A continuous authentication scheme for zero-trust architecture in industrial internet of things

被引:0
|
作者
Wan, Tao [1 ]
Shi, Buhai [1 ]
Wang, Huan [2 ]
机构
[1] School of Automation Science and Engineering, South China University of Technology, Guangzhou,510641, China
[2] Industrial Technology Research Center, Guangdong Institute of Scientific & Technical Information, Guangzhou,510000, China
关键词
D O I
10.1016/j.aej.2025.03.012
中图分类号
学科分类号
摘要
Industrial Internet of Things (IIoT) allows users to access industrial devices and their data, but it also poses certain challenges to industrial data security. Authentication protocols are highly effective security techniques for protecting industrial data. This paper establishes a zero-trust architecture in the IIoT and proposes an authentication protocol suitable for zero-trust IIoT. The proposed scheme utilizes physical unclonable functions (PUF) for device authentication. Initial device authentication employs PUF to verify identity and establish session keys before session initiation, while continuous authentication verifies device location during the session to ensure that authenticated devices remain unaltered. Meanwhile, the scheme integrates three-factor authentication for user verification, ensuring secure user access. The proposed scheme establishes secure session key for users, gateways and IIoT devices, effectively guaranteeing the security of subsequent communications. Formal security analysis proves the security. Additionally, detailed informal security discussions demonstrate that the scheme can withstand known attacks and meet design objectives. Furthermore, performance evaluation reveals that the proposed scheme incurs low costs while providing enhanced security. © 2025 The Authors
引用
收藏
页码:555 / 563
相关论文
共 50 条
  • [21] Authentication scheme for industrial Internet of things based on DAG blockchain
    Tang Fei
    Dong Kun
    Ye Zhangtao
    Ling Guowei
    TheJournalofChinaUniversitiesofPostsandTelecommunications, 2021, 28 (06) : 1 - 12
  • [22] A Zero-Trust Architecture for Connected and Autonomous Vehicles
    Anderson, John
    Huang, Qiqing
    Cheng, Long
    Hu, Hongxin
    IEEE INTERNET COMPUTING, 2023, 27 (05) : 7 - 14
  • [23] A Zero-Trust Authentication Scheme With Access Control for 6G-Enabled IoT Environments
    Son, Seunghwan
    Kwon, Deokkyu
    Lee, Sangwoo
    Kwon, Hyeokchan
    Park, Youngho
    IEEE ACCESS, 2024, 12 : 154066 - 154079
  • [24] A distributed zero-trust scheme for airborne wireless sensor networks using dynamic identity authentication
    Wang, Kenian
    Hong, Yuan
    Li, Yue
    Yan, Rui
    Feng, Jingyu
    SCIENTIFIC REPORTS, 2025, 15 (01):
  • [25] A Terminal Security Authentication Protocol for Zero-Trust Satellite IoT
    Tian, Minqiu
    Li, Zifu
    Li, Fenghua
    Cao, Jin
    Guo, Chao
    2022 IEEE INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS, TRUSTCOM, 2022, : 299 - 306
  • [26] Privacy-preserving authentication scheme based on zero trust architecture
    Tang, Fei
    Ma, Chunliang
    Cheng, Kefei
    DIGITAL COMMUNICATIONS AND NETWORKS, 2024, 10 (05) : 1211 - 1220
  • [27] Privacy-preserving authentication scheme based on zero trust architecture
    Fei Tang
    Chunliang Ma
    Kefei Cheng
    Digital Communications and Networks, 2024, 10 (05) : 1211 - 1220
  • [28] On the Feasibility of Zero-Trust Architecture in Assuring Security in Metaverse
    AlShehhi, Fatema
    Otoum, Safa
    2023 INTERNATIONAL CONFERENCE ON INTELLIGENT METAVERSE TECHNOLOGIES & APPLICATIONS, IMETA, 2023, : 30 - 37
  • [29] Lightweight authentication scheme for edge control systems in Industrial Internet of Things
    Shang, Wenli
    Wen, Xudong
    Chen, Zhuo
    Xiong, Wenze
    Chang, Zhiwei
    Cao, Zhong
    FRONTIERS OF INFORMATION TECHNOLOGY & ELECTRONIC ENGINEERING, 2024, 25 (11) : 1466 - 1478
  • [30] A secure and lightweight authentication scheme for digital forensics in industrial internet of things
    Xiao, Nan
    Wang, Zhaoshun
    Sun, Xiaoxue
    ALEXANDRIA ENGINEERING JOURNAL, 2025, 121 : 117 - 127