arrow
Return

Fast Multi-Pattern Matching Algorithm on Compressed Network Traffic

delete2016-05-01
delete4
PRE
AI
彭浩 (Peng, Hao)
J
Jianxin Li *
B
Bo Li
M
Muhammad Hassan Arif
DOI:10.1109/CC.2016.7489982delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
Pattern matching is a fundamental approach to detect malicious behaviors and information over Internet, which has been gradually used in high-speed network traffic analysis. However, there is a performance bottleneck for multi-pattern matching on online compressed network traffic(CNT), this is because malicious and intrusion codes are often embedded into compressed network traffic. In this paper, we propose an online fast and multi-pattern matching algorithm on compressed network traffic (FMMCN). FMMCN employs two types of jumping, i.e. jumping during sliding window and a string jump scanning strategy to skip unnecessary compressed bytes. Moreover, FMMCN has the ability to efficiently process multiple large volume of networks such as HTTP traffic, vehicles traffic, and other Internet-based services. The experimental results show that FMMCN can ignore more than 89.5% of bytes, and its maximum speed reaches 176.470MB/s in a mid-range switches device, which is faster than the current fastest algorithm ACCH by almost 73.15 MB/s.
Keywords:
compressed network traffic
network security
multiple pattern matching
skip scanning
depth of boundary
AI Summary

AI Summary

Key information extracted from the uploaded paper, including a brief overview, abstract, background, key highlights, visual analysis, and future outlook.

Journal

China Communications cover
China Communications
IF:
3.1
Papers:
1.8K
Citations:
5.0K

Organization

B
Beihang University
Scholars:
5.1W
Papers: 4.1W
Citations: 37