【24h】

H2BSAP: A Hop-by-Hop Broadcast Source Authentication Protocol for WSN to mitigate DoS Attacks

机译:H2BSAP:WSN的逐跳广播源身份验证协议,可缓解DoS攻击

获取原文

摘要

Broadcast communication is a dominant communication pattern in WSN. As a major security concern, the broadcast source authentication is needed to mitigate impersonation of a broadcast source, modifications of its broadcasted data, or depletion of the limited energy of sensors caused by an attacker injecting useless broadcast traffic. Several Broadcast Source Authentication Protocols (BSAPs) were proposed in the literature. One class of them is time asymmetry-based BSAPs like μESLA [1] protocol. These BSAPs operate delayed key-disclosure to secure broadcast communications, but they suffer from a kind of DoS attack, called resource-draining attack, in which an attacker floods the network with fake messages that all sensors of the network buffer and forward, then later verify, thus causing buffer over.ow and batteries depletion. In this paper we propose the H2BSAP protocol, to overcome this kind of DoS attacks, by achieving a hop-by-hop authentication of broadcasted messages, thus limiting the damage of an attacker to its one-hop neighbors only, instead of the entire network.
机译:广播通信是WSN中的主要通信模式。作为主要的安全问题,需要广播源身份验证来减轻广播源的伪造,对其广播数据的修改或由攻击者注入无用广播流量导致的传感器有限能量的耗尽。文献中提出了几种广播源认证协议(BSAP)。其中一类是基于时间不对称的BSAP,例如μESLA[1]协议。这些BSAP操作延迟的密钥公开以确保广播通信的安全,但是它们遭受一种DoS攻击,称为资源消耗攻击,在这种攻击中,攻击者用虚假消息淹没了网络,该虚假消息将网络的所有传感器缓冲并转发,然后再发送给其他用户。验证,从而导致缓冲区溢出和电池耗尽。在本文中,我们提出了H2BSAP协议,通过对广播消息进行逐跳身份验证来克服这种DoS攻击,从而将攻击者的损害仅限制于其一跳邻居,而不是整个网络。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号