Network Intrusion Detection and Prevention System by Parallel Matching
碩士 === 國立中正大學 === 電機工程研究所 === 101 === The development of network is growing up quickly that accompanied by the many applications and many attacks. For the reason, it is necessary to establish the intrusion detection and prevention systems on the router or switch that can detect and prevent the netwo...
Main Authors: | , |
---|---|
Other Authors: | |
Format: | Others |
Language: | zh-TW |
Published: |
2013
|
Online Access: | http://ndltd.ncl.edu.tw/handle/17697990647085652914 |
id |
ndltd-TW-101CCU00442089 |
---|---|
record_format |
oai_dc |
spelling |
ndltd-TW-101CCU004420892015-10-13T22:23:53Z http://ndltd.ncl.edu.tw/handle/17697990647085652914 Network Intrusion Detection and Prevention System by Parallel Matching 平行化比對之網路入侵偵測防禦系統 Meng-Jhih Chen 陳孟志 碩士 國立中正大學 電機工程研究所 101 The development of network is growing up quickly that accompanied by the many applications and many attacks. For the reason, it is necessary to establish the intrusion detection and prevention systems on the router or switch that can detect and prevent the network intrusions in the large scale institutions. With the increase network bandwidth and the variety of the attack from Internet hacker, the request of the intrusion detection is becoming heavier. Therefore, it is a crucial topic of how to create high efficient intrusion detection and prevention. We design a system that integrate Snort rule content matching and parallelized the architecture of the content matching, focus on the speed up、high accuracy hardware processor. The frequency of our chip design can reach to 435MHz and matching for 5272 Snort rules, the speed and efficiency has significantly improved compared to the software implementation. Yuan-Sun Chu 朱元三 2013 學位論文 ; thesis 49 zh-TW |
collection |
NDLTD |
language |
zh-TW |
format |
Others
|
sources |
NDLTD |
description |
碩士 === 國立中正大學 === 電機工程研究所 === 101 === The development of network is growing up quickly that accompanied by the many applications and many attacks. For the reason, it is necessary to establish the intrusion detection and prevention systems on the router or switch that can detect and prevent the network intrusions in the large scale institutions. With the increase network bandwidth and the variety of the attack from Internet hacker, the request of the intrusion detection is becoming heavier. Therefore, it is a crucial topic of how to create high efficient intrusion detection and prevention. We design a system that integrate Snort rule content matching and parallelized the architecture of the content matching, focus on the speed up、high accuracy hardware processor. The frequency of our chip design can reach to 435MHz and matching for 5272 Snort rules, the speed and efficiency has significantly improved compared to the software implementation.
|
author2 |
Yuan-Sun Chu |
author_facet |
Yuan-Sun Chu Meng-Jhih Chen 陳孟志 |
author |
Meng-Jhih Chen 陳孟志 |
spellingShingle |
Meng-Jhih Chen 陳孟志 Network Intrusion Detection and Prevention System by Parallel Matching |
author_sort |
Meng-Jhih Chen |
title |
Network Intrusion Detection and Prevention System by Parallel Matching |
title_short |
Network Intrusion Detection and Prevention System by Parallel Matching |
title_full |
Network Intrusion Detection and Prevention System by Parallel Matching |
title_fullStr |
Network Intrusion Detection and Prevention System by Parallel Matching |
title_full_unstemmed |
Network Intrusion Detection and Prevention System by Parallel Matching |
title_sort |
network intrusion detection and prevention system by parallel matching |
publishDate |
2013 |
url |
http://ndltd.ncl.edu.tw/handle/17697990647085652914 |
work_keys_str_mv |
AT mengjhihchen networkintrusiondetectionandpreventionsystembyparallelmatching AT chénmèngzhì networkintrusiondetectionandpreventionsystembyparallelmatching AT mengjhihchen píngxínghuàbǐduìzhīwǎnglùrùqīnzhēncèfángyùxìtǒng AT chénmèngzhì píngxínghuàbǐduìzhīwǎnglùrùqīnzhēncèfángyùxìtǒng |
_version_ |
1718075516944121856 |