Intrusion Detection System for PS-Poll DoS Attack in 802.11 Networks Using Real Time Discrete Event

来源 :IEEE/CAA Journal of Automatica Sinica | 被引量 : 0次 | 上传用户:maxiao912
下载到本地 , 更方便阅读
声明 : 本文档内容版权归属内容提供方 , 如果您对本文有版权争议 , 可与客服联系进行内容授权或下架
论文部分内容阅读
Wi-Fi devices have limited battery life because of which conserving battery life is imperative. The 802.11 Wi-Fi standard provides power management feature that allows stations(STAs) to enter into sleep state to preserve energy without any frame losses. After the STA wakes up, it sends a null data or PS-Poll frame to retrieve frame(s) buffered by the access point(AP), if any during its sleep period. An attacker can launch a power save denial of service(PS-DoS) attack on the sleeping STA(s) by transmitting a spoofed null data or PS-Poll frame(s) to retrieve the buffered frame(s) of the sleeping STA(s) from the AP causing frame losses for the targeted STA(s). Current approaches to prevent or detect the PS-DoS attack require encryption,change in protocol or installation of proprietary hardware. These solutions suffer from expensive setup, maintenance, scalability and deployment issues. The PS-DoS attack does not differ in semantics or statistics under normal and attack circumstances.So signature and anomaly based intrusion detection system(IDS) are unfit to detect the PS-DoS attack. In this paper we propose a timed IDS based on real time discrete event system(RTDES) for detecting PS-DoS attack. The proposed DES based IDS overcomes the drawbacks of existing systems and detects the PS-DoS attack with high accuracy and detection rate. The correctness of the RTDES based IDS is proved by experimenting all possible attack scenarios. The Wi-Fi devices have limited battery life because of conserving battery life is imperative. The 802.11 Wi-Fi standard provides power management feature that allows stations (STAs) to enter into sleep state to preserve energy without any frame losses. After the STA wakes up, it sends a null data or PS-Poll frame to retrieve frame (s) buffered by the access point (AP), if any during its sleep period. An attacker can launch a power save denial of service (PS-DoS) attack The sleeping STA (s) by sending a spoofed null data or PS-Poll frame (s) to retrieve the buffered frame (s) of the sleeping STA (s) from the AP causing frame losses for the targeted STA (s). Current approaches to prevent or detect the PS-DoS attack require encryption, change in protocol or installation of proprietary hardware. These solutions suffer from expensive setup, maintenance, scalability and deployment issues. The PS-DoS attack does not differ in semantics or statistics under normal and attack situations.So si gnature and anomaly based intrusion detection system (IDS) are unfit to detect the PS-DoS attack. In this paper we propose a timed IDS based on real time discrete event system (RTDES) for detecting PS-DoS attack. The proposed DES based IDS overcomes the drawbacks of existing systems and detects the PS-DoS attack with high accuracy and detection rate. The correctness of the RTDES based IDS is proven by experimenting all possible attack scenarios.
其他文献
In order to solve the problem of heterogeneity in multi-robot cooperation, a new service-oriented architecture is proposed for multi-robot cooperation. Service
期刊
随着我国市场经济的发展,利率市场化改革进程不断加速。本文主要研究城市商业银行在利率不断放开的条件下,如何转变盈利模式以在激烈的竞争中取得发展进步。城市商业银行作为我
中国于2010年4月16日推出股指期货交易市场,其对于促进我国衍生品市场的发展意义匪浅。为了更加良好地反映沪深中小市值公司以及市场的整体的情况,五年之后的2015年4月16日,我国
四川龙门山北段泥盆系发育良好,化石丰富,层序清楚,剖面连续,是研究我国泥盆系较好的地区之一.该剖面泥盆系地层旋回性变化规律明显,下泥盆统基本层沉积相以相对海平面变化形
在核级软件产品单元测试过程中,如被测函数所依赖对象无法获得将导致测试无法启动.为解决此问题,本文提出采用mock模拟方法来模拟一个和真实类似的对象完成相应行为.本文通过
2010年是保持经济平稳较快发展、确保“十一五”规划顺利完成的关键一年,也是全面贯彻党的十七届四中全会精神、加强和改进新形势下党的建设的重要一年。在新的一年,把反腐倡
1994年以来,我国央行为了维持人民币汇率的稳定和促进宏观经济平稳发展,将外汇干预操作确定为一项重要的经济政策。外汇干预在长时间内实现了我国汇率的平稳发展,但是也产生了外
This paper investigates MIMO mechanical systems with unknown actuator nonlinearities. A novel Nussbaum analysis tool for MIMO systems is established such that u