arrow
返回

A Memory-Efficient Parallel String Matching for Intrusion Detection Systems

delete2009-12-01
delete14
PRE
AI
H
Hyunjin Kim *
H
Hyejeong Hong
H
Hong‐Sik Kim
S
Sungho Kang
DOI:10.1109/LCOMM.2009.12.082230delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
As the variety of hazardous packet payload contents increases, the intrusion detection system (IDS) should he able to detect numerous patterns in real time. For this reason, this paper proposes an Aho-Corasick algorithm based parallel string matching. In order to balance memory usage between homogeneous finite-state machine (FSM) tiles for each string matcher, an optimal set of bit position groups is determined. Target patterns are sorted by binary-reflected gray code (BRGC), which reduces bit transitions in patterns mapped onto a string matcher. In the evaluations of Snort rules, the proposed string matching outperforms the existing bit-split string matching.
Keyword:
Computer network security
finite state machines
site security monitoring
string matching

期刊

IEEE Communications Letters 封面图
IEEE Communications Letters
IF:
4.4
论文数:
1.3W
被引数:
2.2W

机构

Y
Yonsei University
学者数:
4.8W
论文数: 4.6W
被引数: 5.2W
引用论文

引用论文

err分享
err收藏
err分享
err收藏
err分享
err收藏