메뉴 건너뛰기




Volumn 3, Issue 1, 2008, Pages 118-132

An FPGA-based network intrusion detection architecture

Author keywords

Feature extraction; Field programmable gate arrays (FPGA); Network intrusion detection system (NIDS); Principal component analysis (PCA)

Indexed keywords

COMPUTER SOFTWARE; FIELD PROGRAMMABLE GATE ARRAYS (FPGA); FINITE ELEMENT METHOD; TELECOMMUNICATION TRAFFIC;

EID: 39449120804     PISSN: 15566013     EISSN: None     Source Type: Journal    
DOI: 10.1109/TIFS.2007.916288     Document Type: Article
Times cited : (83)

References (39)
  • 1
    • 0034832620 scopus 로고    scopus 로고
    • Outlier detection for high dimensional data
    • presented at the, Santa Barbara, CA, May
    • C. C. Aggarwal and P. S. Yu, "Outlier detection for high dimensional data," presented at the ACM SIGMOD Conf., Santa Barbara, CA, May 2001.
    • (2001) ACM SIGMOD Conf
    • Aggarwal, C.C.1    Yu, P.S.2
  • 7
    • 0039253819 scopus 로고    scopus 로고
    • LOF: Identifying density-based local outliers
    • presented at the, Dallas, TX, May
    • M. M. Breunig, H.-P. Kriegel, R. T. Ng, and J. Sander, "LOF: Identifying density-based local outliers," presented at the ACM SIGMOD Conf., Dallas, TX, May 2000.
    • (2000) ACM SIGMOD Conf
    • Breunig, M.M.1    Kriegel, H.-P.2    Ng, R.T.3    Sander, J.4
  • 9
    • 39449084383 scopus 로고    scopus 로고
    • DARPA Intrusion Detection Evaluation, Online, Available:, 1998
    • DARPA Intrusion Detection Evaluation. [Online]. Available: http://www.ll.mit.edu/IST/ideval. 1998
  • 13
    • 33746426241 scopus 로고    scopus 로고
    • Robustness of Canberra metric in computer intrusion detection
    • presented at the, West Point, NY, U.S. Military Academy
    • S. M. Emran and N. Ye, "Robustness of Canberra metric in computer intrusion detection," presented at the IEEE Workshop on Information Assurance and Security, West Point, NY 2001, U.S. Military Academy.
    • (2001) IEEE Workshop on Information Assurance and Security
    • Emran, S.M.1    Ye, N.2
  • 14
    • 0141440878 scopus 로고    scopus 로고
    • New directions in traffic measurement and accounting
    • presented at the, Protocols for Computer Communication, Pittsburgh, PA
    • C. Estan and G. Varghese, "New directions in traffic measurement and accounting," presented at the ACM SIGCOMM Conf. Applications, Technologies, Architectures, Protocols for Computer Communication, Pittsburgh, PA, 2002.
    • (2002) ACM SIGCOMM Conf. Applications, Technologies, Architectures
    • Estan, C.1    Varghese, G.2
  • 15
    • 84947254894 scopus 로고    scopus 로고
    • A fine-grained parallel pipelined Karhunen-Loeve transform
    • presented at the, Nice, France, Apr
    • M. Fleury, B. Self, and A. C. Downton, "A fine-grained parallel pipelined Karhunen-Loeve transform," presented at the Int. Parallel and Distributed Processing Symp., Nice, France, Apr. 2003.
    • (2003) Int. Parallel and Distributed Processing Symp
    • Fleury, M.1    Self, B.2    Downton, A.C.3
  • 16
    • 39449134238 scopus 로고    scopus 로고
    • B. Jenkins, Jenkins, Hash Functions and Block Ciphers
    • B. Jenkins, Jenkins, Hash Functions and Block Ciphers.
  • 17
    • 0008704989 scopus 로고
    • Applied Multivariate Data Analysis
    • New York: Springer-Verlag
    • J. D. Jobson, Applied Multivariate Data Analysis, Volume II: Categorical and Multivariate Methods. New York: Springer-Verlag, 1992.
    • (1992) Categorical and Multivariate Methods , vol.2
    • Jobson, J.D.1
  • 19
    • 39449108297 scopus 로고    scopus 로고
    • data, Online, Available:, Aug. 1999
    • KDD Cup 1999 data. [Online]. Available: http://www.kdd.ics.uci.edu/ databases/kddcup99/kddcup-99.html. Aug. 1999
    • (1999)
  • 20
    • 14944367082 scopus 로고    scopus 로고
    • Sketch based change detection: Methods, evaluation, and applications
    • presented at the, Miami, FL
    • B. Krishnamurthy, S. Sen, Y. Zhang, and Y. Chen, "Sketch based change detection: Methods, evaluation, and applications," presented at the ACM SIGCOMM Internet Measurement Conf., Miami, FL, 2003.
    • (2003) ACM SIGCOMM Internet Measurement Conf
    • Krishnamurthy, B.1    Sen, S.2    Zhang, Y.3    Chen, Y.4
  • 21
    • 32344452166 scopus 로고    scopus 로고
    • A comparative study of anomaly detection schemes in network intrusion detection
