Invention Grant
US08732833B2 Two-stage intrusion detection system for high-speed packet processing using network processor and method thereof 有权
用于使用网络处理器的高速分组处理的两级入侵检测系统及其方法

Two-stage intrusion detection system for high-speed packet processing using network processor and method thereof
Abstract:
A system and method for detecting network intrusion by using a network processor are provided. The intrusion detection system includes: a first intrusion detector, configured to use a first network processor to perform intrusion detection on layer 3 and layer 4 of a protocol field among information included in a packet header of a packet transmitted to the intrusion detection system, and when no intrusion is detected, classify the packets according to stream and transmit the classified packets to a second intrusion detector; and a second intrusion detector, configured to use a second network processor to perform intrusion detection through deep packet inspection (DPI) for the packet payload of the packets transmitted from the first intrusion detector. Thereby, intrusion detection for high-speed packets can be performed in a network environment.
Information query
Patent Agency Ranking
0/0