CT-T:Exploiting Multi-Core CPUs for Parallelizing Network Intrusion Prevention

CT-T:利用多核 CPU 并行化网络入侵防御

基本信息

  • 批准号:
    0716636
  • 负责人:
  • 金额:
    $ 49.94万
  • 依托单位:
  • 依托单位国家:
    美国
  • 项目类别:
    Continuing Grant
  • 财政年份:
    2007
  • 资助国家:
    美国
  • 起止时间:
    2007-09-01 至 2010-08-31
  • 项目状态:
    已结题

项目摘要

The performance pressures on implementing effective network security monitoring are growing fiercely in multiple dimensions, outpacing improvements in CPU performance. The situation has now become dire with the end of Moore's Law for single CPUs. In general, hardware vendors now turn to parallel execution---many cores and many threads---to sustain performance growth. But adapting network security monitoring to such parallelism raises a host of challenging issues.This project seeks to develop methodologies for effectively parallelizing in-depth security analysis of network activity. Doing so requires structuring the processing into separate, low-level threads suitable for concurrent execution, for which several key issues must be addressed: forwarding packets only when all relevant threads have finished their vetting; minimizing inter-thread communication in the presence of global analysis algorithms; optimizing memory access patterns for locality; and providing effective performance debugging tools.The work centers around an event-oriented underlying architecture, which allows for exposing many opportunities for concurrent execution due to the decoupled asynchrony that events introduce into the flow of analysis. In addition, by associating events with the packets that ultimately stimulated them, the system can make sound decisions for resolving whether and when it becomes safe to forward pending packets.Ultimately, the effort aims to enable network intrusion prevention to reap both the benefits of executing on general purpose commodity hardware, as well as the exponential scaling that Moore's Law promises for future parallel processors.
实施有效网络安全监控的性能压力在多个方面急剧增加,超过了CPU性能的改进。 随着单CPU的摩尔定律的终结,情况变得可怕。 一般来说,硬件供应商现在转向并行执行-多个内核和多个线程-以维持性能增长。 但是,使网络安全监测适应这种并行性提出了一系列具有挑战性的问题。本项目旨在开发有效并行深入的网络活动安全分析的方法。 这样做需要将处理结构化为适合并发执行的单独的低级别线程,为此必须解决几个关键问题:仅在所有相关线程都完成审查时才转发数据包;在全局分析算法存在的情况下最小化线程间通信;优化局部内存访问模式;并提供有效的性能调试工具。工作围绕面向事件的底层架构,由于事件引入到分析流中的解耦的并发性,这允许暴露许多并发执行的机会。 此外,通过将事件与最终激发它们的数据包相关联,系统可以做出合理的决策,以解决转发挂起的数据包是否以及何时变得安全。最终,这项工作的目的是使网络入侵防御既能获得在通用商品硬件上执行的好处,又能获得摩尔定律为未来并行处理器承诺的指数级扩展。

项目成果

期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ monograph.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ sciAawards.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ conferencePapers.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ patent.updateTime }}

Vern Paxson其他文献

A Longitudinal View of HTTP Traffic
HTTP 流量的纵向视图

Vern Paxson的其他文献

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

{{ truncateString('Vern Paxson', 18)}}的其他基金

II-New: Enabling Security Analysis at Scale
II-新:实现大规模安全分析
  • 批准号:
    1406041
  • 财政年份:
    2014
  • 资助金额:
    $ 49.94万
  • 项目类别:
    Standard Grant
TWC: Phase: Small: Censorship Counterstrike via Measurement, Filtering, Evasion, and Protocol Enhancement
TWC:阶段:小:通过测量、过滤、规避和协议增强进行审查反击
  • 批准号:
    1223717
  • 财政年份:
    2012
  • 资助金额:
    $ 49.94万
  • 项目类别:
    Standard Grant
NeTS: Large: Collaborative Research: Measuring and Modeling the Dynamics of IPv4 Address Exhaustion
NeTS:大型:协作研究:IPv4 地址耗尽动态的测量和建模
  • 批准号:
    1111672
  • 财政年份:
    2011
  • 资助金额:
    $ 49.94万
  • 项目类别:
    Continuing Grant
CT-L: Collaborative Research: Comprehensive Application Analysis and Control
CT-L:协作研究:综合应用分析与控制
  • 批准号:
    0831535
  • 财政年份:
    2008
  • 资助金额:
    $ 49.94万
  • 项目类别:
    Continuing Grant
CT-T: Establishing a Cross-Institutional Platform for Cooperative Security Monitoring and Forensics
CT-T:建立跨机构合作安全监控和取证平台
  • 批准号:
    0716640
  • 财政年份:
    2007
  • 资助金额:
    $ 49.94万
  • 项目类别:
    Standard Grant
CT-T: Approaches to Network Defense Proven in Open Scientific Environments
CT-T:在开放科学环境中经过验证的网络防御方法
  • 批准号:
    0627320
  • 财政年份:
    2006
  • 资助金额:
    $ 49.94万
  • 项目类别:
    Standard Grant
NeTS-FIND: Collaborative Research: Network Fabric for Personal, Social, and Urban Sensing Applications
NeTS-FIND:协作研究:用于个人、社交和城市传感应用的网络结构
  • 批准号:
    0626539
  • 财政年份:
    2006
  • 资助金额:
    $ 49.94万
  • 项目类别:
    Continuing Grant
Collaborative Proposal Cybertrust: Center for Internet Epidemiology and Defenses
协作提案 Cyber​​trust:互联网流行病学和防御中心
  • 批准号:
    0433702
  • 财政年份:
    2004
  • 资助金额:
    $ 49.94万
  • 项目类别:
    Continuing Grant
STI: Viable Network Defense for Scientific Research Institutions
STI:科研机构可行的网络防御
  • 批准号:
    0334088
  • 财政年份:
    2003
  • 资助金额:
    $ 49.94万
  • 项目类别:
    Continuing Grant
NRT: Collaborative Research: Testing and Benchmarking Methodologies for Future Network Security Mechanisms
NRT:协作研究:未来网络安全机制的测试和基准测试方法
  • 批准号:
    0335290
  • 财政年份:
    2003
  • 资助金额:
    $ 49.94万
  • 项目类别:
    Cooperative Agreement

