Title :
Optimal combined intrusion detection and biometric-based continuous authentication in high security mobile ad hoc networks
Author :
Liu, Jie ; Yu, F. Richard ; Lung, Chung-Horng ; Tang, Helen
Author_Institution :
Dept. of Syst. & Comput. Eng., Carleton Univ., Ottawa, ON
Abstract :
Two complementary classes of approaches exist to protect high security mobile ad hoc networks (MANETs), prevention-based approaches, such as authentication, and detection-based approaches, such as intrusion detection. Most previous work studies these two classes of issues separately. In this paper, we propose a framework of combining intrusion detection and continuous authentication in MANETs. In this framework, multimodal biometrics are used for continuous authentication, and intrusion detection is modeled as sensors to detect system security state. We formulate the whole system as a partially observed Markov decision process considering both system security requirements and resource constraints. We then use dynamic programming-based hidden Markov model scheduling algorithms to derive the optimal schemes for both intrusion detection and continuous authentication. Extensive simulations show the effectiveness of the proposed scheme.
Keywords :
Markov processes; ad hoc networks; dynamic programming; mobile radio; scheduling; telecommunication security; Markov model scheduling algorithms; biometric-based continuous authentication; detection-based approaches; dynamic programming; high security mobile ad hoc networks; multimodal biometrics; optimal combined intrusion detection; prevention-based approaches; Authentication; Biometrics; Biosensors; Hidden Markov models; Intrusion detection; Mobile ad hoc networks; Multimodal sensors; Protection; Security; Sensor systems; Security; authentication; intrusion detection; mobile ad hoc networks;
Journal_Title :
Wireless Communications, IEEE Transactions on
DOI :
10.1109/TWC.2009.071036