Back to Search Start Over

Gnort: High Performance Network Intrusion Detection Using Graphics Processors.

Authors :
Vasiliadis, Giorgos
Antonatos, Spiros
Polychronakis, Michalis
Markatos, Evangelos P.
Ioannidis, Sotiris
Source :
Recent Advances in Intrusion Detection (9783540874027); 2008, p116-134, 19p
Publication Year :
2008

Abstract

The constant increase in link speeds and number of threats poses challenges to network intrusion detection systems (NIDS), which must cope with higher traffic throughput and perform even more complex per-packet processing. In this paper, we present an intrusion detection system based on the Snort open-source NIDS that exploits the underutilized computational power of modern graphics cards to offload the costly pattern matching operations from the CPU, and thus increase the overall processing throughput. Our prototype system, called Gnort, achieved a maximum traffic processing throughput of 2.3 Gbit/s using synthetic network traces, while when monitoring real traffic using a commodity Ethernet interface, it outperformed unmodified Snort by a factor of two. The results suggest that modern graphics cards can be used effectively to speed up intrusion detection systems, as well as other systems that involve pattern matching operations. [ABSTRACT FROM AUTHOR]

Details

Language :
English
ISBNs :
9783540874027
Database :
Complementary Index
Journal :
Recent Advances in Intrusion Detection (9783540874027)
Publication Type :
Book
Accession number :
76725669
Full Text :
https://doi.org/10.1007/978-3-540-87403-4_7