): : 377 - 382