Network processor based network intrusion detection system

被引:0
作者
Cho, H
Kim, D
Kim, J
Doh, Y
Jang, J
机构
[1] Informat & Commun Univ, Taejon 305714, South Korea
[2] Elect & Telecommun Res Inst, Taejon 305350, South Korea
来源
INFORMATION NETWORKING: NETWORKING TECHNOLOGIES FOR BROADBAND AND MOBILE NETWORKS | 2004年 / 3090卷
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
To achieve fast packet processing and dynamic adaptation of intrusion patterns that are continuously added, a new high performance network intrusion detection system using Intel's network processor, IXP1200, is proposed. Unlike traditional intrusion detection engines, 49 which has been implemented by either software or hardware so far, we propose an optimized architecture and algorithms, exploiting the features of network processor. Through implementation and performance evaluation, we show the proprieties of the proposed approach.
引用
收藏
页码:973 / 982
页数:10
相关论文
共 7 条
[1]  
Cho YH, 2002, LECT NOTES COMPUT SC, V2438, P452
[2]  
DESAI N, 2002, INCREASING PERFORMAN
[3]  
HUTCHINGS BL, 2002, IEEE S FIELD PROGRAM
[4]  
*INT CORP, 2001, IXP12002400 INT
[5]   NETWORK INTRUSION DETECTION [J].
MUKHERJEE, B ;
HEBERLEIN, LT ;
LEVITT, KN .
IEEE NETWORK, 1994, 8 (03) :26-41
[6]  
ROESCH M, 2002, SNORT US MAN VERS 1
[7]  
SIDHU R, 2001, IEEE S FIELD PROGRAM