透過您的圖書館登入
IP:216.73.216.35
  • 會議論文
  • OpenAccess

基於智慧網卡實作軟體定義網路之異常偵測系統

摘要


網路安全的維繫會需要使用大量計算資源來進行準確的流量分析與異常行為判斷。本論文於軟體定義網路環境中,實作一套異常流量偵測系統,此偵測系統結合智慧網卡和支援多執行緒的開源入侵偵測系統Suricata,透過智慧網卡的輔助運算能力,再藉由使用者分配之執行緒數量進行分類後的流量資訊規則判斷,若發現異常流量,即發出警報通知SDN控制器進行相關動作阻擋異常流量來源。透過智慧網卡與Suricata的組合,可以大幅降低SDN控制器系統運算之負載。

並列摘要


The maintenance of network security requires a lot of computing resources to perform accurate abnormal traffic and behavior analysis. This paper implements an abnormal traffic detection system in a software-defined networking environment. This system integrates the Suricata, an open-source intrusion detection system, with a smart network card. The system supports multiple-thread execution with the auxiliary computing power of the smart network card. If abnormal traffic flow is found, an alarm is issued to notify the SDN controller for proper actions against the anomaly. Through the combination of smart network card and Suricata, the load of SDN controller system operation can be greatly reduced.

並列關鍵字

Software Define Network Suricata SmartNIC

延伸閱讀