摘要
高速入侵检测是当前网络安全领域研究的热点之一,分析了高速环境下入侵检测面临的主要问题和各种制约因素,并对高速入侵检测的进行了多方面地研究,分析和介绍了零拷贝技术、快速匹配算法。分析指出基于分流的分布式入侵检测是高速检测的发展方向。最后给出高速入侵检测后续有待研究和解决的问题。
At present intrusion detection system (IDS) in high-speed network is a main point in security domain. The main problem and various restricted factors IDS faced in high-speed network is analyzed, and involved researches such as zero-copy technique and fast pattern matching model is introduced too. Finally, the distributed intrusion detection system based data-distribution is figured out as a good measure, and some remaining problems and emerging trends in this area is presented.
出处
《计算机工程与设计》
CSCD
北大核心
2008年第14期3616-3619,3622,共5页
Computer Engineering and Design
基金
国家863高技术研究发展计划基金项目(2003AA142060)
关键词
入侵检测
高速网
制约因素
零拷贝
快速匹配
分流
intrusion detection
high-speed network
restricted factors
zero-copy
fast pattern match
data-distribution