A System-Level Simulation Framework for Performance Evaluation of Hardware-Based Network Intrusion Detection Systems

碩士 === 國立清華大學 === 資訊工程學系 === 95 === The network intrusion detection system (NIDS) is a popular security tool to protect computers to from attacks by malicious users. A hardware-based NIDS uses several hardware accelerators to increase performance, but traditional design methodology does not satisfy...

Full description

Bibliographic Details
Main Authors: Jin-Wei, Tang, 唐錦為
Other Authors: Yeh-Ching, Chung
Format: Others
Language:en_US
Published: 2007
Online Access:http://ndltd.ncl.edu.tw/handle/15986156985134159112
Description
Summary:碩士 === 國立清華大學 === 資訊工程學系 === 95 === The network intrusion detection system (NIDS) is a popular security tool to protect computers to from attacks by malicious users. A hardware-based NIDS uses several hardware accelerators to increase performance, but traditional design methodology does not satisfy the rapidly growing design complexity of SoC design. In this thesis, we propose a system-level simulation framework based on an ESL (Electronic System Level) tool, ARM RealView SoC Designer. The proposed framework can verify NIDS early and evaluate performance of various architectures easily. Based on this framework, we implement two cases, software-based MyIDS and hardware-based HASH HPMM (hardware pattern matching module), and compare their performance with Snort. The experimental results show that the simulation framework can evaluate performance of NIDS easily and find better design quickly.