Dissertation > Excellent graduate degree dissertation topics show
Research and Implementation of effective intrusion detection based on multi-core processors
Author: YuHongWei
Tutor: QinZhiGuang
School: University of Electronic Science and Technology
Course: Information and Communication Engineering
Keywords: network security intrusion prevention system load balancing multi-core
CLC: TP393.08
Type: Master's thesis
Year: 2009
Downloads: 179
Quote: 4
Read: Download Dissertation
Abstract
|
The rapid development of information technology also brought a more serious problem of network security.Traditional network security technologies such as firewalls, intrusion detection systems exist significant deficiencies: on the one hand, to prevent more and more frequent "instantaneous attack" (one session to achieve the effect of the attack) could do nothing about it; On the other hand, these technologies in real-time block the invasion of attacks there are obvious deficiencies. Hence the urgent need for new techniques and tools to ensure network security, especially gigabit network defense systems have been high hopes, will become the mainstream of network security technologies.Gigabit network intrusion defense system is composed of three parts: the data packet processing, intrusion detection and intrusion prevention. The protocol data packets analysis, restructuring are the main functions of packet processing. In this paper, the main work of the author focuses on the part of intrusion detection in GNIPS. The author analyses many mechanism of security defense, studies the feature, implement- ation principles, working methods and key technologies of Gigabit network intrusion prevention system. And through these studies, the author gives a highly efficient intrusion prevention system solutions based on load balancing. Mainly covering the following aspects:1. A detailed introduction of the Gigabit network intrusion defense system of the overall program, including hardware selection, the main software architecture, intrusion detection module design and performance considerations. Possible network intrusion defense system improves performance, enhance its adaptability.2. For network bandwidth to increase network intrusion detection system performance requirements, Proposed methods make use of dedicated multi-core processors for intrusion detection, and give the appropriate load balancing strategy, detection engine using snort, multi-platform implementation and improvement of transplant.3. A detailed introduction of the intrusion detection module architecture, including the detection engine data flow diagram, a single detection engine to improve the organizational structure of the rules, pattern-matching algorithm in different network environment to improve adaptability.4. To build a test environment, the preparation of the test procedures discussed in this paper Gigabit network intrusion defense system load balancing subsystem functional testing and performance testing, and conducted performance analysis.Test results show that the discussion Gigabit network intrusion defense system in packet processing subsystem functionality and performance are able to achieve the desired design objectives, and relevance.
|
Related Dissertations
- Research on Parallel Frequent Graph Pattern Mining,TP311.13
- The Research of Malware Detection Technology Based on Active Mode,TP393.08
- Topology Measurement and Security Analysis on Gnutella and eMule Network,TP393.08
- Region-based wireless sensor network key management scheme for research,TP212.9
- SX Provincial Public Security Bureau Network Security Corps Performance Evaluation Index System Design,D631.1
- Remote sensing data processing grid platform design and initial implementation,TP79
- Educational Administration System Optimization Study Online Course,TP393.09
- TCDS car ground data communications system designed to achieve integration in 5T,U29-39
- Research on Algorithm of Parallel Copying Garbage Collection Based on Lisp 2 for Multicore System,TP332
- Research and Design of Linked IPS for IPv6 Based on Multi-core Network Processor,TP393.04
- E-Government Network Security Analysis and Prevention Strategy,TP393.08
- Analysis on DDoS Attacks Detecting Technology Based on Eigenvector,TP393.08
- A Load-Balancing Routing Protocol Based on Traffic Predition by a Neural Network Model in Ad Hoc Network,TN929.5
- Research and Simulation of Routing Protocol for Space Redundancy Self-Organizing Networks,TN929.5
- Research and Implementation of Data Parallel Programming Platform Based on Multi-Core,TP332
- Load Balancing Strategy Based on Software Aging,TP311.52
- Research and Design of Isolation and Monitoring Technology on Government Network,TP393.08
- The Research of Network Intrusion Detection Technologybased on RBFNN-HMM,TP393.08
- Research and Implementation of AOMDV-L Protocol in Ad Hoc Network,TN929.5
- The Application of Linux Cluster System Based on the Load Balancing Algorithm in Webgis,TP393.05
- Hunan Railway Professional Technical College Campus Network Security System Research and Implementation,TP393.18
CLC: > Industrial Technology > Automation technology,computer technology > Computing technology,computer technology > Computer applications > Computer network > General issues > Computer Network Security
© 2012 www.DissertationTopic.Net Mobile
|