A security metric for the evaluation of collaborative intrusion detection systems in wireless sensor networks

作者: Alex Ramos , Marcella Lazar , Raimir Holanda Filho , Joel J. P. C. Rodrigues

DOI: 10.1109/ICC.2017.7997192

关键词:

摘要: Objectively quantifying the classification accuracy of Intrusion Detection Systems (IDSs) is fundamental importance. Evaluation metrics have been proposed to measure effectiveness traditional IDSs, but none those seems suitable evaluate distributed collaborative IDSs that are generally employed in Wireless Sensor Networks (WSNs). This because WSNs each IDS output (i.e., alarm or absence alarm) results from a consensus decision among several nodes, as opposed an individual single node. In this paper, we present trust probability (P t ) metric, which defined draws right conclusion its decision-making process. metric computed based on properties nodes contribute global conclusions. We provide numerical examples well detailed analysis P . Moreover, show how can be used find best operating point given and compare different IDSs. Finally, since much should trusted, discuss real-time rank alerts.

参考文章(13)
Khalid Nasr, Anas Abou El Kalam, A Novel Metric for the Evaluation of IDSs Effectiveness ICT Systems Security and Privacy Protection. pp. 220- 233 ,(2014) , 10.1007/978-3-642-55415-5_18
I. Onat, A. Miri, An intrusion detection system for wireless sensor networks wireless and mobile computing, networking and communications. ,vol. 3, pp. 253- 259 ,(2005) , 10.1109/WIMOB.2005.1512911
R.P. Lippmann, D.J. Fried, I. Graf, J.W. Haines, K.R. Kendall, D. McClung, D. Weber, S.E. Webster, D. Wyschogrod, R.K. Cunningham, M.A. Zissman, Evaluating intrusion detection systems: the 1998 DARPA off-line intrusion detection evaluation darpa information survivability conference and exposition. ,vol. 2, pp. 12- 26 ,(2000) , 10.1109/DISCEX.2000.821506
Ismail Butun, Salvatore D. Morgera, Ravi Sankar, A Survey of Intrusion Detection Systems in Wireless Sensor Networks IEEE Communications Surveys and Tutorials. ,vol. 16, pp. 266- 282 ,(2014) , 10.1109/SURV.2013.050113.00191
Hamid Al-Hamadi, Ing Ray Chen, Integrated Intrusion Detection and Tolerance in Homogeneous Clustered Sensor Networks ACM Transactions on Sensor Networks. ,vol. 11, pp. 1- 24 ,(2015) , 10.1145/2700830
Guofei Gu, Prahlad Fogla, David Dagon, Wenke Lee, Boris Skorić, Measuring intrusion detection capability Proceedings of the 2006 ACM Symposium on Information, computer and communications security - ASIACCS '06. pp. 90- 101 ,(2006) , 10.1145/1128817.1128834
Stefan Axelsson, The base-rate fallacy and its implications for the difficulty of intrusion detection computer and communications security. pp. 1- 7 ,(1999) , 10.1145/319709.319710
M.D. Aime, G. Calandriello, A. Lioy, A Wireless Distributed Intrusion Detection System and a New Attack Model international symposium on computers and communications. pp. 35- 40 ,(2006) , 10.1109/ISCC.2006.22
Alex Ramos, Raimir Filho, Sensor Data Security Level Estimation Scheme for Wireless Sensor Networks Sensors. ,vol. 15, pp. 2104- 2136 ,(2015) , 10.3390/S150102104
A.A. Cardenas, J.S. Baras, K. Seamon, A framework for the evaluation of intrusion detection systems ieee symposium on security and privacy. pp. 63- 77 ,(2006) , 10.1109/SP.2006.2