IEICE Electronics Express
Online ISSN : 1349-2543
ISSN-L : 1349-2543
High-throughput intrusion detection system with parallel pattern matching
Yi-Mao HsiaoMing-Jen ChenYuan-Sun ChuChung-Hsun Huang
著者情報
キーワード: IDS, Snort, ASIC
ジャーナル フリー

2012 年 9 巻 18 号 p. 1467-1472

詳細
抄録
This paper proposes a high-throughput intrusion detection system (IDS) with a bloom filter-based header comparison and parallel pattern matching for the packet content. The parallel pattern matching is a two parallel sequence comparison architecture that compares the packet content with the Snort rules. The proposed hardware IDS not only performs high throughput, but also reduces the rules memory size. As shown in post-layout simulation of the implemented application-specific integrated circuit (ASIC), the speed reaches 453MHz that performs 7.2Gbps system throughput to deal with the traffic requirement of edge speed in end user network. With 8MB off-chip SRAM, the system supports 4,020 Snort rules that the pattern number is enough for intruder signature.
著者関連情報
© 2012 by The Institute of Electronics, Information and Communication Engineers
前の記事 次の記事
feedback
Top