...
首页> 外文期刊>International journal of communication systems >6LoWPAN: a study on QoS security threats and countermeasures using intrusion detection system approach
【24h】

6LoWPAN: a study on QoS security threats and countermeasures using intrusion detection system approach

机译:6LoWPAN:使用入侵检测系统方法研究QoS安全威胁和对策

获取原文
获取原文并翻译 | 示例

摘要

Fuelled to bring the Internet of Things concept to real life, the Internet Engineering Task Force is working on 6L0WPAN, in which the standard allows a vast number of smart objects to be deployed in local wireless sensor networks (WSNs) using the huge address space of IPv6 for data and information harvesting through the Internet. From the security point of view, 6L0WPAN/WSN will be open to security threats from the local network itself and the Internet. Cryptography techniques applied as the front line of defence or deterrent can easily be broken because of the weak secure nature of LoWPAN devices and the wireless environment. Compromised nodes could lead to insider attacks without being detected by any cryptography checking. An intrusion detection system (IDS) is, primarily needed as a second line of defence to monitor the network operations and raise an alarm in case of any anomaly. This paper analyses potential security threats in 6L0WPAN and reviews the current countermeasures, in particular, the IDS-based solutions for countering insider/internal threats. Additionally, it discovers three novel QoS-related security threats, namely rank attack, local repair attack, and resource depleting attack, which are more seriously affecting the routing protocol for low-power and lossy network, the routing protocol used to establish 6L0WPAN network topology. A new two-layer IDS concept is introduced as a countermeasure method for securing the routing protocol for low-power and lossy network-built network topology from the internal QoS attacks. Potential research works are also presented to provide baseline reference to researchers in this field.
机译:为推动将物联网概念带入现实生活,互联网工程任务组正在研究6L0WPAN,该标准允许使用巨大的地址空间将大量智能对象部署在本地无线传感器网络(WSN)中。 IPv6,用于通过Internet收集数据和信息。从安全的角度来看,6L0WPAN / WSN将面临来自本地网络本身和Internet的安全威胁。由于LoWPAN设备和无线环境的安全性较弱,很容易破坏用作防御或威慑力量的加密技术。受损的节点可能会导致内部攻击,而不会被任何加密检查所检测到。入侵检测系统(IDS)首先是第二道防线,它需要监视网络运行并在出现异常情况时发出警报。本文分析了6L0WPAN中潜在的安全威胁,并回顾了当前的对策,尤其是针对内部/内部威胁的基于IDS的解决方案。此外,它发现了三种与QoS相关的新颖安全威胁,即等级攻击,本地修复攻击和资源耗竭攻击,它们更加严重地影响了低功耗有损网络的路由协议,该路由协议用于建立6L0WPAN网络拓扑。引入了一种新的两层IDS概念,作为一种对策方法,可保护低功耗和有损网络构建的网络拓扑的路由协议免受内部QoS攻击。还提出了潜在的研究工作,以为该领域的研究人员提供基线参考。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号