DocumentCode :
30692
Title :
Manual and Automatic assigned thresholds in multi-layer data fusion intrusion detection system for 802.11 attacks
Author :
Kyriakopoulos, Konstantinos G. ; Aparicio-Navarro, Francisco J. ; Parish, David J.
Author_Institution :
Sch. of Electron., Electr. & Syst. Eng., Loughborough Univ., Loughborough, UK
Volume :
8
Issue :
1
fYear :
2014
fDate :
Jan. 2014
Firstpage :
42
Lastpage :
50
Abstract :
Abuse attacks on wireless networks are becoming increasingly sophisticated. Most of the recent research on intrusion detection systems for wireless attacks either focuses on just one layer of observation or uses a limited number of metrics without proper data fusion techniques. However, the true status of a network is rarely accurately detectable by examining only one network layer. The goal of this study is to detect injection types of attacks in wireless networks by fusing multi-metrics using the Dempster-Shafer (D-S) belief theory. When combining beliefs, an important step to consider is the automatic and self-adaptive process of basic probability assignment (BPA). This study presents a comparison between manual and automatic BPA methods using the D-S technique. Custom tailoring BPAs in an optimum manner under specific network conditions could be extremely time consuming and difficult. In contrast, automatic methods have the advantage of not requiring any prior training or calibration from an administrator. The results show that multi-layer techniques perform more efficiently when compared with conventional methods. In addition, the automatic assignment of beliefs makes the use of such a system easier to deploy while providing a similar performance to that of a manual system.
Keywords :
computer network security; inference mechanisms; probability; sensor fusion; uncertainty handling; wireless LAN; 802.11 attacks; D-S belief theory; Dempster-Shafer belief theory; automatic assigned thresholds; basic probability assignment; custom tailoring BPA; manual assigned thresholds; multilayer data fusion intrusion detection system; multimetrics; self-adaptive process; wireless attacks; wireless networks;
fLanguage :
English
Journal_Title :
Information Security, IET
Publisher :
iet
ISSN :
1751-8709
Type :
jour
DOI :
10.1049/iet-ifs.2012.0302
Filename :
6687157
Link To Document :
بازگشت