节点文献
针对“虫洞”攻击的移动Ad hoc网安全路由及仿真实现的研究
【作者】 柳楠;
【导师】 韩芳溪;
【作者基本信息】 山东大学 , 计算机应用技术, 2005, 硕士
【摘要】 随着有线网络应用局限性的日益明显以及无线网络技术的成熟,无线网络的应用日益广泛,尤其是移动Ad hoc网络,在军事、紧急情况应急处理、临时办公和会议、移动通信、传感器网络等方面都得到了应用。当技术应用成为可能,其可靠性、安全性便成为追求的目标。移动Ad hoc网络研究的热点也逐渐由路由协议方面转向网络的QoS、安全性等方面,研究人员展开了针对移动Adhoc网络自身弱点建立相应安全措施的各项研究。其中,如何检测和防御对网络的恶意攻击是保证网络安全的重要环节。本文着重研究了移动Ad hoc网络中一种严重的恶意攻击——“虫洞”攻击,提出相应的检测协议模型,实现了对“虫洞”攻击的有效检测。 本文简单介绍了移动Ad hoc网络的概念和相关内容,重点针对虫洞攻击的原理设计了一个检测虫洞攻击的协议模型,并采用OMNeT++仿真器进行模拟,证明协议的有效性。仿真在Windows 2000环境下,OMNeT++仿真环境中设计实现,以NED、Microsoft VC++6.0为主要的开发工具,建立了移动Ad hoc网络拓扑模型、虫洞模型、AODV协议模型及“虫洞”检测模型,进行了无虫洞攻击下移动Ad hoc网络的通讯、有虫洞攻击下移动Ad hoc网络的通讯、检测协议执行后网络通讯的仿真,针对仿真结果分析移动网络中的各种因素对虫洞检测协议执行有效性的影响。 虫洞检测协议模型的设计是课题研究的一个重点和难点。虫洞攻击由于其攻击者的隐蔽性难于检测,它利用高质量宽频段的特殊通讯方式实现远距离的通讯,达到破坏正常网络通讯,截取有用信息的目的。检测虫洞攻击的关键在于定位虫洞节点,主要通过检测异常通讯时间或通讯距离的方法来实现。在技术实现上,由于无线网络具有网络带宽、无线装置能源受限的特点,要求无线网络中的各种算法和协议应尽量降低复杂性,以减小带宽和网络设备CPU、内存的消耗。该协议利用节点的位置信息进行相应的矢量计算判断节点位置的合理性,从而达到检测虫洞节点的目的,具有较低的复杂度。在经济上,由于一些精确仪器的价格相对昂贵,例如能够提供有效的精确时钟同步的精密仪器铷铯光时钟、氢微波激射时钟等,采用时间方法检测虫洞攻击的代价将比较高,因此该协议采用松散时钟同步,利用位置信息定位虫洞攻击的方法是经济实用
【Abstract】 Along with increasingly restriction of wire network applications and maturity of the wireless network technology, wireless network—especially MANET is widely applied to military affairs, emergency action, temporary office and meeting, mobile communication and sensor network etc. Once application of technology is possible, reliability and security of this technology become next goal. Focus of research in MANET is changing from route protocol to QoS and security. Researchers commit themselves to secure measures aiming at weakness of MANET. Thereinto, how to detect and prevent malicious attacks is important aspect on security of network. In this paper, wormhole attack—a kind of serious malicious attackes is analysed, a dectection protocol model that can effectively detect wormhole is brought forward.This paper briefly introduces the conceptions and corresponding contents, and then presents a protocol model of detecting wormhole attack and designs a simulation in OMNeT++ to certify the validity of the protocol. In Windows2000 system and simulation software—OMNeT++, simulation uses NED and Microsoft VC++6.0 as chiefly development kits. It builds up MANET topology model, wormhole model, AODV protocol model and wormhole detection protocol model, and simulates normal communication in MANET, communication under wormhole attack and detection protocol. Aiming at results of simulation, effects on detection protocol that are brought by all kinds of factors of MANET are analysed.It is an important and difficult point in the project that wormhole detection protocol model is designed. Because of hide of wormhole attackers, wormhole attack is difficultly detected. Wormhole attackers communicate with each other by top-quality and wide channel to break normal communication of network and to intercept useful informations. The key of detecting wormhole attack is locating wormhole node. The main methods include detecting time and distance of abnormal communication between nodes. On the realization of techonology aspect, it needs that all kinds of arithmetcs and protocols try themselves best to reduce complexity to drop consumption of bandwidth and CPU and memory of equipment. This detection protocol uses location information of node to calculate distance between two nodes to judge the rationality of position of node, and then detects the wormhole nodes. This method has lower complexity. On economy aspect, the cost of using temporal detection is higher because precision instruments that can supply strict clocksynchronization are expensive such as Rb.and Cs. clock, hydrogen maser clock. So this detection protocol uses loose clock synchronization and locates wormhole attack with position informations, which is economic. The definition of protocol model includes initialization, communication and detection processes. Detection process gains positions and list of neighbour nodes by location node. All nodes calculate distance with position information to detect abnormal communication, and then locate the wormhole node and discard the wormhole node from MANET.After detection protocol model is built up, how to prove its validity? Simulation experiment is a good method. Simulation experiment in OMENeT++ is another difficult point in the project. Topology model of MANET can dynamicly confirm scale of MANET. AODV protocol model is built up to complete communication of MANET. According to theory of wormhole, wormhole model is designed by that effect on AODV protol is observed. At last, detecting process is simulated in terms of wormhole detection protocol model. It certifies the protocol can availably reduce wormhole’s effects on AODV.Brief and efficient wormhole locating arithmatic is the kernel of the wormhole detection protocol model, which is an effective way to prevent the wormhole attack in MANET. Visual simulating process clearly presents the results of simulation, which powerfully certifies the efficiency of this wormhole detection protocol.
【Key words】 Mobile Ad hoc; Wormhole attack; Location node; OMNeT++; Ad hoc on-demand distance vector;
- 【网络出版投稿人】 山东大学 【网络出版年期】2006年 01期
- 【分类号】TN918.82
- 【被引频次】5
- 【下载频次】584