{"title":"基于嵌入式以太网的入侵检测技术研究","authors":"Zhou Zihan, Chen Lirong, Zhang Haitao, Z. Fan","doi":"10.1109/ICCWAMTIP53232.2021.9674069","DOIUrl":null,"url":null,"abstract":"With the development of intelligent connected vehicles, in-vehicle Ethernet technologies are more and more commonly applied in automotive industry, such that cybersecurity related problems of in-vehicle Ethernet are becoming more and more obvious and should not be ignored. This paper studies an embedded intrusion detection technology for in-vehicle Ethernet. Based on rule matching a new binary rule format is designed, which can be converted with the current mainstream Snort/Suricata rule set. This technology is applied to our intrusion detection system ETH-IDS, which is a vehicle-oriented embedded Ethernet intrusion detection system and completely compliant with related AUTOSAR specifications. A multi-level comprehensive evaluation model is also proposed in the embedded environment to take the quantitative evaluation for intrusion detection systems. Related experiments are carried out in an automotive embedded environment, and the performance advantages of ETH-IDS are verified compared with Suricata. Meanwhile, the validity of the evaluation model is also verified.","PeriodicalId":358772,"journal":{"name":"2021 18th International Computer Conference on Wavelet Active Media Technology and Information Processing (ICCWAMTIP)","volume":"27 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2021-12-17","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"2","resultStr":"{\"title\":\"Research on Intrusion Detection Technology Based on Embedded Ethernet\",\"authors\":\"Zhou Zihan, Chen Lirong, Zhang Haitao, Z. Fan\",\"doi\":\"10.1109/ICCWAMTIP53232.2021.9674069\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"With the development of intelligent connected vehicles, in-vehicle Ethernet technologies are more and more commonly applied in automotive industry, such that cybersecurity related problems of in-vehicle Ethernet are becoming more and more obvious and should not be ignored. This paper studies an embedded intrusion detection technology for in-vehicle Ethernet. Based on rule matching a new binary rule format is designed, which can be converted with the current mainstream Snort/Suricata rule set. This technology is applied to our intrusion detection system ETH-IDS, which is a vehicle-oriented embedded Ethernet intrusion detection system and completely compliant with related AUTOSAR specifications. A multi-level comprehensive evaluation model is also proposed in the embedded environment to take the quantitative evaluation for intrusion detection systems. Related experiments are carried out in an automotive embedded environment, and the performance advantages of ETH-IDS are verified compared with Suricata. Meanwhile, the validity of the evaluation model is also verified.\",\"PeriodicalId\":358772,\"journal\":{\"name\":\"2021 18th International Computer Conference on Wavelet Active Media Technology and Information Processing (ICCWAMTIP)\",\"volume\":\"27 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2021-12-17\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"2\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2021 18th International Computer Conference on Wavelet Active Media Technology and Information Processing (ICCWAMTIP)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ICCWAMTIP53232.2021.9674069\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2021 18th International Computer Conference on Wavelet Active Media Technology and Information Processing (ICCWAMTIP)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICCWAMTIP53232.2021.9674069","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
Research on Intrusion Detection Technology Based on Embedded Ethernet
With the development of intelligent connected vehicles, in-vehicle Ethernet technologies are more and more commonly applied in automotive industry, such that cybersecurity related problems of in-vehicle Ethernet are becoming more and more obvious and should not be ignored. This paper studies an embedded intrusion detection technology for in-vehicle Ethernet. Based on rule matching a new binary rule format is designed, which can be converted with the current mainstream Snort/Suricata rule set. This technology is applied to our intrusion detection system ETH-IDS, which is a vehicle-oriented embedded Ethernet intrusion detection system and completely compliant with related AUTOSAR specifications. A multi-level comprehensive evaluation model is also proposed in the embedded environment to take the quantitative evaluation for intrusion detection systems. Related experiments are carried out in an automotive embedded environment, and the performance advantages of ETH-IDS are verified compared with Suricata. Meanwhile, the validity of the evaluation model is also verified.