Flow-net methodology for accountability in wireless networks

Flow-net methodology for accountability in wireless networks
复制标题

DOI:
10.1109/mnet.2009.5274919
复制
发表时间:
2009-09
期刊:
影响因子:
9.3
通讯作者:
Yang Xiao
Yang Xiao
中科院分区:
计算机科学2区
文献类型:
--
作者:
Yang Xiao

文献摘要

被引文献

相似文献

问责意味着任何实体都应该对其自己的具体行动或行为负责,使该实体成为更大的问责链的一部分。问责的目标之一是,一旦事件发生,所发生的事件是可追踪的,以便事后能够确定原因。今天的计算机和网络提供的不良问责制浪费了大量的金钱和精力;例子包括确定系统是否处于侦察或攻击下的活动,以及区分合法电子邮件和网络钓鱼攻击的困难。这是由于一个简单的事实,即今天的计算和网络基础设施并没有考虑到问责制。在这篇文章中,我们提出了一种新的方法,称为流网问责制。我们将这种方法应用于无线网络中的媒体访问控制和路由层。然后,我们比较了流网络的审计日志文件的性能。本文提出了一种新的流量数据收集方法,也可以用于取证和入侵检测目的。
Accountability implies that any entity should be held responsible for its own specific action or behavior so that the entity is part of larger chains of accountability. One of the goals of accountability is that once an event has transpired, the events that took place are traceable so that the causes can be determined afterward. The poor accountability provided by today's computers and networks wastes a great deal of money and effort; examples include activities to identify whether a system is under reconnaissance or attack, and the difficulties of distinguishing legitimate emails from phishing attacks. This is due to the simple fact that today's computing and network infrastructure was not built with accountability in mind. In this article we propose a novel methodology called flow-net for accountability. We apply this methodology to media access control and routing layers in wireless networks. We then compare the performance of flow-net with audit log files. This article presents a novel approach for traffic data collection that can also be used for forensics and intrusion detection purposes.