A fast pattern-matching algorithm for network intrusion detection system

被引:0
作者
Sung, Jung-Sik
Kang, Seok-Min
Kwon, Taeck-Geun
机构
[1] Chungnam Natl Univ, Taejon 305764, South Korea
[2] Chungnam Natl Univ, Taejon 305764, South Korea
来源
NETWORKING 2006: NETWORKING TECHNOLOGIES, SERVICES, AND PROTOCOLS; PERFORMANCE OF COMPUTER AND COMMUNICATION NETWORKS; MOBILE AND WIRELESS COMMUNICATIONS SYSTEMS | 2006年 / 3976卷
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
We present a multi-gigabit rate multiple pattern-matching algorithm with TCAM that enables protecting against malicious attacks in a high-speed network. The proposed algorithm significantly reduces the number of TCAM lookups per payload with m-byte jumping window scheme. Due to the reduced number of TCAM lookups, we can easily achieve multi-gigabit rate for scanning the packet payload in order to inspect the content. Furthermore, multi-packet inspection is achieved easily by the extended state transition diagram with the shifting distance. With experimental results, we have clearly justified the proposed algorithm works well for a multi-gigabit network intrusion detection system.
引用
收藏
页码:1157 / 1162
页数:6
相关论文
empty
未找到相关数据