Network Anomaly Detection in Cars based on Time-Sensitive Ingress Control

Link:
Autor/in:
Verlag/Körperschaft:
IEEE Press
Erscheinungsjahr:
2020
Medientyp:
Text
Schlagworte:
  • 802.1Qci
  • Vehicular network security
  • Time-Sensitive Networking
  • Software-Defined Networking
  • 004: Informatik
  • ddc:004
Beschreibung:
  • Connected cars need robust protection against network attacks. Network anomaly detection and prevention on board will be particularly fast and reliable when situated on the lowest possible layer. Blocking traffic on a low layer, however, causes severe harm if triggered erroneously by falsely positive alarms. In this paper, we introduce and evaluate a concept for detecting anomalous traffic using the ingress control of Time-Sensitive Networking (TSN). We build on the idea that already defined TSN traffic descriptors for in-car network configurations are rigorous, and hence any observed violation should not be a false positive. Also, we use Software-Defined Networking (SDN) technologies to collect and evaluate ingress anomaly reports, to identify the generating flows, and to ban them from the network. We evaluate our concept by simulating a real-world zonal network topology of a future car. Our findings confirm that abnormally behaving individual flows can indeed be reliably segregated with zero false positives.
Quellsystem:
ReposIt

Interne Metadaten
Quelldatensatz
oai:reposit.haw-hamburg.de:20.500.12738/10771