Analysis of Effective Pattern Matching Using Pipelined Bloom Filter Based on NetFPGA

碩士 === 國立中央大學 === 資訊工程研究所 === 99 === With the rapid development of Internet, the network security is increasing attention. Network intrusion detection system is to achieve the important security protection for the malicious packets on the network . However, many current network intrusion detection...

Full description

Bibliographic Details
Main Authors: Jun-ping Zhu, 朱君平
Other Authors: Li-Ming Tseng
Format: Others
Language:zh-TW
Published: 2011
Online Access:http://ndltd.ncl.edu.tw/handle/21315777623249789884
id ndltd-TW-099NCU05392123
record_format oai_dc
spelling ndltd-TW-099NCU053921232017-07-13T04:20:35Z http://ndltd.ncl.edu.tw/handle/21315777623249789884 Analysis of Effective Pattern Matching Using Pipelined Bloom Filter Based on NetFPGA 在NetFPGA上使用多階管線化布隆過濾器高效比對字串 Jun-ping Zhu 朱君平 碩士 國立中央大學 資訊工程研究所 99 With the rapid development of Internet, the network security is increasing attention. Network intrusion detection system is to achieve the important security protection for the malicious packets on the network . However, many current network intrusion detection system that is implemented on the software applications which become the bottleneck when the network speed has improved rapidly and need to detect on the network. So many of the hardware implementation on the way also have been proposed. This study by Stanford University that developed in collaboration with Xilinx platform NetFPGA malicious network packet detection system to achieve the effect on the network, although the IC design on the FPGA are faster, parallel comparison of the features, but the platform can use of limited resources, which led to the number of database features are limited. In the current network intrusion detection system hardware implementation, not only cost intensive but also because of the hardware circuit for the exact match for the string reduces network throughput, this study proposed a modified Bloom filter build on the set of different characteristics than the string length groups for fast comparison on packet payload. Because Bloom filters through to compare the incidence of false positives will result, so this study also for the general filter and our proposed Bloom filter for improving false positive rate on the analysis to minimize false positives occur. Li-Ming Tseng 曾黎明 2011 學位論文 ; thesis 57 zh-TW
collection NDLTD
language zh-TW
format Others
sources NDLTD
description 碩士 === 國立中央大學 === 資訊工程研究所 === 99 === With the rapid development of Internet, the network security is increasing attention. Network intrusion detection system is to achieve the important security protection for the malicious packets on the network . However, many current network intrusion detection system that is implemented on the software applications which become the bottleneck when the network speed has improved rapidly and need to detect on the network. So many of the hardware implementation on the way also have been proposed. This study by Stanford University that developed in collaboration with Xilinx platform NetFPGA malicious network packet detection system to achieve the effect on the network, although the IC design on the FPGA are faster, parallel comparison of the features, but the platform can use of limited resources, which led to the number of database features are limited. In the current network intrusion detection system hardware implementation, not only cost intensive but also because of the hardware circuit for the exact match for the string reduces network throughput, this study proposed a modified Bloom filter build on the set of different characteristics than the string length groups for fast comparison on packet payload. Because Bloom filters through to compare the incidence of false positives will result, so this study also for the general filter and our proposed Bloom filter for improving false positive rate on the analysis to minimize false positives occur.
author2 Li-Ming Tseng
author_facet Li-Ming Tseng
Jun-ping Zhu
朱君平
author Jun-ping Zhu
朱君平
spellingShingle Jun-ping Zhu
朱君平
Analysis of Effective Pattern Matching Using Pipelined Bloom Filter Based on NetFPGA
author_sort Jun-ping Zhu
title Analysis of Effective Pattern Matching Using Pipelined Bloom Filter Based on NetFPGA
title_short Analysis of Effective Pattern Matching Using Pipelined Bloom Filter Based on NetFPGA
title_full Analysis of Effective Pattern Matching Using Pipelined Bloom Filter Based on NetFPGA
title_fullStr Analysis of Effective Pattern Matching Using Pipelined Bloom Filter Based on NetFPGA
title_full_unstemmed Analysis of Effective Pattern Matching Using Pipelined Bloom Filter Based on NetFPGA
title_sort analysis of effective pattern matching using pipelined bloom filter based on netfpga
publishDate 2011
url http://ndltd.ncl.edu.tw/handle/21315777623249789884
work_keys_str_mv AT junpingzhu analysisofeffectivepatternmatchingusingpipelinedbloomfilterbasedonnetfpga
AT zhūjūnpíng analysisofeffectivepatternmatchingusingpipelinedbloomfilterbasedonnetfpga
AT junpingzhu zàinetfpgashàngshǐyòngduōjiēguǎnxiànhuàbùlóngguòlǜqìgāoxiàobǐduìzìchuàn
AT zhūjūnpíng zàinetfpgashàngshǐyòngduōjiēguǎnxiànhuàbùlóngguòlǜqìgāoxiàobǐduìzìchuàn
_version_ 1718496001156710400