Enhancing search speed in preprocessing mechanism of network intrusion detection systems using network on chip

سال انتشار: 1396
نوع سند: مقاله کنفرانسی
زبان: انگلیسی
مشاهده: 535

فایل این مقاله در 7 صفحه با فرمت PDF قابل دریافت می باشد

استخراج به نرم افزارهای پژوهشی:

لینک ثابت به این مقاله:

شناسه ملی سند علمی:

DCBDP03_080

تاریخ نمایه سازی: 14 شهریور 1396

چکیده مقاله:

Security of computer networks is a crucial part of today’s world. There are many existing tools that provide security for computer networks. Intrusion detection system (IDS) is one of these security tools that protects its local network from attacks by detection any malicious network activity. Every kind of IDS has some limitations about detection rate or execution time. Signature-based IDS is widely used in a computer network. A signature-based IDS has CPU limitations in the real-world networks. In this paper, a hardware approach was applied to the previous work. In fact, using network on chip (NoC) in the preprocessing part of IDSs is proposed. The results of implementation prove that NoC can reduce the execution time compared to that of the previous work. Therefore, this approach can increase the performance of all local networks while false alarm rate remained in an acceptable rate. Furthermore, increasing the speed of IDSs provides more security for the local network by increasing the security of IDSs.

کلیدواژه ها:

field-programmable gate array (FPGA) ، Heracles ، Intrusion detection systems (IDS) ، Network Security ، Network on Chip (NoC) ، Snort

نویسندگان

Samad Najjar-Ghabel

Department of Electrical and Computer Engineering University of Tabriz Tabriz, Iran

Leyli Mohammad Khanli

Department of Electrical and Computer Engineering University of Tabriz Tabriz, Iran