The effect of probe interval estimation on attack detection performance of a WLAN independent intrusion detection system


Autoria(s): Milliken, J.; Selis, V.; Yap, K. M.; Marshall, A.
Data(s)

2012

Resumo

A new niche of densely populated, unprotected networks is becoming more prevalent in public areas such as Shopping Malls, defined here as independent open-access networks, which have attributes that make attack detection more challenging than in typical enterprise networks. To address these challenges, new detection systems which do not rely on knowledge of internal device state are investigated here. This paper shows that this lack of state information requires an additional metric (The exchange timeout window) for detection of WLAN Denial of Service Probe Flood attacks. Variability in this metric has a significant influence on the ability of a detection system to reliably detect the presence of attacks. A parameter selection method is proposed which is shown to provide reliability and repeatability in attack detection in WLANs. Results obtained from ongoing live trials are presented that demonstrate the importance of accurately estimating probe request and probe response timeouts in future Independent Intrusion Detection Systems.

Identificador

http://pure.qub.ac.uk/portal/en/publications/the-effect-of-probe-interval-estimation-on-attack-detection-performance-of-a-wlan-independent-intrusion-detection-system(c906e3bb-e72f-40af-b9e8-2226ab75deaf).html

http://dx.doi.org/10.1049/cp.2012.2110

Idioma(s)

eng

Publicador

IET

Direitos

info:eu-repo/semantics/closedAccess

Fonte

Milliken , J , Selis , V , Yap , K M & Marshall , A 2012 , The effect of probe interval estimation on attack detection performance of a WLAN independent intrusion detection system . in IET International Conference on Wireless Communications and Applications (ICWCA 2012) . IET , pp. 101-106 , The IET International Conference on Wireless Communications and Applications , Kuala Lumpur , Malaysia , 8-10 October . DOI: 10.1049/cp.2012.2110

Palavras-Chave #WLAN #Probe #MAC #Intrusion
Tipo

contributionToPeriodical