標題: 以Markovian IDS提升無線感測網路的防禦能力
Shielding Wireless Sensor Network Using Markovian IDS
作者: 陳坤宗
Chen, Kuen-Tzung
關鍵字: Wireless Sensor Network
Intrude Detection System
Markov Decision Process
Game Theory
摘要: 感測節點本身受限於先天硬體條件的限制,例如:記憶體大小,計算能力及電池續航力等。這些因素都會影響到無線感測網路的整體效能,若是想在無線感測網路(Wireless Sensor Networks, WSN)上考慮安全性的問題,必定會遭遇到極大的困難與挑戰。所以,為了避免感測節點遭受到惡意的攻擊,造成部份甚至於整個無線感測網路無法正常的運作。因此,需要有一個安全系統來保護這些節點,確保網路運作正常。 在論文之中,提出一個新的入侵偵測系統,稱為Markovian IDS。透過Markovian IDS的防禦能力,來提升整個無線感測網路的安全性及穩定性,以維護無線感測網路的正常運作。Markovian IDS運用賽局理論(Game Theory)機制,結合異常偵測(Anomaly Detection)及誤用偵測(Misuse Detection)的方法,可以讓系統決定出其最佳防禦策略,並且結合馬可夫決策程序(Markov Decision Process, MDP)方法去預測出最容易遭受到攻擊的感測節點。在本系統中,Markovian IDS會記錄並分析所有攻擊者的攻擊行為,從這些過去的攻擊記錄裡,可以找出未來可能會遭受到攻擊的感測節點,進而對這些處於危險的節點或區域進行防禦,以提升無線感測網路的安全性及穩定性。
Wireless sensor node is congenitally limited by its insufficient resources of hardware such as memory size and battery duration; these factors not only affect the lifespan of wireless sensor network but also impose great challenges on adding security mechanism on sensor nodes. However, protecting sensor nodes from malicious attacks becomes more and more important as the applications of wireless sensor networks increase rapidly. In this thesis, we propose a new intrusion detection system (IDS) called Markovian IDS for protecting sensor nodes from malicious attacks. Markovian IDS incorporates game theory with anomaly detection and misuse detection for finding the best defense strategy of sensor nodes, and it employs Markov Decision Process (MDP) to predict attack patterns and then take appropriate defense strategies. Experimental results show that the proposed Markovian IDS has better successful defense rate compared to game theory only or MDP only methods.
