首页> 外文会议>Information systems security >BARTER: Behavior Profile Exchange for Behavior-Based Admission and Access Control in MANETs
【24h】

BARTER: Behavior Profile Exchange for Behavior-Based Admission and Access Control in MANETs

机译:易货:用于在MANET中基于行为的准入和访问控制的行为配置文件交换

获取原文
获取原文并翻译 | 示例

摘要

Mobile Ad-hoc Networks (MANETs) are very dynamic networks with devices continuously entering and leaving the group. The highly dynamic nature of MANETs renders the manual creation and update of policies associated with the initial incorporation of devices to the MANET (admission control) as well as with anomaly detection during communications among members (access control) a very difficult task. In this paper, we present BARTER, a mechanism that automatically creates and updates admission and access control policies for MANETs based on behavior profiles. BARTER is an adaptation for fully distributed environments of our previously introduced BB-NAC mechanism for NAC technologies. Rather than relying on a centralized NAC enforcer, MANET members initially exchange their behavior profiles and compute individual local definitions of normal network behavior. During admission or access control, each member issues an individual decision based on its definition of normalcy. Individual decisions are then aggregated via a threshold cryptographic infrastructure that requires an agreement among a fixed amount of MANET members to change the status of the network. We present experimental results using content and volumetric behavior profiles computed from the ENRON dataset. In particular, we show that the mechanism achieves true rejection rates of 95% with false rejection rates of 9%.
机译:移动自组织网络(MANET)是非常动态的网络,设备不断进入和离开该组。 MANET的高度动态特性使手动创建和更新与将设备初始合并到MANET有关的策略(准入控制)以及与成员之间进行通信期间的异常检测(访问控制)成为一项非常困难的任务。在本文中,我们介绍了BARTER,这是一种基于行为配置文件自动创建和更新MANET的允许和访问控制策略的机制。 BARTER是我们先前针对NAC技术引入的BB-NAC机制在完全分布式环境中的一种改编。 MANET成员最初不依赖中央NAC强制实施者,而是交换其行为配置文件并计算正常网络行为的各个本地定义。在准入或访问控制期间,每个成员根据其正常性定义发布一个单独的决定。然后,通过阈值加密基础结构汇总各个决策,该基础结构要求固定数量的MANET成员之间达成协议以更改网络状态。我们使用从ENRON数据集计算出的内容和体积行为特征来呈现实验结果。特别是,我们证明了该机制可实现95%的真实拒绝率和9%的错误拒绝率。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号