期刊文献+

一种高性能入侵防御系统的设计与实现 被引量:2

Design and Implementation of a High Performance Intrusion Prevention System
下载PDF
导出
摘要 随着高速网络的普及,传统的入侵防御系统在数据包的高速捕获和实时处理方面,已经不能满足性能上的要求。设计并实现了一种高性能入侵防御系统,PF_RING DNA Intrusion Prevention System:PDIPS。PDIPS运行在通用多核平台,采用PF_RING的DNA技术,实现对数据包的线速捕获,同时采用多线程和CPU绑定技术并行地处理数据包,提高了系统的整体性能。试验结果表明,在相同的测试环境下,本系统与传统的入侵防御方案相比,在性能上有较好的提升,可以适应千兆环境的需求。 With the popularization of high-speed network, the traditional intrusion prevention system in high speed packet capture and real-time processing, has already can't meet the requirements of the performance. The paper proposed a kind of high performance intrusion prevention system, PF_PJNG DNA Intrusion Prevention System: PDIPS. PDIPS run on general multi-core platform, it used the PF PJNG DNA technology to realize the packet capture in wire speed, at the same time, multithreading and CPU binding technology is used for parallel packets processing, to improve the overall performance. The test results show that under the same test environ ment, PDIPS compared to traditional intrusion prevention scheme in performance has preferably improved, can adapt to the needs of the gigabit environment.
作者 谢大斌 梁刚
出处 《计算机安全》 2013年第3期2-8,共7页 Network & Computer Security
基金 国家自然科学基金(61173159)
关键词 入侵防御 DNA PF_RING 高性能 Intrusion prevention system DNA PF_PJNG High performance
  • 相关文献

参考文献15

  • 1史志才,夏永祥.高速网络环境下的入侵检测技术研究综述[J].计算机应用研究,2010,27(5):1606-1610. 被引量:15
  • 2Luca Deri. Improving Passive Packet Capture: Beyond Device Polling[J]. 4th International System Administration and Network Engineering Conference - SANE 2004. October 2004.
  • 3Luca Deri. nCap: Wire-speed Packet Capture and Transmission. Third IEEE International Workshop on End to End Monitoring-E2EMON. May 2005.
  • 4BOYEg g S, MOOBE algorithm[J]. Communicat J S. A fast string searching ons of ACM, 1977, 20(10): 762-772.
  • 5AHO A, C0gASICK M. Efficient string to bibliographic search[J]. Communications of matching an aid ACM, 1975, 18(6): 55-40.
  • 6Sun W, Manber U. A Fast Algorithm For Multi -pattern Searching [D] University of The Computer Science Depart -merit of The Arizona, 1994.
  • 7Chia-Mei Chen, Ya-Lin Chen, Hsiao-Chung Lin. An efficient network intrusion detection. Computer Communications Volume 55, Issue 4, I March 2010, Pages 477-484.
  • 8Giorgos Vasiliad oannidis. MIDeA, a Michalis Polychronakis, Sotiris ti-parallel intrusion detection architecture. CCS 'll Proceedings of the 18th ACM conference on Computer and communications security, 20 pages 297-508.
  • 9Hassen Sallay, Mohsen gouached, Adel Ammar, 0uissemBen Fred j, Khalid AI-Shalfan, Inspired Speed 20] 1. ntrusion Detection System Majdi Ben Saad. Wild- Fram- ework for High Networks (liP) IDS Framewo- rE. Volume 5, issue 4. 2 pages.
  • 10P.obertLove.1inux内核设计与实现.北京:机械工业出版社,2011.

二级参考文献41

共引文献33

同被引文献23

  • 1徐慧,姜恒,杨林.PF_RING高效数据包捕获技术研究与设计[J].计算机科学,2012,39(S2):88-89. 被引量:5
  • 2闫丽丽,涂天禄,周兴涛.Libpcap数据包捕获机制剖析与研究[J].网络安全技术与应用,2006(4):38-40. 被引量:12
  • 3Luigi Rizzo,Matteo Landi. netmap: Memory Mapped Access To Network Devices[J].Computer Communication Review,2011,41 ( 04 ) : 422-423.
  • 4Garcia L M. Programming with Libpcap - Sniffing the Network From Our Own ApplicationJJ]. hakin9, 2008 ( 02 ) : 38-46.
  • 5The WinPcap Team. NPF driver internals manual[EB/OL].http://www. winpcap.org/docs/docs 41b5/html/group NPF.html, 2012-06-28.
  • 6Rizzo L. netmap: a novel framework for fast packet I/O[C]. Proceedings of the 2012 USENIX Annual Technical Conference, USENIX, 2012.
  • 7LUIGI R.IZZO.Revisiting Network I/O APIs: The Netmap Framework[J].Communications of the ACM, 2012, 55 ( 03 ) : 45-51.
  • 8Benda, L,Miller, D,Andras, K et al.NetMap: a new tool in support of watershed science and resource management.[J].Forest Science, 2007, 53 ( 02 ) ." 206-219.
  • 9LUIGI RIZZO.Revisiting Network I/O APls: The Netmap Framework[J].Communications of the ACM, 2{}12, 55 ( 03 ) : 45-51.
  • 10Liao MinKJun, Lu ShiMin, Xie ChongXin et al.A quick epifluorescence microscopy method for sediment bacteria enumeration[J]. Journal of food, agriculture & environment, 2012, 10 ( 1 Pt.2 ) : 946-948.

引证文献2

二级引证文献6

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部