首页> 外文期刊>Future generation computer systems >A Softwarized Intrusion Detection System for the RPL-based Internet of Things networks
【24h】

A Softwarized Intrusion Detection System for the RPL-based Internet of Things networks

机译:基于RPL的东西网络网络的软配入侵检测系统

获取原文
获取原文并翻译 | 示例

摘要

Internet of Things (IoT) constitutes a pivotal contributor to the Industry 4.0 (I 4.0) vision, technologically transforming production and societies. It enables novel services through the seamless integration of devices, such as motes carrying sensors, with the Internet. However, the broad adoption of IoT technologies is facing security issues due to the direct access to the devices from the Internet, the broadcasting nature of the wireless media, and the potential unattended operation of relevant deployments. In particular, the Routing over Low Power and Lossy Networks (RPL) protocol, a prominent IoT solution, is vulnerable to a large number of attacks, both of general-purpose and RPL-specific nature, while the resource-constraints of the corresponding devices are making attack mitigation even more challenging, e.g., in terms of involved control overhead and detection accuracy. In this paper, we introduce ASSET, a novel Intrusion Detection System (IDS) for RPL with diverse profiles to tackle the above issues that mitigate at least 13 attacks. At the same time, other solutions go up to eight. ASSET, inspired by the network softwarization paradigm, supports a novel, extendable workflow, bringing together three anomaly-detection and four RPL specification-based mechanisms, a novel attacker identification process, as well as multiple attack mitigation strategies. Our IDS also supports an adaptable control & monitoring protocol, trading overhead for accuracy, depending on the network conditions. The proof-of-concept experiments show that ASSET entails a low overhead for the different modes of operation it supports (i.e., 6.28 percent on average) compared to other solutions reaching up to 30 percent. At the same time, it also keeps the power consumption at acceptable levels (from 0.18 up to 1.54 percent more). Moreover, it provides 100 percent accuracy for specific attacks and can identify the attacker in far more attacks than any other similar solution.
机译:事物互联网(物联网)构成了行业4.0(I 4.0)愿景,技术转型生产和社会的关键贡献者。它可以通过无缝集成的设备,例如携带传感器,与互联网的无缝集成,实现新颖的服务。然而,由于直接访问来自因特网的设备,无线媒体的广播性质以及相关部署的潜在无人看管的操作,因此,由于直接访问设备,因此面临安全问题。特别地,通过低功耗和有损网络(RPL)协议(RPL)协议,一个突出的物联网解决方案,易受通用和rpl特定性质的大量攻击,而相应设备的资源约束正在攻击缓解更具挑战性,例如,在涉及控制的上头和检测准确性方面。在本文中,我们向RPL引入资产,新颖的入侵检测系统(IDS),具有不同的轮廓,以解决减轻至少13个攻击的上述问题。与此同时,其他解决方案最多八个。资产,受网络软态范式的启发,支持新颖,可扩展的工作流程,共同汇集三种异常检测和基于四个律师规范的机制,这是一种新的攻击者识别过程,以及多次攻击缓解策略。我们的ID还支持适应性控制和监控协议,以准确性的交易开销,具体取决于网络条件。概念证明实验表明,与其他达到30%的其他解决方案相比,资产适用于不同的操作模式(即,平均6.28%)。与此同时,它还保持可接受水平的功耗(从0.18增加到1.54%)。此外,它为特定攻击提供了100%的准确性,并且可以在比任何其他类似的解决方案中识别攻击更远的攻击者。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号