论文标题

为多用户IoT环境安全的轻巧身份验证

Secure Lightweight Authentication for Multi User IoT Environment

论文作者

Patel, Chintan

论文摘要

物联网(物联网)为网络物理系统的强大和可持续部署提供了许多新的机会。任何物联网系统的基石是传感设备。这些传感设备具有相当大的资源限制,包括电池容量不足,CPU功能和物理安全性。由于这种资源限制,设计轻型加密协议是一个机会。远程用户身份验证可确保两个方建立安全耐用的会话密钥。这项研究为用户门(U GW)IoT网络模型提供了轻巧且安全的身份验证策略。所提出的系统设计利用椭圆曲线密码学(ECC)。我们对Internet安全协议(AVISPA)的自动验证和Burrows Abadi Needham(BAN)逻辑工具以及通过DELEV YAO渠道进行了信息安全评估,进行了正式的安全分析。我们将基于发布订阅的消息排队遥测传输(MQTT)协议用于通信。此外,安全性功能的性能分析和比较表明,所提出的方案对众所周知的加密威胁有弹性。

The Internet of Things (IoT) is giving a boost to a plethora of new opportunities for the robust and sustainable deployment of cyber physical systems. The cornerstone of any IoT system is the sensing devices. These sensing devices have considerable resource constraints, including insufficient battery capacity, CPU capability, and physical security. Because of such resource constraints, designing lightweight cryptographic protocols is an opportunity. Remote User Authentication ensures that two parties establish a secure and durable session key. This study presents a lightweight and safe authentication strategy for the user-gateway (U GW) IoT network model. The proposed system is designed leveraging Elliptic Curve Cryptography (ECC). We undertake a formal security analysis with both the Automated Validation of Internet Security Protocols (AVISPA) and Burrows Abadi Needham (BAN) logic tools and an information security assessment with the Delev Yao channel. We use publish subscribe based Message Queuing Telemetry Transport (MQTT) protocol for communication. Additionally, the performance analysis and comparison of security features show that the proposed scheme is resilient to well known cryptographic threats.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源