Paper published in a book (Scientific congresses and symposiums)
Scalable High-Performance Parallel Design for Network Intrusion Detection Systems on Many-Core Processors
Jiang, Hayang; Xie, Gaogang; Salamatian, Kavé et al.
2013In Proceedings of ANCS 2013
Peer reviewed
 

Files


Full Text
06665196.pdf
Publisher postprint (727.66 kB)
Download

All documents in ORBi are protected by a user license.

Send to



Details



Abstract :
[en] Network Intrusion Detection Systems (NIDSes) face significant challenges coming from the relentless network link speed growth and increasing complexity of threats. Both hardware accelerated and parallel software-based NIDS solutions, based on commodity multi-core and GPU processors, have been proposed to overcome these challenges. Network Intrusion Detection Systems (NIDSes) face significant challenges coming from the relentless network link speed growth and increasing complexity of threats. Both hardware accelerated and parallel software-based NIDS solutions, based on commodity multi-core and GPU processors, have been proposed to overcome these challenges. This work explores new parallel opportunities afforded by many-core processors for high performance, scalable and inexpensive NIDS. We exploit the huge many-core computational power by adopting a hybrid parallel architecture combining data and pipeline parallelism. We also design a hybrid load balancing scheme, using both ruleset and flow space partitioning. Furthermore, the proposed design leverages particular features of the processor to break the bottlenecks. We have integrated the open source NIDS Suricata into our proposed design and evaluated its performance with synthetic traffic. The prototype exhibits almost linear speedup and can handle up to 7.2 Gbps traffic with 100-bytes packets.
Disciplines :
Computer science
Author, co-author :
Jiang, Hayang;  Chinese Academy of Sciences - CAS > Institute of Computing Technology - ICT
Xie, Gaogang;  Chinese Academy of Sciences - CAS > Institute of Computing Technology - ICT
Salamatian, Kavé;  Université de Savoie
Mathy, Laurent ;  Université de Liège - ULiège > Dép. d'électric., électron. et informat. (Inst.Montefiore) > Systèmes informatiques répartis et sécurité
Language :
English
Title :
Scalable High-Performance Parallel Design for Network Intrusion Detection Systems on Many-Core Processors
Publication date :
2013
Event name :
ACM/IEEE Symposium on Architectures for Networking and Communications Systems (ANCS)
Event date :
2013
Audience :
International
Main work title :
Proceedings of ANCS 2013
ISBN/EAN :
978-1-4799-1640-5
Peer reviewed :
Peer reviewed
Available on ORBi :
since 17 May 2014

Statistics


Number of views
130 (8 by ULiège)
Number of downloads
515 (3 by ULiège)

Scopus citations®
 
31
Scopus citations®
without self-citations
29
OpenCitations
 
15

Bibliography


Similar publications



Contact ORBi