    • presented at the, Minneapolis, MN, May
    • A. Lazarevic, L. Ertoz, V. Kumar, A. Ozgur, and J. Srivastava, "A comparative study of anomaly detection schemes in network intrusion detection," presented at the SIAM Conf. Data Mining, Minneapolis, MN, May 2003.
    • (2003) SIAM Conf. Data Mining
    • Lazarevic, A.1    Ertoz, L.2    Kumar, V.3    Ozgur, A.4    Srivastava, J.5
  • 22
    • 0242456801 scopus 로고    scopus 로고
    • Learning nonstationary models of normal network traffic for detecting novel attacks
    • presented at the, AB, Canada, Jul
    • M. V. Mahoney and P. K. Chan, "Learning nonstationary models of normal network traffic for detecting novel attacks," presented at the ACM SIGKDD Int. Conf. Knowledge Discovery and Data Mining, AB, Canada, Jul. 2002.
    • (2002) ACM SIGKDD Int. Conf. Knowledge Discovery and Data Mining
    • Mahoney, M.V.1    Chan, P.K.2
  • 24
    • 39449117973 scopus 로고    scopus 로고
    • MIT Lincoln Laboratory, DARPA Intrusion Detection Evaluation
    • MIT Lincoln Laboratory, DARPA Intrusion Detection Evaluation.
  • 26
    • 39449109185 scopus 로고    scopus 로고
    • NetFilter/IPtables: Firewalling, NAT and Packet Mangling for Linux 2.4.
    • NetFilter/IPtables: Firewalling, NAT and Packet Mangling for Linux 2.4.
  • 27
    • 34547350005 scopus 로고    scopus 로고
    • A reconfigurable architecture for network intrusion detection using principal component analysis
    • presented at the, Napa, CA, Apr
    • D. Nguyen, A. Das, G. Memik, and A. Choudhary, "A reconfigurable architecture for network intrusion detection using principal component analysis," presented at the IEEE Symp. Field-Programmable Custom Computing Machines, Napa, CA, Apr. 2006.
    • (2006) IEEE Symp. Field-Programmable Custom Computing Machines
    • Nguyen, D.1    Das, A.2    Memik, G.3    Choudhary, A.4
  • 29
    • 68249133072 scopus 로고    scopus 로고
    • TCP splitter: A TCP/IP flow monitor in reconfigurable hardware
    • presented at the, Stanford, CA
    • D. V. Schuehler and J. W. Lockwood, "TCP splitter: A TCP/IP flow monitor in reconfigurable hardware," presented at the Hot Interconnects 10 (HotI-10), Stanford, CA, 2002.
    • (2002) Hot Interconnects 10 (HotI-10)
    • Schuehler, D.V.1    Lockwood, J.W.2
  • 30
    • 1842583287 scopus 로고    scopus 로고
    • Architecture for a hardware-based, TCP/IP content-processing system
    • Jan./Feb
    • D. V. Schuehler, J. Moscola, and J. W. Lockwood, "Architecture for a hardware-based, TCP/IP content-processing system," IEEE Micro., vol. 24, no. 1, pp. 62-69, Jan./Feb. 2004.
    • (2004) IEEE Micro , vol.24 , Issue.1 , pp. 62-69
    • Schuehler, D.V.1    Moscola, J.2    Lockwood, J.W.3
  • 34
    • 20344366573 scopus 로고    scopus 로고
    • Efficient packet classification for network intrusion detection using FPGA
    • presented at the, Monterey, CA, Feb
    • H. Song and J. W. Lockwood, "Efficient packet classification for network intrusion detection using FPGA," presented at the Int. Symp. Field-Programmable Gate Arrays, Monterey, CA, Feb. 2005.
    • (2005) Int. Symp. Field-Programmable Gate Arrays
    • Song, H.1    Lockwood, J.W.2
  • 36
    • 26444599187 scopus 로고    scopus 로고
    • Online, Available
    • Tcpdump Utility. [Online]. Available: http://www.tcpdump.org.
    • Tcpdump Utility
  • 37
    • 39449131412 scopus 로고    scopus 로고
    • Online, Available
    • Tcptrace Utility. [Online]. Available: http://www.jarok.cs.ohiou.edu/ software/tcptrace/index.html.
    • Tcptrace Utility
  • 38
    • 39449083496 scopus 로고    scopus 로고
    • Xilinx Virtex-IIPro-Datasheet [Online]. Available: http://www.direct. xilinx.com/bvdocs/publications/ds083.pdf.
    • Xilinx Virtex-IIPro-Datasheet [Online]. Available: http://www.direct. xilinx.com/bvdocs/publications/ds083.pdf.
  • 39
    • 3543060790 scopus 로고    scopus 로고
    • Internet intrusions: Global characteristics and prevalence
    • presented at the, San Diego, CA
    • V. Yegneswaran, P. Barford, and J. Ullrich, "Internet intrusions: Global characteristics and prevalence," presented at the ACM SIGMETRICS, San Diego, CA, 2003.
    • (2003) ACM SIGMETRICS
    • Yegneswaran, V.1    Barford, P.2    Ullrich, J.3


* 이 정보는 Elsevier사의 SCOPUS DB에서 KISTI가 분석하여 추출한 것입니다.