Sciweavers

TIFS
2008

An FPGA-Based Network Intrusion Detection Architecture

13 years 4 months ago
An FPGA-Based Network Intrusion Detection Architecture
Abstract--Network intrusion detection systems (NIDSs) monitor network traffic for suspicious activity and alert the system or network administrator. With the onset of gigabit networks, current generation networking components for NIDS will soon be insufficient for numerous reasons; most notably because the existing methods cannot support high-performance demands. Field-programmable gate arrays (FPGAs) are an attractive medium to handle both high throughput and adaptability to the dynamic nature of intrusion detection. In this work, we design an FPGA-based architecture for anomaly detection in network transmissions. We first develop a feature extraction module (FEM) which aims to summarize network information to be used at a later stage. Our FPGA implementation shows that we can achieve significant performance improvements compared to existing software and application-specific integrated-circuit implementations. Then, we go one step further and demonstrate the use of principal component...
Abhishek Das, David Nguyen, Joseph Zambreno, Gokha
Added 15 Dec 2010
Updated 15 Dec 2010
Type Journal
Year 2008
Where TIFS
Authors Abhishek Das, David Nguyen, Joseph Zambreno, Gokhan Memik, Alok N. Choudhary
Comments (0)