Abstract

The magical buzzword Internet of Things (IoT) connects any objects which are diverse in nature. The restricted capacity, heterogeneity and large scale implementation of the IoT technology tend to have lot of security threats to the IoT networks. RPL is the routing protocol for the constraint devices like IoT nodes. ICMPv6 protocol plays a major role in constructing the tree-like topology called DODAG. It is vulnerable to several security attacks. Version Number Attack, DIS flooding attack and DAO attack are the ICMPv6 based attacks discussed in this paper. The network traffic is collected from the simulated environment in the normal and attacker settings. An AdaBoost ensemble model termed Ada-IDS is developed in this research to detect these three ICMPv6 based security attacks in RPL based Internet of Things. The proposed model detects the attacks with 99.6% accuracy and there is no false alarm rate. The Ada-IDS ensemble model is deployed in the Border Router of the IoT network to safeguard the IoT nodes and network.

Highlights

  • Internet of Things (IoT) is a network of embedded objects having unique identifier with sensing and actuation capacities and limited resources

  • Version Number attacks, DODAG Information Solicitation (DIS) flooding attacks and Destination Advertisement Object (DAO) attacks are some of the Internet Control Message Protocol version 6 (ICMPv6) control message based attacks which lead to harmful effects in the IoT environment [9]

  • The security attacks are inevitable in Routing Protocol for Low-Power Lossy Network (RPL) based Internet of Things as they have limited resources compared to other networks

Read more

Summary

INTRODUCTION

Internet of Things (IoT) is a network of embedded objects having unique identifier with sensing and actuation capacities and limited resources. ICMPv6 is the backbone of IPv6 and RPL as it has the building blocks such as DODAG Information Object (DIO), Destination Advertisement Object (DAO), DODAG Information Solicitation (DIS) and DAOAcknowledgement (DAO-ACK) informational messages for constructing the DODAG for routing [6]. Version Number attacks, DIS flooding attacks and DAO attacks are some of the ICMPv6 control message based attacks which lead to harmful effects in the IoT environment [9]. An AdaBoost ensemble Intrusion Detection System called Ada-IDS is proposed to detect the Version Number attack, DIS flooding attack and DAO attacks in the IoT network. An ensemble AdaBoost machine learning algorithms is applied on the collected dataset to build the Ada-IDS for detecting the ICMPv6 based attacks. The proposed Ada-IDS detects the Version Number Attack, DIS flooding attack and DAO attacks with 99.6% accuracy and with very less false alarm rate.

RELATED WORK
ICMPV6 ATTACKS IN RPL BASED IOT
DIS Flooding Attacks
DAO Attacks
PROPOSED ADA-IDS MODEL
Data Collection Phase
Pre-Processing Phase
Feature Engineering
Model Building Phase
AdaBoost Ensemble Model
Deployment Phase
AND DISCUSSION
Evaluation Metrics
Findings
CONCLUSION
Full Text
Published version (Free)

Talk to us

Join us for a 30 min session where you can share your feedback and ask us any queries you have

Schedule a call