Title :
TCP-Stream reassembly and state tracking in hardware
Author :
Necker, Marc ; Contis, Didier ; Schimmel, David
Author_Institution :
Sch. of Electr. & Comput. Eng., Georgia Inst. of Technol., Atlanta, GA, USA
Abstract :
In this paper we consider a new approach to network intrusion detection. Conventional network intrusion detection systems (NIDS) are software based. We propose to selectively implement portions of the functionality of a state-of-the-art software NIDS in reconfigurable hardware. This increases performance even under hostile loads and will enable efficient intrusion detection in future multi-gigabit networks. Specifically, we consider the problem of TCP-stream reassembly. We present a high-performance TCP stream reassembly and state tracking module targeted for incorporation into an agile reconfigurable network interface based on Xilinx Virtex technology.
Keywords :
computer network management; reconfigurable architectures; security of data; transport protocols; TCP-stream reassembly; agile reconfigurable network; hostile loads; network intrusion detection; performance; reconfigurable hardware; state tracking; Clocks; Computer networks; Field programmable gate arrays; Hardware; Intelligent networks; Intrusion detection; Software systems; TCPIP; Telecommunication traffic; Throughput;
Conference_Titel :
Field-Programmable Custom Computing Machines, 2002. Proceedings. 10th Annual IEEE Symposium on
Print_ISBN :
0-7695-1801-X
DOI :
10.1109/FPGA.2002.1106687