DocumentCode :
1945986
Title :
Collaborative firewalling in wireless networks
Author :
Taghizadeh, Mahmoud ; Khakpour, Amir R. ; Liu, Alex X. ; Biswas, Subir
Author_Institution :
Dept. of ECE, Michigan State Univ., East Lansing, MI, USA
fYear :
2011
fDate :
10-15 April 2011
Firstpage :
46
Lastpage :
50
Abstract :
Firewalls are one of the essential security elements to enforce access policies in computer networks. Open network architecture, shared wireless medium, stringent resource constraints, and highly dynamic network topology impose a new set of challenges on deploying firewalls in a mobile wireless environment. The current state-of-the-art demands for self protection by personal (i.e. local) firewalls for each node; however, this requires that all unwanted traffic travels all the way to the node before it is discarded at the destination. This wastes considerable bandwidth and power of all of the nodes in a network with multi-hop routing, specially if a node is under a denial of service (DoS) attack. In this paper, we develop a novel distributed firewalling scheme for wireless networks in which nodes collaboratively perform packet filtering to address resource squandering. The proposed scheme introduces techniques to distribute discarding rules based on both proactive and reactive routing protocols. It also proposes efficient rule placement mechanisms to maximize the number of packets discarded remotely before they reach the destination and minimize the number of unwanted packet forwardings. The scheme is evaluated through various simulation scenarios. The simulation results show that by distributing only 1% of the rules, about 42% of the unwanted traffic is discarded before it reaches the destination, which significantly saves the network resources. Saving about 30% of the wasted bandwidth can be crucial for the performance of a wireless network.
Keywords :
computer network security; mobile communication; radio networks; routing protocols; access policies; collaborative firewalling; computer networks; denial of service attack; discarding rules; distributed firewalling; highly dynamic network topology; mobile wireless environment; multihop routing; open network architecture; packet filtering; resource squandering; routing protocols; security elements; shared wireless medium; stringent resource constraints; wireless networks; Ad hoc networks; Mobile communication; Mobile computing; Routing; Routing protocols; Wireless networks;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
INFOCOM, 2011 Proceedings IEEE
Conference_Location :
Shanghai
ISSN :
0743-166X
Print_ISBN :
978-1-4244-9919-9
Type :
conf
DOI :
10.1109/INFCOM.2011.5935206
Filename :
5935206
Link To Document :
بازگشت