作者: Tong Yang , Si-si Wang , Xiang-dong Qiao , Qi Chen
DOI: 10.1109/WICOM.2009.5302544
关键词: Intrusion detection system 、 Matching (graph theory) 、 Computer science 、 Algorithm 、 String searching algorithm
摘要: when network is overload, snort spends a lot of time to matching rules. The algorithm determines the performance intrusion detection system large extent. Snort adopts BM in default, order enhance efficiency which based on snort, this paper analyzes firstly, and proposes an improved algorithm. Secondly, thesis compares two algorithms (BM algorithm) theoretically, does quantitative description extent according experimental results. Finally, improve applied system, have achieved good