随着高速以太网的广泛应用和网络入侵行为的日益复杂化,对网络入侵防御系统性能的要求越来越高.通过对传统入侵防御系统工作原理的分析,设计并实现了基于多核处理器的入侵防御系统.通过对系统中的多核处理单元进行分组,并构建共享缓冲队列实现工作组间的数据传递,使得系统在多核处理器环境下能够并行工作.试验结果表明,敢进后系统的效率有显著提高,丢包率也明显降低.
Requirements for a high-quality Intrusion Prevention System (IPS) are becoming more and more demanding with the wide use of high speed Ethernet and increasing complexity of network intrusion. By the analysis of the working principles in the traditional IPS, a improved IPS based on the multicore processor is designed and implemented. In this system, multicore processing units are divided into groups among which the data can be transmitted by building shared cache queues. In this way, IPS can work parallelized with a multicore processor. The results of our experiments demonstrate that the efficiency is greatly enhanced and that the packet loss ratio decreases.