...
首页> 外文期刊>Journal of Theoretical and Applied Information Technology >AN EFFICIENT CROSS-LAYER BASED INTRUSION DETECTION SYSTEM FOR MOBILE AD HOC NETWORKS
【24h】

AN EFFICIENT CROSS-LAYER BASED INTRUSION DETECTION SYSTEM FOR MOBILE AD HOC NETWORKS

机译:一种基于有效跨层的移动自组织网络入侵检测系统

获取原文
           

摘要

Recently, the widespread availability of wireless communications has led to the growth and significance of wireless Mobile Ad hoc Networks (MANETs). Among the routing layer attacks, packet dropping is one of the most disruptive threats in MANETs. Thus, the malicious nodes can camouflage under the background of harsh channel conditions and reduces the detection accuracy of conventional secure routing protocols. In such circumstances, observing the packet loss rate is not adequate to accurately identify the exact cause of a packet loss. This paper proposes a Cross-layer based distributed and cooperative Intrusion Detection System (IDS) with Dempster-Shafer evidence theory (CID) system to accurately discern and eradicate the intruders using cross layer information. The CID system includes local detection engine and IDS. A local detection engine continuously monitors the network activity and differentiates the packet loss due to harsh channel conditions from the malicious one using the features of physical, MAC, and network layer. When the local detection engine detects malicious activity, it turns on IDS in a node. The IDS utilizes the Dempster-Shafer (DS) evidence theory to collect evidence only from trustworthy nodes and provides a mathematical way to merge the evidence with direct trust value in confirming the malicious activities. Eventually, the proposed CID system is extended with the AODV routing protocol, and evaluated under malicious network traffic. The simulation results show that the CID system outperforms the existing EAACK in terms of attack detection accuracy, and network lifetime.
机译:近来,无线通信的广泛可用性已导致无线移动自组织网络(MANET)的发展和重要性。在路由层攻击中,丢包是MANET中最具破坏性的威胁之一。因此,恶意节点可能在恶劣的信道条件下伪装,并降低了常规安全路由协议的检测精度。在这种情况下,观察数据包丢失率不足以准确识别数据包丢失的确切原因。本文提出了一种基于Dempster-Shafer证据理论(CID)系统的跨层分布式协作入侵检测系统(IDS),以利用跨层信息准确地识别和消除入侵者。 CID系统包括本地检测引擎和IDS。本地检测引擎使用物理,MAC和网络层的功能连续监视网络活动,并区分恶劣信道条件导致的数据包丢失与恶意行为。当本地检测引擎检测到恶意活动时,它将打开节点中的IDS。 IDS利用Dempster-Shafer(DS)证据理论仅从可信任节点收集证据,并提供了一种数学方法来合并具有直接信任价值的证据以确认恶意活动。最终,提出的CID系统使用AODV路由协议进行了扩展,并在恶意网络流量下进行了评估。仿真结果表明,CID系统在攻击检测精度和网络寿命方面均优于现有的EAACK。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号