Physical-Layer Identification of Wired Ethernet Devices

被引:30
作者
Gerdes, Ryan M. [1 ]
Mina, Mani [2 ]
Russell, Steve F. [2 ]
Daniels, Thomas E. [2 ]
机构
[1] Utah State Univ, Dept Elect & Comp Engn, Logan, UT 84322 USA
[2] Iowa State Univ, Dept Elect & Comp Engn, Ames, IA 50011 USA
关键词
Communication forensics; hardware and devices; hardware forensics; intrusion prevention and tolerance; network security; physical layer security; signal and data authentication;
D O I
10.1109/TIFS.2012.2197746
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
This work sets forth a systematic approach for the investigation and utilization of the signal characteristics of digital devices for use in a security context. A methodology, built upon an optimal detector, the matched filter, is proposed that allows for the reliable identification and tracking of wired Ethernet cards by use of their hardware signaling characteristics. The matched filter is found to be sensitive enough to differentiate between devices using only a single Ethernet frame; an adaptive thresholding strategy employing prediction intervals is used to cope with the stochastic nature of the signals. To demonstrate the validity of the methodology, and to determine which portions of the signal are useful for identification purposes, experiments were performed on three different models of 10/100 Ethernet cards, totaling 27 devices in all. In selecting the cards, an effort was made to maximize intramodel similarity and thus present a worst-case scenario. While the primary focus of the work is network-based authentication, forensic applications are also considered. By using data collected from the same devices at different times, it is shown that some models of cards can be reidentified even after a month has elapsed since they were last seen.
引用
收藏
页码:1339 / 1353
页数:15
相关论文
共 59 条
[1]  
[Anonymous], 2004, COMBINING PATTERN CL, DOI DOI 10.1002/0471660264
[2]  
[Anonymous], 2009, USENIX SECUR S
[3]  
[Anonymous], 2008, P IEEE 68 VEH TECHN
[4]  
[Anonymous], P 2011 IEEE VEH POW
[5]  
Barbeau J. H. M., 2006, Proceedings of the Third IASTED International Conference on Communications and Computer Networks, P108
[6]  
Barrere W. G., 1998, U.S. Patent, Patent No. [5,715,518, 5715518]
[7]  
Bolle R.M., 2004, SPR PRO COM, V1a, DOI 10.1007/978-1-4757-4036-3
[8]   Wireless Device Identification with Radiometric Signatures [J].
Brik, Vladimir ;
Banerjee, Suman ;
Gruteser, Marco ;
Oh, Sangho .
MOBICOM'08: PROCEEDINGS OF THE FOURTEENTH ACM INTERNATIONAL CONFERENCE ON MOBILE COMPUTING AND NETWORKING, 2008, :116-+
[9]  
Caidan Zhao, 2011, 2011 6th International Conference on Computer Science & Education (ICCSE 2011), P1099, DOI 10.1109/ICCSE.2011.6028826
[10]  
CANDORE A, 2009, P IEEE INT WORKSH HA, P43