This research work has focussed on analysing the efficacy of the virtualization concept for Network Intrusion Detection Systems (NIDS) in the high-speed environment. We have selected an open source NIDS, Snort for evaluation. Snort has been evaluated on virtual systems built on Windows XP SP2, Linux 2.6 and Free BSD 7.1 platforms. Our results have identified a strong performance limitation of NIDS running on virtual platforms. This can be concluded that virtualization is not an ideal solution for NIDS in high-speed environments. © Springer-Verlag 2009.
CITATION STYLE
Akhlaq, M., Alserhani, F., Awan, I. U., Cullen, A. J., Mellor, J., & Mirchandani, P. (2009). Virtualization in network intrusion detection systems. In Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics) (Vol. 5872 LNCS, pp. 6–8). https://doi.org/10.1007/978-3-642-05290-3_3
Mendeley helps you to discover research relevant for your work.