DocumentCode :
2138088
Title :
Intrusion detection technology research based high-speed network
Author :
Song, Bo ; Ye, Ming ; Li, Jie
Author_Institution :
Sch. of Comput. & Commun. Eng., Southwest Jiaotong Univ., Chengdu, China
fYear :
2003
fDate :
27-29 Aug. 2003
Firstpage :
206
Lastpage :
210
Abstract :
Most existing distributed intrusion detection systems (DIDS) take a master/slave or principal/subordinate structure, where a master or principal station plays important role in intrusion detection. We present a framework of peer-to-peer distributed network intrusion detection system (P2P DNIDS) based on the experience gained in a project sponsored by 30th Research Institute of Administration of Information Industry. In a P2P DNIDS all the IDS stations or subsystems have same detection capability and perform similar functions and in case of single subsystem failure other subsystem can take over its responsibility and makes the whole system more robust and flexible. With the increase in the network truck speed from M bps to G bps, intrusion detection systems have to face the packet leaking problem, in which part of the incoming packets are unchecked and have to let them bypass the detection routine for inadequate checking strategy or processing speed. We handle this problem by introducing various techniques and tactics such as load balancing, increasing checking coverage, and better matching algorithms.
Keywords :
Internet; electronic data interchange; local area networks; resource allocation; security of data; P2P system architecture; distributed intrusion detection systems; load balancing; matching algorithms; network truck speed; packet leaking problem; peer-to-peer distributed network intrusion detection system; special net card; Algorithm design and analysis; Control systems; Distributed computing; Face detection; High-speed networks; Intrusion detection; Leak detection; Load management; Peer to peer computing; Robustness;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Parallel and Distributed Computing, Applications and Technologies, 2003. PDCAT'2003. Proceedings of the Fourth International Conference on
Print_ISBN :
0-7803-7840-7
Type :
conf
DOI :
10.1109/PDCAT.2003.1236289
Filename :
1236289
Link To Document :
بازگشت