DocumentCode
3207363
Title
Fast and scalable conflict detection for packet classifiers
Author
Baboescu, Florin ; Varghese, George
Author_Institution
Univ. of California, USA
fYear
2002
fDate
12-15 Nov. 2002
Firstpage
270
Lastpage
279
Abstract
Packet filters provide rules for classifying packets based on header fields. High speed packet classification has received much study. However, the twin problems of fast updates and fast conflict detection have not received much attention. A conflict occurs when two classifiers overlap, potentially creating ambiguity for packets that match both filters. For example, if Rule 1 specifies that all packets going to CNN be rate controlled and Rule 2 specifies that all packets coming from Walmart be given high priority, the rules conflict for traffic from Walmart to CNN. There has been prior work on efficient conflict detection for two dimensional classifiers. However, the best known algorithm for conflict detection for general classifiers is the naive O(N2) algorithm of comparing each pair of rules for a conflict. We describe an efficient and scalable conflict detection algorithm for the general case that is significantly faster. For example, for a database of 20,000 rules, our algorithm is 40 times faster than the naive implementation. Even without considering conflicts, our algorithm also provides a packet classifier with fast updates and fast lookups that can be used for stateful packet filtering.
Keywords
authorisation; packet switching; signal detection; telecommunication network routing; transport protocols; 2D classifiers; IP address; commercial firewall databases; database; fast conflict detection; fast updates; header fields; high speed packet classification; packet classifiers; packet filters; rate controlled packets; routers; scalable conflict detection; two dimensional classifiers; Access protocols; Bandwidth; Cellular neural networks; Databases; Detection algorithms; Diffserv networks; Filtering algorithms; Matched filters; Multiprotocol label switching; Traffic control;
fLanguage
English
Publisher
ieee
Conference_Titel
Network Protocols, 2002. Proceedings. 10th IEEE International Conference on
ISSN
1092-1648
Print_ISBN
0-7695-1856-7
Type
conf
DOI
10.1109/ICNP.2002.1181414
Filename
1181414
Link To Document