• DocumentCode
    2768463
  • Title

    Securing Ad Hoc Wireless Networks Against Data Injection Attacks Using Firewalls

  • Author

    Park, Jun Cheol ; Kasera, Sneha Kumar

  • Author_Institution
    Sch. of Comput., Utah Univ., Salt Lake City, UT
  • fYear
    2007
  • fDate
    11-15 March 2007
  • Firstpage
    2843
  • Lastpage
    2848
  • Abstract
    The authors propose to secure ad hoc networks against data injection attacks by placing firewall functionality at strategic locations in the ad hoc network. The authors first show that, given the locations of attackers and victims, the problem of placement of firewall functionality at a fixed number of ad hoc nodes while minimizing the impact of the data injection attack is identical to the k-coverage problem, this problem is known to be NP-hard. Then, the authors develop a near-optimal approximate algorithm for placing firewall functions. The authors also incorporate the loss behavior of wireless links in our algorithm. Next, the authors develop an architecture to determine the location of the attackers. Our architecture uses a separate control network (a cellular network in this paper) in conjunction with ad hoc networks to provide a provable attack detection mechanism. The authors evaluate our firewall placement algorithm for various topologies obtained from ns-2 simulations. Our results show that our algorithm can find near-optimal solutions. Based on a simple analysis and measurement results, the authors also find that the overhead of our provable attack detection mechanism is low.
  • Keywords
    ad hoc networks; authorisation; mobile computing; optimisation; NP-hard problem; ad hoc wireless networks; data injection attacks; firewall placement; Ad hoc networks; Bandwidth; Batteries; Communications Society; Computer networks; Land mobile radio cellular systems; Peer to peer computing; Protection; Routing; Wireless networks;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Wireless Communications and Networking Conference, 2007.WCNC 2007. IEEE
  • Conference_Location
    Kowloon
  • ISSN
    1525-3511
  • Print_ISBN
    1-4244-0658-7
  • Electronic_ISBN
    1525-3511
  • Type

    conf

  • DOI
    10.1109/WCNC.2007.527
  • Filename
    4224772