相似海外基金

CAREER: Structure Exploiting Multi-Agent Reinforcement Learning for Large Scale Networked Systems: Locality and Beyond
职业:为大规模网络系统利用多智能体强化学习的结构:局部性及其他
  • 批准号:
    2339112
  • 财政年份:
    2024
  • 资助金额:
    $ 49.94万
  • 项目类别:
    Continuing Grant
Proto-OKN Theme 1: Exploiting Federal Data and Beyond: A Multi-modal Knowledge Network for Comprehensive Wildlife Management under Climate Change
Proto-OKN 主题 1:利用联邦数据及其他数据:气候变化下综合野生动物管理的多模式知识网络
  • 批准号:
    2333795
  • 财政年份:
    2023
  • 资助金额:
    $ 49.94万
  • 项目类别:
    Cooperative Agreement
CAREER: Identifying and Exploiting Multi-Agent Symmetries
职业:识别和利用多智能体对称性
  • 批准号:
    2237963
  • 财政年份:
    2023
  • 资助金额:
    $ 49.94万
  • 项目类别:
    Continuing Grant
Exploiting multi-task learning for endoscopic vision in robotic surgery
在机器人手术中利用多任务学习实现内窥镜视觉
  • 批准号:
    2740873
  • 财政年份:
    2022
  • 资助金额:
    $ 49.94万
  • 项目类别:
    Studentship
Exploiting Multi-Stability to Enable Mechanical Intelligence for Versatile and Efficient Control of Soft Robotic Locomotion and Manipulation
利用多稳定性实现机械智能,实现软机器人运动和操纵的多功能、高效控制
  • 批准号:
    2239673
  • 财政年份:
    2022
  • 资助金额:
    $ 49.94万
  • 项目类别:
    Standard Grant
Exploiting the resilience of masonry arch bridge infrastructure: a 3D multi-level modelling framework
充分利用砖石拱桥基础设施的弹性:3D 多层建模框架
  • 批准号:
    EP/T001607/1
  • 财政年份:
    2019
  • 资助金额:
    $ 49.94万
  • 项目类别:
    Research Grant
Exploiting Multi-Stability to Enable Mechanical Intelligence for Versatile and Efficient Control of Soft Robotic Locomotion and Manipulation
利用多稳定性实现机械智能,实现软机器人运动和操纵的多功能、高效控制
  • 批准号:
    1933124
  • 财政年份:
    2019
  • 资助金额:
    $ 49.94万
  • 项目类别:
    Standard Grant
Exploiting the resilience of masonry arch bridge infrastructure: a 3D multi-level modelling framework
充分利用砖石拱桥基础设施的弹性:3D 多层建模框架
  • 批准号:
    EP/T001348/1
  • 财政年份:
    2019
  • 资助金额:
    $ 49.94万
  • 项目类别:
    Research Grant
Exploiting the resilience of masonry arch bridge infrastructure: a 3D multi-level modelling framework
充分利用砖石拱桥基础设施的弹性:3D 多层建模框架
  • 批准号:
    EP/T001305/1
  • 财政年份:
    2019
  • 资助金额:
    $ 49.94万
  • 项目类别:
    Research Grant
Signal bandwidth enhancement in Parametric amplifiErs by Exploiting multi-moDe nonlinear effects in fibres (SPEED)
通过利用光纤中的多模非线性效应(SPEED)增强参量放大器的信号带宽
  • 批准号:
    EP/P026575/1
  • 财政年份:
    2017
  • 资助金额:
    $ 49.94万
  • 项目类别:
    Research Grant
{{ showInfoDetail.title }}

作者:{{ showInfoDetail.author }}

知道了