Publication Details
Traffic Scanner
Kořenek Jan, doc. Ing., Ph.D. (DCSY FIT BUT)
Hank Andrej, Ing. (FIT BUT)
Snort, acceleration, FPGA
Intrusion detection system is an integrated software/hardware tool capable of detecting unauthorised access to computer systems and malicious network traffic such as viruses, trojan horses and worms. This technical report presents the system architecture of the Traffic Scanner which is a hardware accelerated IDS based on Field-Programmable Gate Arrays (FPGAs). The designed system supports rules described in Snort-compatible format and can be configured using a web interface. System uses an architecture based on non-deterministic finite automaton for fast pattern
matching. Using this approach, throughput up to 3.2 Gbps is achieved on the COMBO6X card for all rules from Snort database.
@TECHREPORT{FITPUB8395, author = "Petr Kobiersk\'{y} and Jan Ko\v{r}enek and Andrej Hank", title = "Traffic Scanner", pages = "55--67", year = 2007, location = "P\v{r}\'{i}bram, CZ", publisher = "CESNET National Research and Education Network", ISBN = "978-80-239-9285-4", language = "czech", url = "https://www.fit.vut.cz/research/publication/8395" }