...
首页> 外文期刊>International Journal of Distributed Sensor Networks >On Lightweight Intrusion Detection: Modeling and Detecting Intrusions Dedicated to OLSR Protocol
【24h】

On Lightweight Intrusion Detection: Modeling and Detecting Intrusions Dedicated to OLSR Protocol

机译:关于轻量级入侵检测:建模和检测专用于OLSR协议的入侵

获取原文
           

摘要

Mobile ad hoc networks mostly operate over open, adverse, or even hostile environments and are, therefore, vulnerable to a large body of threats. Conventional ways of securing network relying on, for example, firewall and encryption, should henceforth be coupled with advanced intrusion detection. To meet this requirement, we first identify the attacks that threaten ad hoc networks, focusing on the Optimized Link State Routing Protocol. We then introduce IDAR, a signature-based Intrusion Detector dedicated to ad hoc routing protocols. Contrary to existing systems that monitor the packets going through the host, our system analyses the logs so as to identify patterns of misuse. This detector scopes with the resource-constraints of ad hoc devices by providing distributed detection; in particular, depending on the level of suspicion and gravity, in-depth cooperative diagnostic may be launched. Simulation-based evaluation shows limited resource consumption (e.g., memory and bandwidth) and high detection rate along with reduced false positives.
机译:移动自组织网络通常在开放,不利甚至敌对的环境中运行,因此容易受到大量威胁的攻击。从此,依靠防火墙和加密来保护网络的常规方法应与高级入侵检测结合起来。为了满足此要求,我们首先确定威胁ad hoc网络的攻击,重点是优化链路状态路由协议。然后,我们介绍IDAR,这是专用于自组织路由协议的基于签名的入侵检测器。与监视通过主机的数据包的现有系统相反,我们的系统分析日志,以识别滥用的模式。该检测器通过提供分布式检测来适应ad hoc设备的资源约束。特别是,根据怀疑和严重程度,可能会启动深度协作诊断。基于仿真的评估显示有限的资源消耗(例如内存和带宽)和高检测率以及减少的误报。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号