节点文献

基于网络处理器的高速网络数据过滤

Network Processor Based Network Intrusion Detection System

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 张晋冯思玲卢春燕

【Author】 Zhang Jin Feng Siling Lu Chunyan(College of Information Science & Technology,Hainan University,Haikou 570228)

【机构】 海南大学信息科学技术学院

【摘要】 随着网络应用的增长,网络数据流量在以翻番的速度增长,网络数据的采集和过滤作为实时性要求高的入侵检测系统的支撑系统,其数据处理能力直接影响入侵检测系统的效率。高处理能力和高编程性的网络处理器的出现,克服了基于传统CPU架构的数据采集和过滤系统的性能局限,在高速网络中实现了性能和灵活性的结合,达到了高速数据处理和检测规则的动态更新。在此架构基础上,通过多种方式能够提高数据处理效率,文章提出了在网络处理器实现的NIDS中集成优化规则集的方式实现高效数据过滤。

【Abstract】 With the development of network application,the network bandwidth increased faster and faster,the system of network capture and filter is the key factor on function of network intrusion detection system(NIDS) as the support system of NIDS,the application of Intel IXP2400 network processor with higher functionality and higher programmable ability overcome the restriction of traditional capture and filter system with CPU architecture and combine the functionality and flexibility and achieve fast packet processing and dynamic adaptation of intrusion patterns that are continuously added.This paper provides an approach to achieve efficient data filtering with integrate multiprocessor and optimal rules set on Intel IXP2400.

【关键词】 IXP2400规则集高速网NIDS
【Key words】 IXP2400rules sethigh-speed networkNIDS
【基金】 海南省自然科学基金资助(编号:80639);海南省教育厅高等学校科研项目(编号:Hj200716)资助
  • 【文献出处】 计算机与数字工程 ,Computer & Digital Engineering , 编辑部邮箱 ,2009年09期
  • 【分类号】TP393.08
  • 【被引频次】1
  • 【下载频次】67
节点文献中: 

本文链接的文献网络图示:

本文的引文网络