Telecommunications Science ›› 2010, Vol. 26 ›› Issue (10): 80-86.doi: 10.3969/j.issn.1000-0801.2010.10.020

• research and development • Previous Articles     Next Articles

Research of Distributed Pre-Decision Engine in Wireless Intrusion Prevention Systems

Guanlin Chen1,2,Yan Feng2,Zebing Wang1   

  1. 1 School of Computer and Computing Science,Zhejiang University City College,Hangzhou 310015,China
    2 College of Computer Science,Zhejiang University,Hangzhou 310027,China
  • Online:2010-10-15 Published:2010-10-15

Abstract:

Nowadays wireless intrusion prevention systems have become the research hotspot with the fast development of WLAN. In this paper,we first introduce the common attack methods for WLAN,and then present the framework of the wireless IPS with a distributed pre-decision engine,which can predict the future actions and direct active responses to these actions. We implement an improved model with extended detection rules for conducting intrusion plan and making pre-decision,by gathering wireless device information and importing supporting degree of intrusion plan in plan recognition. Experimental results showed that the distributed pre-decision engine can not only improve wireless intrusion detection and prevention performance,also reduce false negatives and false positives evidently.

Key words: intrusion prevention system, plan recognition, detection rule, network security

No Suggested Reading articles found!