A Softwarized Intrusion Detection System for the RPL-based Internet of Things networks

被引:15
|
作者
Violettas, George [1 ]
Simoglou, George [1 ]
Petridou, Sophia [1 ]
Mamatas, Lefteris [1 ]
机构
[1] Univ Macedonia, Dept Appl Informat, Thessaloniki, Greece
关键词
Internet of Things; RPL protocol; RPL attacks; IoT security; Intrusion Detection System; SECURITY; PROTOCOLS; FUTURE; IDS;
D O I
10.1016/j.future.2021.07.013
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Internet of Things (IoT) constitutes a pivotal contributor to the Industry 4.0 (I 4.0) vision, technologically transforming production and societies. It enables novel services through the seamless integration of devices, such as motes carrying sensors, with the Internet. However, the broad adoption of IoT technologies is facing security issues due to the direct access to the devices from the Internet, the broadcasting nature of the wireless media, and the potential unattended operation of relevant deployments. In particular, the Routing over Low Power and Lossy Networks (RPL) protocol, a prominent IoT solution, is vulnerable to a large number of attacks, both of general-purpose and RPL-specific nature, while the resource-constraints of the corresponding devices are making attack mitigation even more challenging, e.g., in terms of involved control overhead and detection accuracy. In this paper, we introduce ASSET, a novel Intrusion Detection System (IDS) for RPL with diverse profiles to tackle the above issues that mitigate at least 13 attacks. At the same time, other solutions go up to eight. ASSET, inspired by the network softwarization paradigm, supports a novel, extendable workflow, bringing together three anomaly-detection and four RPL specification-based mechanisms, a novel attacker identification process, as well as multiple attack mitigation strategies. Our IDS also supports an adaptable control & monitoring protocol, trading overhead for accuracy, depending on the network conditions. The proof-of-concept experiments show that ASSET entails a low overhead for the different modes of operation it supports (i.e., 6.28 percent on average) compared to other solutions reaching up to 30 percent. At the same time, it also keeps the power consumption at acceptable levels (from 0.18 up to 1.54 percent more). Moreover, it provides 100 percent accuracy for specific attacks and can identify the attacker in far more attacks than any other similar solution. (C) 2021 Elsevier B.V. All rights reserved.
引用
收藏
页码:698 / 714
页数:17
相关论文
共 50 条
  • [11] EMBOF-RPL: Improved RPL for early detection and isolation of rank attack in RPL-based internet of things
    Bang, A. O.
    Rao, Udai Pratap
    [J]. PEER-TO-PEER NETWORKING AND APPLICATIONS, 2022, 15 (01) : 642 - 665
  • [12] Energy balancing RPL-based routing for Internet of Things
    Mai Banh
    Nam Nguyen
    Kieu-Ha Phung
    Nguyen, Long
    Nguyen Huu Thanh
    Steenhaut, Kris
    [J]. 2016 IEEE SIXTH INTERNATIONAL CONFERENCE ON COMMUNICATIONS AND ELECTRONICS (ICCE), 2016, : 125 - 130
  • [13] Load balancing for RPL-based Internet of Things: A review
    Pancaroglu, Doruk
    Sen, Sevil
    [J]. AD HOC NETWORKS, 2021, 116
  • [14] Collaborative Detection and Prevention of Sybil Attacks against RPL-Based Internet of Things
    Khan, Muhammad Ali
    Bin Rais, Rao Naveed
    Khalid, Osman
    [J]. CMC-COMPUTERS MATERIALS & CONTINUA, 2023, 77 (01): : 827 - 843
  • [15] Artificial Intelligence-Based Technique for Detection of Selective Forwarding Attack in RPL-Based Internet of Things Networks
    Neerugatti, Vikram
    Reddy, A. Rama Mohan
    [J]. EMERGING RESEARCH IN DATA ENGINEERING SYSTEMS AND COMPUTER COMMUNICATIONS, CCODE 2019, 2020, 1054 : 67 - 77
  • [16] Routing Attacks and Mitigation Methods for RPL-Based Internet of Things
    Raoof, Ahmed
    Matrawy, Ashraf
    Lung, Chung-Horng
    [J]. IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2019, 21 (02): : 1582 - 1606
  • [17] Unweighted Voting Method to Detect Sinkhole Attack in RPL-Based Internet of Things Networks
    Al-Sarawi, Shadi
    Anbar, Mohammed
    Alabsi, Basim Ahmad
    Aladaileh, Mohammad Adnan
    Rihan, Shaza Dawood Ahmed
    [J]. Computers, Materials and Continua, 2023, 77 (01): : 491 - 515
  • [18] Optimized Ensemble Classifier Based Network Intrusion Detection System for RPL Based Internet of Things
    Prakash, P. Jaya
    Lalitha, B.
    [J]. WIRELESS PERSONAL COMMUNICATIONS, 2022, 125 (04) : 3603 - 3626
  • [19] Optimized Ensemble Classifier Based Network Intrusion Detection System for RPL Based Internet of Things
    P. Jaya Prakash
    B. Lalitha
    [J]. Wireless Personal Communications, 2022, 125 : 3603 - 3626
  • [20] Unweighted Voting Method to Detect Sinkhole Attack in RPL-Based Internet of Things Networks
    Al-Sarawi, Shadi
    Anbar, Mohammed
    Alabsi, Basim Ahmad
    Aladaileh, Mohammad Adnan
    Rihan, Shaza Dawood Ahmed
    [J]. CMC-COMPUTERS MATERIALS & CONTINUA, 2023, 77 (01): : 491 - 515