DocumentCode :
1565500
Title :
Adaptabilty of a GP Based IDS on Wireless Networks
Author :
Makanju, Adetokunbo ; Zincir-Heywood, A. Nur ; Milios, Evangelos E.
Author_Institution :
Fac. of Comput. Sci., Dalhousie Univ., Halifax, NS
fYear :
2008
Firstpage :
310
Lastpage :
318
Abstract :
Security and Intrusion detection in WiFi networks is currently an active area of research where WiFi specific Data Link layer attacks are an area of focus; particularly recent work has focused on producing machine learning based IDSs for these WiFi specific attacks. These proposed machine learning based IDSs come in addition to the already deployed signatures which are already in use in conventional intrusion detection systems like Snort-Wireless and Kismet. In this paper, we compare the detection capability of Snort-Wireless and a Genetic Programming (GP) based intrusion detector, based on the ability to adapt to modified attacks, ability to adapt to similar unknown attacks and infrastructure independent detection. Our results show that the GP based detection system is much more robust against modified attacks compared to Snort-Wireless. Moreover, by focusing on the method(s) used in feature preprocessing for presentation to learning algorithms, GP based IDSs can achieve infrastructure independent detection and can adapt to similar unknown attacks too. On the other hand, even though Snort-Wireless is an infrastructure independent detector, it cannot adapt to unknown attacks even if they are similar to others for which it has signatures on.
Keywords :
genetic algorithms; learning (artificial intelligence); security of data; wireless LAN; GP based IDS; Kismet; Snort-Wireless; WiFi networks; data link layer; genetic programming; intrusion detection system; machine learning; wireless networks; Communication system security; Computer security; Data security; Detectors; Floods; Genetic programming; Intrusion detection; Machine learning; Wireless application protocol; Wireless networks; Denial of Service; Genetic Programming; Intrusion Detection System; Wireless Networks;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Availability, Reliability and Security, 2008. ARES 08. Third International Conference on
Conference_Location :
Barcelona
Print_ISBN :
978-0-7695-3102-1
Type :
conf
DOI :
10.1109/ARES.2008.50
Filename :
4529352
Link To Document :
بازگشت