Network Intrusion Detection System in Latest DFA Compression Methods for Deep Packet Scruting

Vinoth Kumar K
DOI: https://doi.org/10.4018/978-1-7998-6721-0.ch010
2021-01-01
Abstract:The vast majority of the system security applications in today's systems depend on deep packet inspection. In recent years, regular expression matching was used as an important operator. It examines whether or not the packet's payload can be matched with a group of predefined regular expressions. Regular expressions are parsed using the deterministic finite automata representations. Conversely, to represent regular expression sets as DFA, the system needs a large amount of memory, an excessive amount of time, and an excessive amount of per flow state, limiting their practical applications. This chapter explores network intrusion detection systems.
What problem does this paper attempt to address?