An intrusion detection sensor for the NetVM virtual processor

  • Authors:
  • O. Morandi;G. Moscardi;F. Risso

  • Affiliations:
  • Dipartimento di Automatica e Informatica, Politecnico di Torino, Italy;Dipartimento di Automatica e Informatica, Politecnico di Torino, Italy;Dipartimento di Automatica e Informatica, Politecnico di Torino, Italy

  • Venue:
  • ICOIN'09 Proceedings of the 23rd international conference on Information Networking
  • Year:
  • 2009

Quantified Score

Hi-index 0.01

Visualization

Abstract

In the wide scenario of packet processing architectures, the development of ever sophisticated applications faces the challenge of finding a balance between different requirements: ever increasing performance, flexibility, and portability of the software across different platforms and hardware architectures. The Network Virtual Machine (NetVM) aims at responding to such defy by taking into account all these elements and by providing an abstract architecture for developing today's packet processing applications. In order to demonstrate that the NetVM platform can be profitably employed for the development of complex applications, we developed a Snort-like network intrusion detection sensor. In this paper we present its architecture and show that NetVM represents an excellent target for the dynamic generation of packet processing programs.