Title :
Intrusion detection for IEEE 802.11 based industrial automation using possibilistic anomaly detection
Author :
Premaratne, Upeka ; Premarathne, U. ; Samarasinghe, Kithsiri
Author_Institution :
Dept. of Electron. & Telecommun. Eng., Univ. of Moratuwa, Moratuwa, Sri Lanka
Abstract :
Industrial automation is undergoing an increased use of wireless networks due to high flexibility and ease of deployment. However, despite the benefits, wireless networks have their inherent problems and vulnerabilities. This paper investigates the feasibility of using anomaly detection using possibility theory for network traffic. This is then used as a lightweight hostbased intrusion detection system for single board computer or embedded devices of an IEEE 802.11 based wireless industrial automation network. Traffic data is collected for genuine browsing and simulated attacks. It is then subjected to cluster analysis and tested using standard classifiers. The logarithmic histogram of the interpacket delay is used as the feature for classification. Subsequently it is used for training and testing a possiblisitic anomaly detector. The performance is then compared with a statistical outlier detector.
Keywords :
factory automation; pattern clustering; possibility theory; radio networks; security of data; statistical analysis; telecommunication traffic; IEEE 802.11 based industrial automation; cluster analysis; embedded devices; interpacket delay; lightweight hostbased intrusion detection system; logarithmic histogram; network traffic; possibilistic anomaly detection; possibility theory; single board computer; statistical outlier detector; wireless industrial automation network; Variable speed drives; Wireless communication; Wireless networks; anomaly detection; industrial automation; intrusion detection; possibility theory;
Conference_Titel :
Wireless And Optical Communications Networks (WOCN), 2010 Seventh International Conference On
Conference_Location :
Colombo
Print_ISBN :
978-1-4244-7203-1
DOI :
10.1109/WOCN.2010.5587323