TUM Logo

A Secure Ticket-Based En-route Filtering Scheme for Wireless Sensor Networks

Node compromise is a serious threat in wireless sensor networks. An adversary can use compromised nodes to inject false data into the network forging events to deceive the base station. Furthermore, an adversary can cause serious damage by injecting a large amount of false messages to deplete the scarce energy resources of the forwarding en-route sensor nodes. In this paper, we propose a Secure Ticket-Based Enroute Filtering Scheme (STEF) that drops false messages enroute. We propose a ticket concept where reply messages are only forwarded if they contain a valid ticket originally issued by the base station. Messages containing no ticket, or an replayed ticket, are immediately filtered out by not compromised sensor nodes. The ticket concept is based on lightweight one-way functions. This enables every en-route node to verify the tickets. Furthermore, our scheme does not need symmetric key sharing between message generating nodes and en-route nodes, which results in a high resiliency against node compromises. Our security and performance analysis shows that STEF provides a high security level and is very efficient in saving energy. Furthermore, the required storage capacity on the sensor nodes is very low.

A Secure Ticket-Based En-route Filtering Scheme for Wireless Sensor Networks

2nd International Conference on Availability, Reliability and Security ({ARES}) 2007

Authors: Christoph Krauß, Markus Schneider, Kpatcha Bayarou, and Claudia Eckert
Year/month: 2007/4
Booktitle: 2nd International Conference on Availability, Reliability and Security ({ARES}) 2007
Publisher: IEEE Computer Society
Fulltext:

Abstract

Node compromise is a serious threat in wireless sensor networks. An adversary can use compromised nodes to inject false data into the network forging events to deceive the base station. Furthermore, an adversary can cause serious damage by injecting a large amount of false messages to deplete the scarce energy resources of the forwarding en-route sensor nodes. In this paper, we propose a Secure Ticket-Based Enroute Filtering Scheme (STEF) that drops false messages enroute. We propose a ticket concept where reply messages are only forwarded if they contain a valid ticket originally issued by the base station. Messages containing no ticket, or an replayed ticket, are immediately filtered out by not compromised sensor nodes. The ticket concept is based on lightweight one-way functions. This enables every en-route node to verify the tickets. Furthermore, our scheme does not need symmetric key sharing between message generating nodes and en-route nodes, which results in a high resiliency against node compromises. Our security and performance analysis shows that STEF provides a high security level and is very efficient in saving energy. Furthermore, the required storage capacity on the sensor nodes is very low.

Bibtex:

@inproceedings {
author = { Christoph Krauß and Markus Schneider and Kpatcha Bayarou and Claudia Eckert},
title = { A Secure Ticket-Based En-route Filtering Scheme for Wireless Sensor Networks },
year = { 2007 },
month = { April },
booktitle = { 2nd International Conference on Availability, Reliability and Security ({ARES}) 2007 },
publisher = { IEEE Computer Society },

}