Title :
New string matching technology for network security
Author :
Bai, Yuebin ; Kobayashi, Hidetsune
Author_Institution :
Nihon Univ., Tokyo, Japan
Abstract :
String matching is a comprehensive applicable key technology beyond intrusion detection systems (IDS), and many areas can benefit from faster string matching algorithm. Which can be used in IDS, firewall et al network security applications. These applications are usually deployed at choke points of a network where there is heavily traffic. Using lower efficient string matching algorithm may make these applications to become a performance bottleneck in network. So it is very necessary to develop faster and more efficient string matching algorithms in order to overcome the troubles on performance. On a basis of Boyer-Moore-Horspool algorithm, a new string matching algorithm is presented in this paper. The algorithm is described in detail. The new algorithm has been greatly improved. The algorithm is one simplification of Boyer-Moore-Horspool algorithm. Array NEXT in Preprocessing stage is redesigned. A novel generated rules are presented. Using these rules, a simple NEXT is generated. And based on the concept of reference point, all make the algorithm to have better performance and more efficient. These characteristics will be useful in all these applications. Main features of the algorithm are presented, then explained its work processes. The algorithm also passed test and is validated. The test results show that the algorithm has better performance than Boyer-Moore algorithm and Boyer-Moore-Horspool algorithm, and more simple and efficient.
Keywords :
computer networks; security of data; string matching; telecommunication security; NEXT; firewall; intrusion detection systems; network security; performance bottleneck; reference point; string matching technology; Application software; Automata; Detectors; Inductors; Intrusion detection; Pattern matching; Software algorithms; Telecommunication traffic; Testing; Text processing;
Conference_Titel :
Advanced Information Networking and Applications, 2003. AINA 2003. 17th International Conference on
Print_ISBN :
0-7695-1906-7
DOI :
10.1109/AINA.2003.1192870