Network Intrusion Detection and Prevention System by Parallel Matching

碩士 === 國立中正大學 === 電機工程研究所 === 101 === The development of network is growing up quickly that accompanied by the many applications and many attacks. For the reason, it is necessary to establish the intrusion detection and prevention systems on the router or switch that can detect and prevent the netwo...

Full description

Bibliographic Details
Main Authors: Meng-Jhih Chen, 陳孟志
Other Authors: Yuan-Sun Chu
Format: Others
Language:zh-TW
Published: 2013
Online Access:http://ndltd.ncl.edu.tw/handle/17697990647085652914
id ndltd-TW-101CCU00442089
record_format oai_dc
spelling ndltd-TW-101CCU004420892015-10-13T22:23:53Z http://ndltd.ncl.edu.tw/handle/17697990647085652914 Network Intrusion Detection and Prevention System by Parallel Matching 平行化比對之網路入侵偵測防禦系統 Meng-Jhih Chen 陳孟志 碩士 國立中正大學 電機工程研究所 101 The development of network is growing up quickly that accompanied by the many applications and many attacks. For the reason, it is necessary to establish the intrusion detection and prevention systems on the router or switch that can detect and prevent the network intrusions in the large scale institutions. With the increase network bandwidth and the variety of the attack from Internet hacker, the request of the intrusion detection is becoming heavier. Therefore, it is a crucial topic of how to create high efficient intrusion detection and prevention. We design a system that integrate Snort rule content matching and parallelized the architecture of the content matching, focus on the speed up、high accuracy hardware processor. The frequency of our chip design can reach to 435MHz and matching for 5272 Snort rules, the speed and efficiency has significantly improved compared to the software implementation. Yuan-Sun Chu 朱元三 2013 學位論文 ; thesis 49 zh-TW
collection NDLTD
language zh-TW
format Others
sources NDLTD
description 碩士 === 國立中正大學 === 電機工程研究所 === 101 === The development of network is growing up quickly that accompanied by the many applications and many attacks. For the reason, it is necessary to establish the intrusion detection and prevention systems on the router or switch that can detect and prevent the network intrusions in the large scale institutions. With the increase network bandwidth and the variety of the attack from Internet hacker, the request of the intrusion detection is becoming heavier. Therefore, it is a crucial topic of how to create high efficient intrusion detection and prevention. We design a system that integrate Snort rule content matching and parallelized the architecture of the content matching, focus on the speed up、high accuracy hardware processor. The frequency of our chip design can reach to 435MHz and matching for 5272 Snort rules, the speed and efficiency has significantly improved compared to the software implementation.
author2 Yuan-Sun Chu
author_facet Yuan-Sun Chu
Meng-Jhih Chen
陳孟志
author Meng-Jhih Chen
陳孟志
spellingShingle Meng-Jhih Chen
陳孟志
Network Intrusion Detection and Prevention System by Parallel Matching
author_sort Meng-Jhih Chen
title Network Intrusion Detection and Prevention System by Parallel Matching
title_short Network Intrusion Detection and Prevention System by Parallel Matching
title_full Network Intrusion Detection and Prevention System by Parallel Matching
title_fullStr Network Intrusion Detection and Prevention System by Parallel Matching
title_full_unstemmed Network Intrusion Detection and Prevention System by Parallel Matching
title_sort network intrusion detection and prevention system by parallel matching
publishDate 2013
url http://ndltd.ncl.edu.tw/handle/17697990647085652914
work_keys_str_mv AT mengjhihchen networkintrusiondetectionandpreventionsystembyparallelmatching
AT chénmèngzhì networkintrusiondetectionandpreventionsystembyparallelmatching
AT mengjhihchen píngxínghuàbǐduìzhīwǎnglùrùqīnzhēncèfángyùxìtǒng
AT chénmèngzhì píngxínghuàbǐduìzhīwǎnglùrùqīnzhēncèfángyùxìtǒng
_version_ 1718075516944121856