Network Protocols and Algorithms | |
Function and Data Parallelization of Wu-Manber Pattern Matching for Intrusion Detection Systems | |
Abdullah Mughrabi1  Monther Aldwairi1  Mazen Kharbutli1  | |
[1] Jordan University of Science and Technology | |
关键词: Intrusion detection; pattern matching; parallel programming; Snort; Wu-Manber; | |
DOI : 10.5296/npa.v4i3.2069 | |
学科分类:计算机应用 | |
来源: Macrothink Institute, Inc. | |
【 摘 要 】
The safeguarding networks from malicious activities and intrusions continues to be one of the most important aspects in network security. Intrusion Detection Systems (IDSs) play a fundamental role in network protection. Unfortunately, the speeds of existing IDSs are unable to keep up with the rapid increases in network speeds and attack complexities. Fortunately, parallel computing on multi-core systems can lend a helping hand mitigating the performance gap. In this paper, novel and effective parallel implementations of the Wu-Manber (WM) algorithm for signature based detection system are proposed, implemented, and evaluated. The proposed function and data parallel algorithms prove to be effective in terms of execution time reduction and load balancing, thus providing swift intrusion detection at increased network bandwidths. The algorithm achieves an optimal load balance and an average speedup of 2 for four cores.
【 授权许可】
Unknown
【 预 览 】
Files | Size | Format | View |
---|---|---|---|
RO201912040561640ZK.pdf | 445KB | download |