Load Balancing Algorithm for High-Speed Network Intrusion Detection Systems

JIANG Wenbao,HAO Shuang,DAI Yiqi,LIU Tinghua
DOI: https://doi.org/10.3321/j.issn:1000-0054.2006.01.028
2006-01-01
Abstract:The performance of high-speed network intrusion detection systems(nIDSs) is improved by load balancing algorithms developed for high-speed nIDSs.Three load balancing policies were analyzed to develop a flow-based dynamic load balancing algorithm based on nIDSs using multiple detection engines.The algorithm divides the data stream according to the current value of each detection engine's load using a dynamic feed and prediction mechanism.The incoming data packets for a new session are forwarded to the engine that currently has the lightest load.Test results show that the algorithm performs better than the Round Robin algorithm,especially when a large number of concurrent detection engines are used in heavy network traffic environments.
What problem does this paper attempt to address?