Title | An Architecture for Resilient Intrusion Detection in IoT Networks |
Publication Type | Conference Paper |
Year of Publication | 2020 |
Authors | Qurashi, Mohammed Al, Angelopoulos, Constantinos Marios, Katos, Vasilios |
Conference Name | ICC 2020 - 2020 IEEE International Conference on Communications (ICC) |
Date Published | June 2020 |
Publisher | IEEE |
ISBN Number | 978-1-7281-5089-5 |
Keywords | Computer architecture, Intrusion detection, Monitoring, Peer-to-peer computing, Protocols, pubcrawl, resilience, Resiliency, Resilient Security Architectures, Wireless communication, Wireless sensor networks |
Abstract | We introduce a lightweight architecture of Intrusion Detection Systems (IDS) for ad-hoc IoT networks. Current state-of-the-art IDS have been designed based on assumptions holding from conventional computer networks, and therefore, do not properly address the nature of IoT networks. In this work, we first identify the correlation between the communication overheads and the placement of an IDS (as captured by proper placement of active IDS agents in the network). We model such networks as Random Geometric Graphs. We then introduce a novel IDS architectural approach by having only a minimum subset of the nodes acting as IDS agents. These nodes are able to monitor the network and detect attacks at the networking layer in a collaborative manner by monitoring 1-hop network information provided by routing protocols such as RPL. Conducted experiments show that our proposed IDS architecture is resilient and robust against frequent topology changes due to node failures. Our detailed experimental evaluation demonstrates significant performance gains in terms of communication overhead and energy dissipation while maintaining high detection rates. |
URL | https://ieeexplore.ieee.org/document/9148868 |
DOI | 10.1109/ICC40277.2020.9148868 |
Citation Key | qurashi_architecture_2020 |