Traffic Distributor for High-Speed Network Intrusion Detection System

YU Rong,SUN Zhi,CHEN Jia,MEI Shunliang,DAI Yiqi
DOI: https://doi.org/10.3321/j.issn:1000-0054.2005.10.022
2005-01-01
Abstract:Intrusion detection technology is an indispensable way to protect the network security.This paper presents a high-speed intrusion detection system(IDS framework based on network processor and detection cluster.Two hardware algorithms were developed for the traffic distributor.One is the high-speed data-receiving program with the IXP1200 network processor,while the other is the load balance policy based on the destination media access control(MAC address.Tests show that the first algorithm achieves more than(1 Gb/s data-capturing ability,while the second algorithm is a satisfactery trade-off between protecting information integrity and reducing computational complexity.
What problem does this paper attempt to address?