Deep Packet Analyzer By Using Proposed Aho-Corasick Algorithm |
Author(s): |
Sushant Nalawade , Bharati Vidyapeeth College of Engineering; Reshma Walunj, Bharati Vidyapeeth College of Engineering; Chandan Bhatte, Bharati Vidyapeeth College of Engineering ; Prof.D.R.Ingle, Bharati Vidyapeeth College of Engineering |
Keywords: |
Sniffer, Detection, Intrusion, Prevention, Signature, Aho-corasick algorithm |
Abstract |
Deep Packet Analyzer (DPA) lies at the core of Intrusion Detection/Prevention Systems. This type of packet analyzer aims to identify various malware (including spam and viruses) by inspecting both the header and the payload of each packet and comparing it to a known set of patterns. This known set of pattern is stored in the signature database. Despite extensive research effort, ordinary anomaly detection systems still suffer from serious drawbacks such as high false alarm rates due to the enormous variety of network traffic. The intrusion detection system (IDS) proposed in this paper is operates on network flows rather than on entire network packets. Incoming traffic is analyzed using Aho-Corasick Algorithm and comparing with signature database. In short, the proposed IDS receive network traffic and analyze them with a Aho-Corasick Algorithm. |
Other Details |
Paper ID: IJSRDV2I1287 Published in: Volume : 2, Issue : 1 Publication Date: 01/04/2014 Page(s): 662-665 |
Article Preview |
|
|