DKSM: A Decentralized Kerberos Secure Service-Management Protocol for Internet of Things

被引:2
|
作者
Chen, Jiahui [1 ]
Xiao, Hang [1 ]
Zheng, Yushan [2 ]
Hassan, Mohammad Mehedi [3 ]
Ianni, Michele [4 ]
Guzzo, Antonella [4 ]
Fortino, Giancarlo [4 ]
机构
[1] Guangdong Univ Technol, Sch Comp Sci & Technol, Guangzhou 510006, Peoples R China
[2] Shenzhen Customs, Informat Ctr, Shenzhen 518000, Peoples R China
[3] King Saud Univ, Coll Comp & Informat Sci, Informat Syst Dept, Riyadh 11543, Saudi Arabia
[4] Univ Calabria, Dept Informat Modeling Elect & Syst, I-87036 Arcavacata Di Rende, CS, Italy
基金
中国国家自然科学基金;
关键词
Internet of Things; Kerberos; Blockchain; Service security; BLOCKCHAIN;
D O I
10.1016/j.iot.2023.100871
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Kerberos is a widely used authentication protocol that protects distributed services on the Internet of Things (IoT) and big data. In a distributed scenario, entities must prove their identity to a trusted third party using shared secrets, such as secret keys. Traditional schemes typically use a trusted central organization, like a Key Distribution Center, for identity authentication. However, Kerberos has some downsides, such as a single point of failure, vulnerability to replay attacks, and potential credential exposure, which can compromise system security. To address these problems, researchers have been working on various solutions, but most have their own drawbacks. In this paper, we propose a Decentralized Kerberos Secure Service-Management Protocol (DKSM) based on blockchain technology and Ciphertext-policy Attribute-based Encryption (CP-ABE) schema. Compared with existing protocols, DKSM fulfills decentralization, fine-grained access control with effective cost, and scalability simultaneously. DKSM uses AES and Fast Attribute-Based Encryption with Optimal Security (FABEO) as its cryptographic basis. We also discuss the security of DKSM and demonstrate how our protocol can defend against attacks. Finally, tests on the Ethereum testnet and FISCO consortium platform have shown that our designed protocol is efficient and cost-effective.
引用
收藏
页数:15
相关论文
共 50 条
  • [1] Secure decentralized firmware update delivery service for Internet of Things
    Oktian, Yustus Eko
    Le, Thi-Thu-Huong
    Jo, Uk
    Laksmono, Agus Mahardika Ari
    Kim, Howon
    [J]. INTERNET OF THINGS, 2024, 26
  • [2] Secure Decentralized Machine Identifiers for Internet of Things
    Su, Yang
    Wu, Jing
    Long, Chengnian
    Wei, Lijun
    [J]. 2020 2ND INTERNATIONAL CONFERENCE ON BLOCKCHAIN TECHNOLOGY (ICBCT 2020), 2020, : 57 - 62
  • [3] A Secure Sidechain for Decentralized Trading in Internet of Things
    Gai, Fangyu
    Niu, Jianyu
    Jalalzai, Mohammad M.
    Tabatabaee, Seyed Ali
    Feng, Chen
    [J]. IEEE INTERNET OF THINGS JOURNAL, 2024, 11 (03): : 4029 - 4046
  • [4] Decentralized Blockchain-Based Trust Management Protocol for the Internet of Things
    Kouicem, Djamel Eddine
    Imine, Youcef
    Bouabdallah, Abdelmadjid
    Lakhlef, Hicham
    [J]. IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2022, 19 (02) : 1292 - 1306
  • [5] Decentralized Secure Framework for Social Collaborative Internet of Things
    Prabavathy, S.
    Sundarakantham, K.
    Shalinie, S. Mercy
    [J]. 2017 FOURTH INTERNATIONAL CONFERENCE ON SIGNAL PROCESSING, COMMUNICATION AND NETWORKING (ICSCN), 2017,
  • [6] Secure Secret-Key Management of Kerberos Service
    Cao, Lai-Cheng
    [J]. EMERGING RESEARCH IN ARTIFICIAL INTELLIGENCE AND COMPUTATIONAL INTELLIGENCE, 2011, 237 : 76 - 83
  • [7] Secure Object Tracking Protocol for the Internet of Things
    Ray, Biplob R.
    Chowdhury, Morshed U.
    Abawajy, Jemal H.
    [J]. IEEE INTERNET OF THINGS JOURNAL, 2016, 3 (04): : 544 - 553
  • [8] A Secure Publish/Subscribe Protocol for Internet of Things
    Malina, Lukas
    Srivastava, Gautam
    Dzurenda, Petr
    Hajny, Jan
    Fujdiak, Radek
    [J]. 14TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY (ARES 2019), 2019,
  • [9] A Secure Data Exchange Protocol for the Internet of Things
    Zhang, Yaping
    Bo, Lina
    Ma, Qian
    [J]. CONTEMPORARY RESEARCH ON E-BUSINESS TECHNOLOGY AND STRATEGY, 2012, 332 : 224 - +
  • [10] A Key Management Protocol for Secure Device-to-Device Communication in the Internet of Things
    Kandi, Mohamed Ali
    Lakhlef, Hicham
    Bouabdallah, Abdelmadjid
    Challal, Yacine
    [J]. 2019 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2019,