Network Security White Papers

WIND: Workload-Aware INtrusion Detection

Overview Intrusion detection and prevention systems have become essential to the protection of critical networks across the Internet. Widely deployed IDS and IPS systems are based around a database of known malicious signatures. This database is growing quickly while at the same time the signatures are getting more complex. These trends place additional performance requirements on the rule-matching engine inside IDSs and IPSs, which check each signature against an incoming packet. Existing approaches to signature evaluation apply statically-defined optimizations that do not take into account the network in which the IDS or IPS is deployed or the characteristics of the signature database.

Further White Paper Details
PublisherUniversity of Michigan File FormatPDF
Date PublishedJuly 2006
FormatWhite Papers   
Topics

Quick Sitemap Links: