Title :
High-speed discrete content sensitive pattern match algorithm for deep packet filtering
Author :
Bo Jiang ; Bin, LIU
Author_Institution :
Tsinghua Univ., Beijing, China
Abstract :
Network security has long been a spotlight that draws increasing attention from all sides of society. Against this backdrop, deep processing of network packets has become an important subject for researchers. Since malicious packets often disguise their sensitive information in one way or another in order to bypass the packet filter, this paper proposes a high-speed discrete content sensitive pattern match algorithm for imperceptible deep packet filtering. The filter sets up and manages (including lookup and update) a sensitive information database, monitors both packet header and payload at line speed with hardware-based discrete content sensitive pattern match, and then executes the corresponding action. The paper mainly discusses a TCAM (ternary content addressable memory)-based pattern match algorithm as well as the architecture and performance analysis of a packet filtering system based on this algorithm. We present a totally new idea of hardware-based discrete content sensitive pattern match. Based on the result of algorithm evaluation and performance analysis, such a packet filtering system can achieve optimal functionality and efficiency that makes network monitoring much easier to work.
Keywords :
Internet; content-addressable storage; packet switching; pattern matching; telecommunication security; telecommunication traffic; TCAM; algorithm evaluation; deep packet filtering; hardware-based discrete content; network monitoring; network packets; network security; pattern matching; performance analysis; ternary content addressable memory; Content management; Databases; Filtering algorithms; Information filtering; Information filters; Information security; Matched filters; Pattern matching; Payloads; Performance analysis;
Conference_Titel :
Computer Networks and Mobile Computing, 2003. ICCNMC 2003. 2003 International Conference on
Print_ISBN :
0-7695-2033-2
DOI :
10.1109/ICCNMC.2003.1243040