期刊文献+

入侵检测中模式匹配算法的FPGA实现 被引量:7

FPGA-based Pattern Matching for Network Intrusion Detection System
下载PDF
导出
摘要 基于软件实现的入侵检测技术在高速网应用中容易引起瓶颈,根据入侵检测的应用特点,提出了一种关键字长度可变、内容可重置的并行模式匹配硬件实现方法,详细论述了用FPGA设计实现了这种方法的技术途径,通过一个设计实例仿真分析表明,这种硬件模式匹配技术设计灵活方便,匹配速度快,资源利用率较高,在高速网络应用领域具有较高的实用价值。 Intrusion detection systems (IDS) are crucial in network security today. Software-based IDS could not meet the bandwidth requirements of modern high speed Network because the pattern matching program is prone to cause bottleneck in the case of large database, Hardware techniques are desired to be a good way to solve this problem. According to the characteristics of IDS, a parellel matching architecture was proposed, which was suitable for variable-length keywords matching and keywords reconfiguration. The techniques to realized it with FPGA was discussed. An example was developed by this method and the simulation results indicate that the matching speed is very high and the FPGA resource usage is effective. Therefore the techniques are valuable and helpful for many applications in the fields of high speed network
作者 郭军 笹尾勤
出处 《系统仿真学报》 EI CAS CSCD 北大核心 2007年第14期3215-3217,3229,共4页 Journal of System Simulation
基金 陕西省教育厅自然科学专项基金(05JK293) 国家自然科学基金重点项目(60433010)
关键词 入侵检测 模式匹配 并行算法 硬件技术 FPGA Intrusion Detection System pattern matching parellel algorithm hardware techniques FPGA (Field Programmable Gate Array)
  • 相关文献

参考文献7

  • 1Young H.Cho,S.N.,Mangione Smith,W.Specialized hardware for deep network packet filtering[C]// Proceedings of 12th International Conference on Field Programmable Logic and Applications.France.2002:452-461.
  • 2Hutchings B L,Franklin R.,Carver D.Assisting Network Intrusion Detection with Reconfigurable Hardware[C]// Proc.of the 10th Annual IEEE Symposium on Field-Programmable Custom Computing Machines.Austin:IEEE Computer Society.2002:111-120.
  • 3刘航,戴冠中,李晖晖,慕德俊.基于FPGA的高速网络入侵检测系统[J].计算机应用,2004,24(5):33-35. 被引量:8
  • 4Spartan-3 Family:Complete Data sheet[EB/OL].http:// www.xilinx.com.
  • 5Maya Gokhale,Dave Dubois,Andy Dubois,et al.Granidt:Towards Gigabit Rate Network Intrusion Detection Technology[C]// Berlin Heidelberg:Springer-Verlag.2002:404-413.
  • 6Bu Long,Chandy John A.FPGA Based Network Intrusion Detection using Content Addressable Memories[C]// Proceedings of the 12th Annual IEEE Symposium on Field-Programmable Custom Computing Machines(FCCM'04).Napa,California,2004:301-306.
  • 7Sourdis I,Pnevmatikatos D.Fast,large-scale string match for a 10Gbps FPGA-based network intrustion detection system[C]// Proceedings of International Conference on Field Programmable Logic and Applications,Lisbon,2003:361-368.

二级参考文献7

  • 1Roesch M. Snort:The open source network intrusion detection system[EB/OL]. http://www.snort.org,2003-10.
  • 2Cho YH,et al. Specialized hardware for deep network packet filtering[A]. Proceedings of 12th International Conference on Field Programmable Logic and Applications[C]. 2002.
  • 3Altera Corporation. Using APEX 20KE CAM for Fast Search Applications[EB/OL]. http://www.altera.com/literature/tb/tb56.pdf,1999-08.
  • 4Altera Corporation. Implementing High-Speed Search Applications with Altera CAM[EB/OL]. http://www.altera.com/literature/an/an119.pdf,2001-07.
  • 5Li SM,Torresen J,Soraasen O. Exploiting Reconfigurable Hardwarefor Network Security[A]. 11th Annual IEEE Symposium on Field-Programmable Custom Custom Computing Machines[C]. Napa,California2003.
  • 6Gokhale M,et al. Granidt:Towards Gigabit Rate Network Intrusion Detection Technology[A]. Proceedings of 12th International Conference on Field Programmable Logic and Applications[C]. SSpringer-Verlag,2002.
  • 7Hutchings BL,Franklin R,Carver D. Assisting Network Intrusion Detection with Reconfigurable Hardware[A]. 10 th Annual IEEE Symposium on Field-Programmable Custom Computing Machines[C]. Napa,California,2002.

共引文献7

同被引文献35

引证文献7

二级引证文献15

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部