FlexIPS: A Keep Tracking Scalable Network Function Design and Implementation

Tong Hong Yen, Chu Sing Yang

研究成果: Conference contribution

摘要

From the past to the present, network attack methods have not been unchanged. As network technology is becoming increasingly complex, the difficulty of preventing risks has also increased. Attack methods have ranged from early packet spoofing, flood attacks, vertical scanning, to social attacks, such as horizontal scanning and spam. Up to the recent web application attacks, web injection attacks, penetration attacks, and ransomware that caused a large amount of economic lossesnot long ago have forced computer scientists to pay attention to the prevention of information security incidents. Intrusion prevention systems (IPSs), also known as intrusion detectionand prevention systems, are used for maintaining network security. Their purpose is to reinforce the deficiencies of network firewalls and network intrusion detection systems and strengthen network safety. IPSs can monitor the network status and transmission behavior of network packets inreal time and interrupt, adjust, or isolate abnormal or malicious network packet transmission behaviors in real time. In this study, a scalablesoftware-based IPS based on Hy-perscan, Data Plane Develop Kit (DPDK), and OpenNetVM is designed and implemented. With these libraries, it achieves a dynamic scalable IPS that can filter out malicious patterns spread all over the packet flow. Moreover, a methodcalled back pressure is designed and implemented to increase the performance of the IPS. Finally, the performance of the IPS is evaluated on a 10-Gbps network environment using iperf, Pktgen-DPDK, and malicious pcap files with Snort community rules.

原文English
主出版物標題Proceedings - 2021 2nd International Conference on Electronics, Communications and Information Technology, CECIT 2021
發行者Institute of Electrical and Electronics Engineers Inc.
頁面607-613
頁數7
ISBN(電子)9781665437578
DOIs
出版狀態Published - 2021
事件2nd International Conference on Electronics, Communications and Information Technology, CECIT 2021 - Virtual, Sanya, China
持續時間: 2021 12月 272021 12月 29

出版系列

名字Proceedings - 2021 2nd International Conference on Electronics, Communications and Information Technology, CECIT 2021

Conference

Conference2nd International Conference on Electronics, Communications and Information Technology, CECIT 2021
國家/地區China
城市Virtual, Sanya
期間21-12-2721-12-29

All Science Journal Classification (ASJC) codes

  • 人工智慧
  • 電腦網路與通信
  • 電腦科學應用
  • 電腦視覺和模式識別
  • 資訊系統
  • 電氣與電子工程

指紋

深入研究「FlexIPS: A Keep Tracking Scalable Network Function Design and Implementation」主題。共同形成了獨特的指紋。

引用此