Intrusion Detection System for PS-Poll DoS Attack in 802.11 Networks Using Real Time Discrete Event System

被引:4
作者
Mayank Agarwal [1 ,2 ]
Sanketh Purwar [2 ]
Santosh Biswas [1 ,2 ]
Sukumar Nandi [1 ,3 ]
机构
[1] IEEE
[2] Department of Computer Science and Engineering, ⅡT Guwahati
[3] HP PPS R&D Lab in Bangalore
关键词
Fault detection and diagnosis; intrusion detection system(IDS); null data frame; power save attack; PS-Poll frame; real time discrete event system(DES);
D O I
暂无
中图分类号
TN915.08 [网络安全]; TN92 [无线通信];
学科分类号
0839 ; 080402 ; 080904 ; 0810 ; 081001 ;
摘要
Wi-Fi devices have limited battery life because of which conserving battery life is imperative. The 802.11 Wi-Fi standard provides power management feature that allows stations(STAs) to enter into sleep state to preserve energy without any frame losses. After the STA wakes up, it sends a null data or PS-Poll frame to retrieve frame(s) buffered by the access point(AP), if any during its sleep period. An attacker can launch a power save denial of service(PS-DoS) attack on the sleeping STA(s) by transmitting a spoofed null data or PS-Poll frame(s) to retrieve the buffered frame(s) of the sleeping STA(s) from the AP causing frame losses for the targeted STA(s). Current approaches to prevent or detect the PS-DoS attack require encryption,change in protocol or installation of proprietary hardware. These solutions suffer from expensive setup, maintenance, scalability and deployment issues. The PS-DoS attack does not differ in semantics or statistics under normal and attack circumstances.So signature and anomaly based intrusion detection system(IDS) are unfit to detect the PS-DoS attack. In this paper we propose a timed IDS based on real time discrete event system(RTDES) for detecting PS-DoS attack. The proposed DES based IDS overcomes the drawbacks of existing systems and detects the PS-DoS attack with high accuracy and detection rate. The correctness of the RTDES based IDS is proved by experimenting all possible attack scenarios.
引用
收藏
页码:792 / 808
页数:17
相关论文
共 6 条
[1]   Overview of fault diagnosis methods for Discrete Event Systems [J].
Zaytoon, J. ;
Lafortune, S. .
ANNUAL REVIEWS IN CONTROL, 2013, 37 (02) :308-320
[2]   ON FAULT PREDICTABILITY IN STOCHASTIC DISCRETE EVENT SYSTEMS [J].
Chang, Ming ;
Dong, Wei ;
Ji, Yindong ;
Tong, Lang .
ASIAN JOURNAL OF CONTROL, 2013, 15 (05) :1458-1467
[3]   Semiconductor fault detection and classification for yield enhancement and manufacturing intelligence [J].
Chien, Chen-Fu ;
Hsu, Chia-Yu ;
Chen, Pei-Nong .
FLEXIBLE SERVICES AND MANUFACTURING JOURNAL, 2013, 25 (03) :367-388
[4]  
LAN attack detection using Discrete Event Systems[J] . Neminath Hubballi,Santosh Biswas,S. Roopa,Ritesh Ratti,Sukumar Nandi. ISA Transactions . 2010 (1)
[5]  
Anomaly-based network intrusion detection: Techniques, systems and challenges[J] . P. García-Teodoro,J. Díaz-Verdejo,G. Maciá-Fernández,E. Vázquez. Computers & Security . 2008 (1)
[6]  
Fault diagnosis in discrete time hybrid systems – A case study[J] . Prodip Bhowal,Dipankar Sarkar,Siddhartha Mukhopadhyay,Anupam Basu. Information Sciences . 2006 (5)