Analyze and Improvement of BM Algorithm

作者: Tong Yang , Si-si Wang , Xiang-dong Qiao , Qi Chen

DOI: 10.1109/WICOM.2009.5302544

关键词: Intrusion detection systemMatching (graph theory)Computer scienceAlgorithmString searching algorithm

摘要: when network is overload, snort spends a lot of time to matching rules. The algorithm determines the performance intrusion detection system large extent. Snort adopts BM in default, order enhance efficiency which based on snort, this paper analyzes firstly, and proposes an improved algorithm. Secondly, thesis compares two algorithms (BM algorithm) theoretically, does quantitative description extent according experimental results. Finally, improve applied system, have achieved good

参考文章(8)
Yang Wang, Hidetsune Kobayashi, An Improved Technology for Content Matching Intrusion Detection System international conference on software, telecommunications and computer networks. pp. 238- 241 ,(2006) , 10.1109/SOFTCOM.2006.329755
Zhou Chunyue, Liu Yun, Zhang Hongke, A Pattern matching based Network Intrusion Detection System international conference on control, automation, robotics and vision. pp. 1- 4 ,(2006) , 10.1109/ICARCV.2006.345459
Robert S. Boyer, J. Strother Moore, A fast string searching algorithm Communications of the ACM. ,vol. 20, pp. 762- 772 ,(1977) , 10.1145/359842.359859
Spyros Antonatos, Kostas G. Anagnostakis, Evangelos P. Markatos, Generating realistic workloads for network intrusion detection systems workshop on software and performance. ,vol. 29, pp. 207- 215 ,(2004) , 10.1145/974043.974078
Frantisek Franek, Christopher G. Jennings, William F. Smyth, A Simple Fast Hybrid Pattern-Matching Algorithm Combinatorial Pattern Matching. pp. 288- 297 ,(2005) , 10.1007/11496656_25
Daniel M. Sunday, A very fast substring search algorithm Communications of the ACM. ,vol. 33, pp. 132- 142 ,(1990) , 10.1145/79173.79184
Yong Huang, Lingdi Ping, Xuezeng Pan, Li Jiang, Xiaoning Jiang, A Fast Improved Pattern Matching Algorithm for Biological Sequences international symposium on computational intelligence and design. ,vol. 2, pp. 375- 378 ,(2008) , 10.1109/ISCID.2008.117
A.N.M.Ehtesham Rafiq, M.Watheq El-Kharashi, Fayez Gebali, A fast string search algorithm for deep packet classification Computer Communications. ,vol. 27, pp. 1524- 1538 ,(2004) , 10.1016/J.COMCOM.2004.06.005