Lightweight intrusion detection system and method for optical communication equipment

The invention discloses a lightweight intrusion detection system and method for optical communication equipment, and relates to the technical field of intrusion detection of optical communication equipment. The method comprises a user space program and a kernel space program which are both arranged...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: YAN HENGHUI, WANG BO, ZHANG JI
Format: Patent
Sprache:chi ; eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:The invention discloses a lightweight intrusion detection system and method for optical communication equipment, and relates to the technical field of intrusion detection of optical communication equipment. The method comprises a user space program and a kernel space program which are both arranged in an OpenWRT system; the user space program is used for acquiring an IP data packet, performing configuration initialization and rule initialization on the acquired network data, and sending the IP data packet to the kernel space program; and the kernel space program is used for realizing the main functions of network intrusion detection on the sent IP data packet, including data packet decoding, payload (payload data) extraction, protocol analysis, content search/matching and intrusion detection on the payload, and outputting suspicious data to a corresponding Log log record in the user space program. According to the system, under the same hardware platform, the network throughput rate can be greatly improved, a