ผู้เขียน
Giorgos Vasiliadis, Michalis Polychronakis, Sotiris Ioannidis
วันที่เผยแพร่
2011/10/17
หนังสือ
Proceedings of the 18th ACM conference on Computer and communications security
หน้า
297-308
คำอธิบาย
Network intrusion detection systems are faced with the challenge of identifying diverse attacks, in extremely high speed networks. For this reason, they must operate at multi-Gigabit speeds, while performing highly-complex per-packet and per-flow data processing. In this paper, we present a multi-parallel intrusion detection architecture tailored for high speed networks. To cope with the increased processing throughput requirements, our system parallelizes network traffic processing and analysis at three levels, using multi-queue NICs, multiple CPUs, and multiple GPUs. The proposed design avoids locking, optimizes data transfers between the different processing units, and speeds up data processing by mapping different operations to the processing units where they are best suited. Our experimental evaluation shows that our prototype implementation based on commodity off-the-shelf equipment can reach …
การอ้างอิงทั้งหมด
2011201220132014201520162017201820192020202120222023202411715322327141586121033
บทความทางวิชาการ