Title :
A novel coding scheme to implement signature based IDS in IP based Sensor Networks
Author :
Amin, Syed Obaid ; Siddiqui, Muhammad Shoaib ; Hong, Choong Seon ; Choe, Jongwon
Author_Institution :
Dept. of Comput. Eng., Kyung Hee Univ., Suwon, South Korea
Abstract :
In signature based IDS (intrusion detection systems), if incoming packet header matches a certain set of rules, its payload is scrutinized against a set of known patterns (also called signatures). As the number of patterns could range up to thousands, pattern matching consumes not only the storage but also the most of the CPU cycles to execute the complex pattern matching algorithms. Therefore, so far there is no signature based IDS which can work on resource constraint sensor nodes. This paper presents a dynamic coding mechanism, which helps in implementing a distributed signature based IDS (intrusion detection system) in IP-USN (IP based ubiquitous sensor networks). The proposed scheme also allows building of lightweight IDS in terms of storage, messaging and energy consumption, which make it appropriate for resource constrained sensor devices.
Keywords :
IP networks; digital signatures; encoding; pattern matching; telecommunication security; wireless sensor networks; CPU cycles; IP based sensor network; dynamic coding scheme; intrusion detection system; packet header matching; pattern matching; resource constrained sensor device; signature based IDS; Computer networks; Energy storage; IP networks; Intrusion detection; Medical services; Pattern matching; Payloads; Remote monitoring; Sensor systems; Transport protocols; IDS; IP-USN;
Conference_Titel :
Integrated Network Management-Workshops, 2009. IM '09. IFIP/IEEE International Symposium on
Conference_Location :
New York, NY
Print_ISBN :
978-1-4244-3923-2
Electronic_ISBN :
978-1-4244-3924-9
DOI :
10.1109/INMW.2009.5195973