Limiting DoS attacks during multihop data delivery in wireless sensor networks

Limiting DoS attacks during multihop data delivery in wireless sensor networks
复制标题

DOI:
10.1504/ijsn.2006.011776
复制
发表时间:
2006-12
期刊:
Int. J. Secur. Networks
影响因子:
--
通讯作者:
Jing Deng;Richard O. Han;Shivakant Mishra
Jing Deng;Richard O. Han;Shivakant Mishra
中科院分区:
其他
文献类型:
--
作者:
Jing Deng;Richard O. Han;Shivakant Mishra

文献摘要

被引文献

相似文献

拒绝服务攻击是无线传感器网络中的一种常见攻击。由于其资源的限制,即有限的能量,内存和带宽,无线传感器网络是特别容易受到拒绝服务攻击。针对多跳数据传输路径上沿着资源的拒绝服务攻击,由于无线传感器网络是典型的树型结构,因此路径上的拒绝服务攻击将特别有效地拒绝整个传感器节点分支的路由服务,而不仅仅是沿着路径的节点。本文提出了一种使用单向哈希链来保护端到端的解决方案。结束无线传感器网络中的多跳通信,以抵御这种基于路径的拒绝服务(PDoS)攻击。所提出的解决方案是轻量级的,容忍突发性数据包丢失,可以很容易地在现代无线传感器网络中实现。本文报告的性能测量从原型实现。
Denial of Service (DoS) attacks can be easily launched in Wireless Sensor Networks (WSNs). Due to their resource constraints, namely limited energy, memory and bandwidth, WSNs are especially vulnerable to DoS attacks. This paper addresses a particular class of DoS attacks that overwhelm resources along a multihop data delivery path. Since WSNs are typically tree-structured, then a DoS attack on a path will be especially effective in denying routing service to an entire branch of sensor nodes, not just the nodes along the path. This paper proposes a solution using one-way hash chains to protect end-to-end multihop communications in WSNs against such Path-based DoS (PDoS) attacks. The proposed solution is lightweight, tolerates bursty packet losses and can easily be implemented in modern WSNs. This paper reports on performance measured from a prototype implementation.