Network Security White Papers
WIND: Workload-Aware INtrusion Detection
Overview Intrusion detection and prevention systems have become essential to the protection of critical networks across the Internet. Widely deployed IDS and IPS systems are based around a database of known malicious signatures. This database is growing quickly while at the same time the signatures are getting more complex. These trends place additional performance requirements on the rule-matching engine inside IDSs and IPSs, which check each signature against an incoming packet. Existing approaches to signature evaluation apply statically-defined optimizations that do not take into account the network in which the IDS or IPS is deployed or the characteristics of the signature database.
| Publisher | University of Michigan | File Format | |
|---|---|---|---|
| Date Published | July 2006 | ||
| Format | White Papers | ||
| Topics | |||



