...
首页> 外文期刊>Computer Communications >Opening the Pandora's Box: Exploring the fundamental limitations of designing intrusion detection for MANET routing attacks
【24h】

Opening the Pandora's Box: Exploring the fundamental limitations of designing intrusion detection for MANET routing attacks

机译:打开潘多拉魔盒:探索为MANET路由攻击设计入侵检测的基本限制

获取原文
获取原文并翻译 | 示例
           

摘要

Intrusion detection is a critical component of the security framework in wireless ad hoc networks. However, the inherent properties of such networks such as the lack of infrastructure and the dynamic and decentralized nature make it extremely difficult to design effective Intrusion Detection Systems (IDS) for such environment. In this paper, we explore the major challenges posed by IDS design in ad hoc networks, and analyze the feasibility of implementing an intrusion detection system in an ad hoc network. Our analysis systematically focuses on all three major paradigms of IDS design, namely, logical rule-based techniques, probabilistic estimation based techniques as well as statistical classification techniques, and brings out the limitations of all three techniques. For illustrating the statistical limitations, a proactive ad hoc routing protocol, Optimized Link State Routing (OLSR) is used, and our analysis makes use of logical deduction as well as simulation of attacks on the OLSR protocol. The results dispel many popularly held assumptions in the literature.
机译:入侵检测是无线ad hoc网络中安全框架的重要组成部分。但是,此类网络的固有属性(例如,缺乏基础结构以及动态和分散的性质)使得为此类环境设计有效的入侵检测系统(IDS)极为困难。在本文中,我们探究了IDS设计在ad hoc网络中所面临的主要挑战,并分析了在ad hoc网络中实施入侵检测系统的可行性。我们的分析系统地集中于IDS设计的所有三个主要范例,即基于逻辑规则的技术,基于概率估计的技术以及统计分类技术,并揭示了这三种技术的局限性。为了说明统计限制,我们使用了一种主动的临时路由协议,即优化链路状态路由(OLSR),并且我们的分析利用了逻辑推论以及对OLSR协议的攻击进行仿真。结果消除了文献中许多流行的假设。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号