期刊文献+

基于FPGA的高速网络入侵检测系统 被引量:8

High Speed Network Intrusion Detection Based on FPGA
下载PDF
导出
摘要 处理速度成为制约基于软件的网络入侵检测系统性能的瓶颈。文中提出了用可重配置硬件(FPGA)和商用千兆以太网MAC实现的网络入侵检测系统体系结构。在该体系结构中,网络数据包的特征匹配以及复杂协议分析等高强度的计算均由可重配置硬件电路完成,而使主机CPU更专注于对复杂入侵方式的检测和对入侵行为的实时响应。分析表明,该体系结构能够快速适应入侵特征变化对硬件电路的重配置需求,使网络入侵检测系统可以以线速处理网络数据包。 With the increase of network bandwidth,the processing speed becomes the bottleneck for the software-based Intrusion Detection Systems (IDS). In this Paper,a novel architecture for IDS based on a reconfigurable hardware,a FPGA,coupled with a commodity Gigabit Ethernet MAC is proposed. In this architecture,the significant and computing-intensive portion of the network processing,such as signature matching and complex protocol analysis,are implemented by the reconfigurable hardware. The host CPU is dedicated to detecting and responding the complex intrusions in real time. Analysis shows that the reconfigurable feature of this architecture can accommodate the changing of the intrusion modes and process the network packet at line rate.
出处 《计算机应用》 CSCD 北大核心 2004年第5期33-35,共3页 journal of Computer Applications
基金 航空科学基金 (0 1F53 0 3 1 ) 教育部博士点基金 (2 0 0 2 0 6 990 2 6 )
关键词 入侵检测系统 可重配置硬件结构 现场可编程门阵列 内容可寻址存储器 intrusion detection system reconfigurable hardware architecture field programmable gate array content addressable memory
  • 相关文献

参考文献7

  • 1Roesch M. Snort:The open source network intrusion detection system[EB/OL]. http://www.snort.org,2003-10.
  • 2Cho YH,et al. Specialized hardware for deep network packet filtering[A]. Proceedings of 12th International Conference on Field Programmable Logic and Applications[C]. 2002.
  • 3Altera Corporation. Using APEX 20KE CAM for Fast Search Applications[EB/OL]. http://www.altera.com/literature/tb/tb56.pdf,1999-08.
  • 4Altera Corporation. Implementing High-Speed Search Applications with Altera CAM[EB/OL]. http://www.altera.com/literature/an/an119.pdf,2001-07.
  • 5Li SM,Torresen J,Soraasen O. Exploiting Reconfigurable Hardwarefor Network Security[A]. 11th Annual IEEE Symposium on Field-Programmable Custom Custom Computing Machines[C]. Napa,California2003.
  • 6Gokhale M,et al. Granidt:Towards Gigabit Rate Network Intrusion Detection Technology[A]. Proceedings of 12th International Conference on Field Programmable Logic and Applications[C]. SSpringer-Verlag,2002.
  • 7Hutchings BL,Franklin R,Carver D. Assisting Network Intrusion Detection with Reconfigurable Hardware[A]. 10 th Annual IEEE Symposium on Field-Programmable Custom Computing Machines[C]. Napa,California,2002.

同被引文献40

引证文献8

二级引证文献25

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部