论文标题

安全物联网路由:RPL网络中的选择性转发攻击和基于信任的防御

Secure IoT Routing: Selective Forwarding Attacks and Trust-based Defenses in RPL Network

论文作者

Jiang, Jun, Liu, Yuhong

论文摘要

低功率和有损网络(RPL)的IPv6路由协议是为具有低功率设备的物联网网络提供通信的必不可少的路由协议。 RPL使用目标函数和路由约束来找到网络中每个节点的优化路由路径。但是,最近的研究表明,拓扑攻击(例如选择性转发攻击)对物联网网络的安全路线构成了巨大挑战。另一方面,许多常规的安全路由解决方案在计算上很重,可以直接应用于资源约束的物联网网络中。迫切需要为物联网网络开发轻巧的安全路由解决方案。在本文中,我们首先从攻击的角度设计并实施了一系列高级选择性转发攻击,这些攻击可以灵活地以节能方式选择转发数据包的类型和百分比,甚至可以在网络中使用其他无辜节点。实验结果表明,所提出的攻击可以最大程度地提高攻击后果(即掉落的数据包数),同时保持未被发现。此外,我们提出了一种基于轻量信任的防御解决方案,以检测和消除网络中的恶意选择性转发节点。结果表明,拟议的防御解决方案可以使用非常有限的额外能量使用(即3.4%)实现高检测精度。

IPv6 Routing Protocol for Low Power and Lossy Networks (RPL) is an essential routing protocol to enable communications for IoT networks with low power devices. RPL uses an objective function and routing constraints to find an optimized routing path for each node in the network. However, recent research has shown that topological attacks, such as selective forwarding attacks, pose great challenges to the secure routing of IoT networks. Many conventional secure routing solutions, on the other hand, are computationally heavy to be directly applied in resource-constrained IoT networks. There is an urgent need to develop lightweight secure routing solutions for IoT networks. In this paper, we first design and implement a series of advanced selective forwarding attacks from the attack perspective, which can flexibly select the type and percentage of forwarding packets in an energy efficient way, and even bad-mouth other innocent nodes in the network. Experiment results show that the proposed attacks can maximize the attack consequences (i.e. number of dropped packets) while maintaining undetected. Moreover, we propose a lightweight trust-based defense solution to detect and eliminate malicious selective forwarding nodes from the network. The results show that the proposed defense solution can achieve high detection accuracy with very limited extra energy usage (i.e. 3.4%).

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源