作者
Luca Foschini, Ashish V. Thapliyal, Lorenzo Cavallaro, Christopher Kruegel, Giovanni Vigna
发表日期
2008
期刊
Information Systems Security
页码范围
203-220
出版商
Springer Berlin/Heidelberg
简介
The increase in bandwidth over processing power has made stateful intrusion detection for high-speed networks more difficult, and, in certain cases, impossible. The problem of real-time stateful intrusion detection in high-speed networks cannot easily be solved by optimizing the packet matching algorithm utilized by a centralized process or by using custom-developed hardware. Instead, there is a need for a parallel approach that is able to decompose the problem into subproblems of manageable size. We present a novel parallel matching algorithm for the signature-based detection of network attacks. The algorithm is able to perform stateful signature matching and has been implemented only using off-the-shelf components. Our initial experiments confirm that, by making the rule matching process parallel, it is possible to achieve a scalable implementation of a stateful, network-based intrusion detection …
引用总数
2008200920102011201220132014201520162017201820192020202114533743212
学术搜索中的文章
L Foschini, AV Thapliyal, L Cavallaro, C Kruegel… - … Systems Security: 4th International Conference, ICISS …, 2008