Abstract

Traditional intrusion prevention systems (IPS) do not support user-driven customization within centralized, managed environments (e.g., software-defined wide area network (SD-WAN) environment). More specifically, traditional IPS rely on manual rule edits, which are error-prone and unscalable across large deployments. Further, handling and rendering tens of thousands of rules requires efficient data models and backend optimizations. Therefore, there is a need for a system that allows users to edit, manage, and deploy IPS signatures in a SD-WAN environment with a unique emphasis on differential rule tracking and lightweight deployment.

Creative Commons License

Creative Commons License
This work is licensed under a Creative Commons Attribution 4.0 License.

Share

COinS