Improving the Database Logging Performance of the Snort Network Intrusion Detection Sensor by Lambert Schaelicke on 11/12/03

Presents and evaluates a performance optimization technique that caches the contents of a database table to reduce the number of queries. When applied to the Snort intrusion detection sensor and the ACID database, this technique reduces alert logging overhead by 25 percent.

