摘要
无线传感器网络在许多应用场合里需要采集较敏感的数据,因此安全问题至关重要。一旦传感器节点被捕获,且没有采取相应措施,节点的密钥信息易被泄露,攻击者完全可伪装成这些节点,向网络任意注入错误的信息,由此导致网络的安全性能急剧下降。提出了针对被捕获节点的一种基于异常的入侵检测算法,能有效识别无线传感器网络的被捕获节点。算法对传感器节点间关系进行抽象,采用传感器网络的事件驱动特性来确定某节点在固定时间间隔内是否在发生数据包,基站通过检测可疑节点的数据包发送时间的差异来加以确认。算法不依赖于任何被捕获节点如何行动和密谋的假设,能识别出偏离正常行为值的最大多数被捕获节点,而不会出现"假肯定"。
Wireless sensor network was widely used in many applications, and sensitive data was needed to collect, thus security was crucial. Once the sensor node was compromised, and did not take the appropriate measures, the node's key information was easily leaked. The attacker could masquerade as these nodes to inject arbitrarily erroneous information the network, which led to a sharp decline in network security. An anomaly-based intrusion detection algorithm for compromised nodes was proposed, which could effectively identify the compromised nodes in the wireless sensor networks. Algorithm abstracted the relationship between the sensor nodes, using Event-driven to determine if the node sent data packets in a fixed time interval. According to the time difference, the base station confirmed if suspicious node was really a compromised one. Algorithm did not rely on any assumption how the com- promised node acted and conspire to each other, and could identify the overwhelming majority of the compromised nodes which deviated from the normal behavior, without "false positives".
出处
《压电与声光》
CSCD
北大核心
2014年第6期1030-1034,1038,共6页
Piezoelectrics & Acoustooptics
基金
2012年湖北省教育厅科研计划基金资助项目(B20123102)
关键词
无线传感器网络
捕获
异常
入侵检测
算法
仿真
wireless sensor networks
compromise
anomaly
intrusion detection
algorithm
simulation