Skip to main content

Exploiting Stateful Inspection of Network Security in Reconfigurable Hardware

  • Conference paper
  • First Online:
Field Programmable Logic and Application (FPL 2003)

Part of the book series: Lecture Notes in Computer Science ((LNCS,volume 2778))

Included in the following conference series:

Abstract

One of the most important areas of a network intrusion detection system (NIDS), stateful inspection, is described in this paper. We present a novel reconfigurable hardware architecture implementing TCP stateful inspection used in NIDS. This is to achieve a more efficient and faster network intrusion detection system as todays’ NIDSs show inefficiency and even fail to perform while encountering the faster Internet. The performance of the NIDS described is expected to obtain a throughput of 3.0 Gbps.

This is a preview of subscription content, log in via an institution to check access.

Access this chapter

Chapter
USD 29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
eBook
USD 39.99
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD 54.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Institutional subscriptions

Preview

Unable to display preview. Download preview PDF.

Unable to display preview. Download preview PDF.

References

  1. Clarkin, M.: Comparison of CyberwallPLUS Intrusion Prevention and Current IDS technology. NETWORK-1, Security Solutions, Inc., White Paper

    Google Scholar 

  2. Postel, J.: Request For comment 793, Transmission control Protocol (1998)

    Google Scholar 

  3. Sergei et al.: SNORTRAN: An Optimizing Compiler for Snort Rules. Fidelis Security Systems, Inc. (2002)

    Google Scholar 

  4. Li, S., et al.: Exploiting Reconfigurable Hardware for Network Security. In: Proc. of 11th Annual IEEE Symposium on Fiels-Programmable Custom Computing Machines (FCCM 2003) (2003)

    Google Scholar 

  5. Necker, M., et al.: TCP-Stream Reassembly and State Tracking in Hardware. In: Proc. of 10th Annual IEEE Symposium on Fiels-Programmable Custom Computing Machines (FCCM 2002), School od Electrical and computer Engineering, Georgia Institute of Technology, Atlanta, GA (2002)

    Google Scholar 

  6. http://www.xilinx.com

Download references

Author information

Authors and Affiliations

Authors

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2003 Springer-Verlag Berlin Heidelberg

About this paper

Cite this paper

Li, S., Tørresen, J., Søråsen, O. (2003). Exploiting Stateful Inspection of Network Security in Reconfigurable Hardware. In: Y. K. Cheung, P., Constantinides, G.A. (eds) Field Programmable Logic and Application. FPL 2003. Lecture Notes in Computer Science, vol 2778. Springer, Berlin, Heidelberg. https://doi.org/10.1007/978-3-540-45234-8_142

Download citation

  • DOI: https://doi.org/10.1007/978-3-540-45234-8_142

  • Published:

  • Publisher Name: Springer, Berlin, Heidelberg

  • Print ISBN: 978-3-540-40822-2

  • Online ISBN: 978-3-540-45234-8

  • eBook Packages: Springer Book Archive

Publish with us

Policies and ethics