A Collaborative Security Framework for Software-Defined Wireless Sensor Networks

A Collaborative Security Framework for Software-Defined Wireless Sensor Networks
复制标题

DOI:
10.1109/tifs.2020.2973875
复制
发表时间:
2020
影响因子:
6.8
通讯作者:
Christian Miranda;Georges Kaddoum;E. Bou-Harb;S. Garg;K. Kaur
Christian Miranda;Georges Kaddoum;E. Bou-Harb;S. Garg;K. Kaur
中科院分区:
计算机科学1区
文献类型:
--
作者:
Christian Miranda;Georges Kaddoum;E. Bou-Harb;S. Garg;K. Kaur

文献摘要

相似文献

随着5G的出现,软件定义网络(SDN)和网络功能虚拟化(NFV)等技术已经开发出来,以促进无线传感器网络(WSNs)的简单可编程控制。然而,无线传感器网络通常部署在潜在的不可信的环境中。因此,必须先应对安全挑战,然后才能实施这些措施。在本文中,我们提出了一个软件定义的安全框架,结合入侵防御与协作异常检测系统。最初,一个基于IPS的身份验证过程的目的是提供一个轻量级的入侵防御计划在数据平面。随后,协同异常检测系统的杠杆作用的目的是提供一个具有成本效益的入侵检测解决方案附近的数据平面。此外,在控制平面中利用智能监控系统(SMS)来关联由网络边缘中的传感器节点提出的真阳性警报。该模型的性能进行评估,在不同的安全场景下,以及与其他方法相比,该模型的高安全性和减少误报证明。
With the advent of 5G, technologies such as Software-Defined Networks (SDNs) and Network Function Virtualization (NFV) have been developed to facilitate simple programmable control of Wireless Sensor Networks (WSNs). However, WSNs are typically deployed in potentially untrusted environments. Therefore, it is imperative to address the security challenges before they can be implemented. In this paper, we propose a software-defined security framework that combines intrusion prevention in conjunction with a collaborative anomaly detection systems. Initially, an IPS-based authentication process is designed to provide a lightweight intrusion prevention scheme in the data plane. Subsequently, a collaborative anomaly detection system is leveraged with the aim of supplying a cost-effective intrusion detection solution near the data plane. Moreover, to correlate the true positive alerts raised by the sensor nodes in the network edge, a Smart Monitoring System (SMS) is exploited in the control plane. The performance of the proposed model is evaluated under different security scenarios as well as compared with other methods, where the model’s high security and reduction of false alarms are demonstrated.