• DocumentCode
    3104174
  • Title

    A dynamic clustering-based approach for anomaly detection in AODV-based MANETs

  • Author

    Alikhany, Meysam ; Abadi, Mahdi

  • Author_Institution
    Fac. of Electr. & Comput. Eng., Tarbiat Modares Univ., Tehran, Iran
  • fYear
    2011
  • fDate
    23-24 Feb. 2011
  • Firstpage
    67
  • Lastpage
    72
  • Abstract
    Mobile ad hoc networks (MANETs) are multi-hop wireless networks of autonomous mobile nodes without any fixed infrastructure. In MANETs, it is difficult to detect malicious nodes because the network topology constantly changes due to node mobility. A malicious node can easily inject false routes into the network. A traditional method to detect such malicious nodes is to establish a base profile of normal network behavior and then identify a node´s behavior to be anomalous if it deviates from the established profile. As the topology of a MANET constantly changes over time, the simple use of a static base profile is not efficient. In this paper, we propose a clustering-based anomaly detection approach, called DCAD, which allows the profile to be dynamically updated. In the approach, we use the weighted fixed width clustering (WFWC) algorithm in order to establish a normal profile and to detect anomalies. We also use weighted coefficients and a forgetting equation to periodically update the normal profile. We conduct MANET simulations using the NS2 simulator and consider scenarios for detecting several types of routing attacks on AODV protocol. The simulation results show that DCAD can be successfully used for detecting anomalies caused by malicious nodes in AODV-based MANETs.
  • Keywords
    mobile ad hoc networks; telecommunication network routing; telecommunication network topology; telecommunication security; AODV protocol; AODV-based MANET; anomaly detection; dynamic clustering-based approach; malicious node; mobile ad hoc networks; network topology; routing attacks; weighted fixed width clustering algorithm; Ad hoc networks; Clustering algorithms; Mobile computing; Network topology; Routing; Routing protocols; Training; AODV; MANET; anomaly detection; dynamic clustering; routing attack;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Computer Networks and Distributed Systems (CNDS), 2011 International Symposium on
  • Conference_Location
    Tehran
  • Print_ISBN
    978-1-4244-9153-7
  • Type

    conf

  • DOI
    10.1109/CNDS.2011.5764587
  • Filename
    5764587