کد مقاله کد نشریه سال انتشار مقاله انگلیسی نسخه تمام متن
430653 688102 2015 19 صفحه PDF دانلود رایگان
عنوان انگلیسی مقاله ISI
Improving network intrusion detection system performance through quality of service configuration and parallel technology
ترجمه فارسی عنوان
بهبود عملکرد سیستم تشخیص نفوذ شبکه از طریق کیفیت خدمات پیکربندی و تکنولوژی موازی
کلمات کلیدی
امنیت شبکه، سیستم تشخیص نفوذ، سیستم محافظت از نفوذ، پردازش موازی، تغییر پیکربندی، کیفیت خدمات
موضوعات مرتبط
مهندسی و علوم پایه مهندسی کامپیوتر نظریه محاسباتی و ریاضیات
چکیده انگلیسی

This paper outlines an innovative software development that utilises Quality of Service (QoS) and parallel technologies in Cisco Catalyst Switches to increase the analytical performance of a Network Intrusion Detection and Protection System (NIDPS) when deployed in high-speed networks. We have designed a real network to present experiments that use a Snort NIDPS. Our experiments demonstrate the weaknesses of NIDPSs, such as inability to process multiple packets and propensity to drop packets in heavy traffic and high-speed networks without analysing them. We tested Snort's analysis performance, gauging the number of packets sent, analysed, dropped, filtered, injected, and outstanding. We suggest using QoS configuration technologies in a Cisco Catalyst 3560 Series Switch and parallel Snorts to improve NIDPS performance and to reduce the number of dropped packets. Our results show that our novel configuration improves performance.

ناشر
Database: Elsevier - ScienceDirect (ساینس دایرکت)
Journal: Journal of Computer and System Sciences - Volume 81, Issue 6, September 2015, Pages 981–999
نویسندگان
, , ,