{"title":"基于签名检测和计划识别的智能WLAN入侵防御系统","authors":"Guanlin Chen, Hui Yao, Zebing Wang","doi":"10.1109/ICFN.2010.77","DOIUrl":null,"url":null,"abstract":"WLAN intrusion prevention systems have recently become one of the research hotspots with the rapid development of wireless communication. This paper starts from the introduction of intrusion prevention system and security threats to WLAN, puts forward the framework of the wireless IPS with an intelligent plan recognition engine, especially illustrates the expanding description of signature detection rules and the process of plan recognition. By utilizing device information and happened attack plans on monitored WLAN, this engine can predict the future actions and direct active responses to these actions. We present an improved model for conducting plan recognition. Experimental results showed that this engine can not only detect and prevent the main wireless attacks but also decrease false positives.","PeriodicalId":185491,"journal":{"name":"2010 Second International Conference on Future Networks","volume":"3 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2010-01-22","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"26","resultStr":"{\"title\":\"An Intelligent WLAN Intrusion Prevention System Based on Signature Detection and Plan Recognition\",\"authors\":\"Guanlin Chen, Hui Yao, Zebing Wang\",\"doi\":\"10.1109/ICFN.2010.77\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"WLAN intrusion prevention systems have recently become one of the research hotspots with the rapid development of wireless communication. This paper starts from the introduction of intrusion prevention system and security threats to WLAN, puts forward the framework of the wireless IPS with an intelligent plan recognition engine, especially illustrates the expanding description of signature detection rules and the process of plan recognition. By utilizing device information and happened attack plans on monitored WLAN, this engine can predict the future actions and direct active responses to these actions. We present an improved model for conducting plan recognition. Experimental results showed that this engine can not only detect and prevent the main wireless attacks but also decrease false positives.\",\"PeriodicalId\":185491,\"journal\":{\"name\":\"2010 Second International Conference on Future Networks\",\"volume\":\"3 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2010-01-22\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"26\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2010 Second International Conference on Future Networks\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ICFN.2010.77\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2010 Second International Conference on Future Networks","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICFN.2010.77","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
An Intelligent WLAN Intrusion Prevention System Based on Signature Detection and Plan Recognition
WLAN intrusion prevention systems have recently become one of the research hotspots with the rapid development of wireless communication. This paper starts from the introduction of intrusion prevention system and security threats to WLAN, puts forward the framework of the wireless IPS with an intelligent plan recognition engine, especially illustrates the expanding description of signature detection rules and the process of plan recognition. By utilizing device information and happened attack plans on monitored WLAN, this engine can predict the future actions and direct active responses to these actions. We present an improved model for conducting plan recognition. Experimental results showed that this engine can not only detect and prevent the main wireless attacks but also decrease false positives.