Sciweavers

ANCS
2015
ACM

Scaling the Performance of Network Intrusion Detection with Many-core Processors

8 years 11 days ago
Scaling the Performance of Network Intrusion Detection with Many-core Processors
In this work, we present a highly scalable network intrusion detection system on many-core processors. To maximize the NIDS performance, we take advantage of the underlying hardware and adhere to four design principles: shared-nothing architecture, computation offloading, lightweight data structure, and flow offloading. Through the experimental results, we find that our design choices can significantly improve the NIDS performance (79 Gbps with 1514B synthetic packets). We believe that our design decisions can be easily extended to other many-core processors and programmable NICs. Categories and Subject Descriptors C.2.1 [Computer-Communication Networks]: Network Architecture and Design; C.2.3 [Computer-Communication Networks]: Network Operations—Network monitoring General Terms Performance Keywords many-core, network intrusion detection system, parallel, offloading
Jaehyun Nam, Muhammad Asim Jamshed, Byungkwon Choi
Added 16 Apr 2016
Updated 16 Apr 2016
Type Journal
Year 2015
Where ANCS
Authors Jaehyun Nam, Muhammad Asim Jamshed, Byungkwon Choi, Dongsu Han, KyoungSoo Park
Comments (0)