Title :
Fast filtering for intrusion detection systems with the shift-or algorithm
Author :
Sung-Il Oh ; Inbok Lee ; Min Sik Kim
Author_Institution :
Sch. of Elec., Telecommun., & Comput. Eng., Korea Aerosp. Univ., Goyang, South Korea
Abstract :
Intrusion Detection Systems (IDS) play an important role in network security. The main challenge is how to find occurrences of patterns defined in the rule set which describe the signature of malicious activities. In this paper, we propose an efficient exact pattern matching algorithm based on the bit-parallel approach. Experimental results show that our algorithm outperforms the traditional Aho-Corasick automaton at the cost of a small number of false positives.
Keywords :
pattern matching; security of data; telecommunication security; bit-parallel approach; fast filtering; intrusion detection systems; malicious activities; network security; pattern matching; rule set; shift-or algorithm; Automata; Educational institutions; Electronic mail; IP networks; Intrusion detection; Pattern matching;
Conference_Titel :
Communications (APCC), 2012 18th Asia-Pacific Conference on
Conference_Location :
Jeju Island
Print_ISBN :
978-1-4673-4726-6
Electronic_ISBN :
978-1-4673-4727-3
DOI :
10.1109/APCC.2012.6388206