A fast pattern-matching algorithm for network intrusion detection system
被引:0
作者:
Sung, Jung-Sik
论文数: 0引用数: 0
h-index: 0
机构:Chungnam Natl Univ, Taejon 305764, South Korea
Sung, Jung-Sik
Kang, Seok-Min
论文数: 0引用数: 0
h-index: 0
机构:Chungnam Natl Univ, Taejon 305764, South Korea
Kang, Seok-Min
Kwon, Taeck-Geun
论文数: 0引用数: 0
h-index: 0
机构:Chungnam Natl Univ, Taejon 305764, South Korea
Kwon, Taeck-Geun
机构:
[1] Chungnam Natl Univ, Taejon 305764, South Korea
[2] Chungnam Natl Univ, Taejon 305764, South Korea
来源:
NETWORKING 2006: NETWORKING TECHNOLOGIES, SERVICES, AND PROTOCOLS; PERFORMANCE OF COMPUTER AND COMMUNICATION NETWORKS; MOBILE AND WIRELESS COMMUNICATIONS SYSTEMS
|
2006年
/
3976卷
关键词:
D O I:
暂无
中图分类号:
TP [自动化技术、计算机技术];
学科分类号:
0812 ;
摘要:
We present a multi-gigabit rate multiple pattern-matching algorithm with TCAM that enables protecting against malicious attacks in a high-speed network. The proposed algorithm significantly reduces the number of TCAM lookups per payload with m-byte jumping window scheme. Due to the reduced number of TCAM lookups, we can easily achieve multi-gigabit rate for scanning the packet payload in order to inspect the content. Furthermore, multi-packet inspection is achieved easily by the extended state transition diagram with the shifting distance. With experimental results, we have clearly justified the proposed algorithm works well for a multi-gigabit network intrusion detection system.