An New Rule Matching Algorithm of Snort based on Special String Filter
Along with quick development of computer and network, the tools and means of attack are more and more complicated. Pure firewall cant protect the security of network. Because of the above background, IDS (Intrusion Detection System) is born at the right moment as an important component of detecting the attack aiming at computer and network. The paper presents an improved rule matching algorithm of Snort IDS system based on special string filter. The times of rule matching is reduced effectively by the algorithm. According to the analysis of test data, the algorithm enhances the speed of intrusion detection and performance of IDS greatly.
IDS Snort rule matching special string
Chen Xiao Tan Huimin Liu Wei
College of Software Shenyang Normal University Shenyang China Postgraduate Division Shenyang Normal University Shenyang China Research and Develop Center Torch Bigtide Limited Company Shenyang China
国际会议
秦皇岛
英文
50-53
2010-11-05(万方平台首次上网日期,不代表论文的发表时间)