A Lightweight, Secure Big Data-Based Authentication and Key-Agreement Scheme for IoT with Revocability

被引:1
|
作者
Zahednejad, Behnam [1 ]
Teng, Huang [1 ]
Kosari, Saeed [2 ]
Xiaojun, Ren [1 ]
机构
[1] Guangzhou Univ, Inst Artificial Intelligence & Blockchain, Guangzhou, Peoples R China
[2] Guangzhou Univ, Inst Comp Sci & Technol, Guangzhou 510006, Peoples R China
基金
中国国家自然科学基金;
关键词
USER AUTHENTICATION;
D O I
10.1155/2023/9731239
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
With the rapid development of Internet of Things (IoT), designing a secure two-factor authentication scheme for IoT is becoming increasingly demanding. Two-factor protocols are deployed to achieve a higher security level than single-factor protocols. Given the resource constraints of IoT devices, other factors such as biometrics are ruled out as additional authentication factors due to their large overhead. Smart cards are also prone to side-channel attacks. Therefore, historical big data have gained interest recently as a novel authentication factor in IoT. In this paper, we show that existing big data-based schemes fail to achieve their claimed security properties such as perfect forward secrecy (PFS), key compromise impersonation (KCI) resilience, and server compromise impersonation (SCI) resilience. Assuming a real strong attacker rather than a weak one, we show that previous schemes not only fail to provide KCI and SCI but also do not provide real two-factor security and revocability and suffer inside attack. Then, we propose our novel scheme which can indeed provide real two-factor security, PFS, KCI, and inside attack resilience and revocability of the client. Furthermore, our performance analysis shows that our scheme has reduced modular exponentiation operation and multiplication for both the client and the server compared to Liu et al.'s scheme which reduces the execution time by one third for security levels of ?=128. Moreover, in order to cope with the potential threat of quantum computers, we suggest using lightweight XMSS signature schemes which provide the desired security properties with ?=128 bit postquantum security. Finally, we prove the security of our proposed scheme formally using both the real-or-random model and the ProVerif analysis tool.
引用
收藏
页数:19
相关论文
共 50 条
  • [1] SLAK: secure lightweight scheme for authentication and key-agreement in internet of things
    Nahnah, Oussama
    Cherbal, Sarra
    [J]. INTERNATIONAL JOURNAL OF INFORMATION AND COMPUTER SECURITY, 2024, 23 (02)
  • [2] Provably Secure Lightweight Mutual Authentication and Key Agreement Scheme for Cloud-Based IoT Environments
    Ju, Sieun
    Park, Yohan
    [J]. SENSORS, 2023, 23 (24)
  • [3] A multi-gateway authentication and key-agreement scheme on wireless sensor networks for IoT
    Yang, Jen-Ho
    [J]. EURASIP JOURNAL ON INFORMATION SECURITY, 2023, 2023 (01)
  • [4] LAAKA: Lightweight Anonymous Authentication and Key Agreement Scheme for Secure Fog-Driven IoT Systems
    Ali, Hala
    Ahmed, Irfan
    [J]. COMPUTERS & SECURITY, 2024, 140
  • [5] A multi-gateway authentication and key-agreement scheme on wireless sensor networks for IoT
    Jen-Ho Yang
    [J]. EURASIP Journal on Information Security, 2023
  • [6] Provably Secure and Lightweight Authentication Key Agreement Scheme for Smart Meters
    Chai, Sheng
    Yin, Haotian
    Xing, Bin
    Li, Zhukun
    Guo, Yunyi
    Zhang, Di
    Zhang, Xin
    He, Da
    Zhang, Jie
    Yu, Xiaoling
    Wang, Wei
    Huang, Xin
    [J]. IEEE TRANSACTIONS ON SMART GRID, 2023, 14 (05) : 3816 - 3827
  • [7] A Secure Authentication and Key Agreement Scheme for IoT-Based Cloud Computing Environment
    Yu, Yicheng
    Hu, Liang
    Chu, Jianfeng
    [J]. SYMMETRY-BASEL, 2020, 12 (01):
  • [8] A secure user authentication and key-agreement scheme using wireless sensor networks for agriculture monitoring
    Ali, Rifaqat
    Pal, Arup Kumar
    Kumari, Saru
    Karuppiah, Marimuthu
    Conti, Mauro
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2018, 84 : 200 - 215
  • [9] A novel authentication and key-agreement scheme for satellite communication network
    Altaf, Izwa
    Akram, Muhammad Arslan
    Mahmood, Khalid
    Kumari, Saru
    Xiong, Hu
    Khan, Muhammad Khurram
    [J]. TRANSACTIONS ON EMERGING TELECOMMUNICATIONS TECHNOLOGIES, 2021, 32 (07)
  • [10] Scalable and Secure Big Data IoT System Based on Multifactor Authentication and Lightweight Cryptography
    Atiewi, Saleh
    Al-Rahayfeh, Amer
    Almiani, Muder
    Yussof, Salman
    Alfandi, Omar
    Abugabah, Ahed
    Jararweh, Yaser
    [J]. IEEE ACCESS, 2020, 8 : 113498 - 113511