Secure and Lightweight User Authentication Scheme for Cloud-Assisted Internet of Things

被引:33
|
作者
Wang, Chenyu [1 ,2 ]
Wang, Ding [3 ,4 ,5 ]
Duan, Yihe [3 ,4 ,5 ]
Tao, Xiaofeng [1 ,2 ]
机构
[1] Beijing Univ Posts & Telecommun, Coll Cyber Sci, Beijing 100876, Peoples R China
[2] Beijing Univ Posts & Telecommun, Natl Engn Res Ctr Mobile Network Technol, Beijing 100876, Peoples R China
[3] Nankai Univ, Coll Cyber Sci, Tianjin 300350, Peoples R China
[4] State Key Lab Cryptol, Beijing 100878, Peoples R China
[5] Nankai Univ, Tianjin Key Lab Network & Data Secur Technol, Tianjin 300350, Peoples R China
基金
中国国家自然科学基金;
关键词
User authentication; Internet of Things; cloud computing; offline dictionary attack; KEY AGREEMENT SCHEME; INDUSTRIAL INTERNET; IOT; PROTOCOL; EXCHANGE; BIOMETRICS; NETWORKS; DESIGN;
D O I
10.1109/TIFS.2023.3272772
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Cloud-assisted Internet of Things (IoT) overcomes the resource-constrained nature of the traditional IoT and is developing rapidly in such fields as smart grids and intelligent transportation. In a cloud-assisted IoT system, users can remotely control the IoT devices and send specific instructions to them. If the users' identities are not verified, adversaries can pretend as legitimate users to send fake and malicious instructions to IoT devices, thereby compromising the security of the entire system. Thus, a sound authentication mechanism is indispensable to ensure security. At the same time, it should be noted that a gateway may connect to massive IoT devices with the exponential growth of interconnected devices in a cloud-assisted IoT system. The efficiency of authentication schemes is easily impacted by the computation capability of the gateway. Recently, several schemes have been designed for cloud-assisted IoT systems, but they have problems of one kind or another, making them not suitable for cloud-assisted IoT systems. In this paper, we take a typical scheme (proposed at IEEE TDSC 2020) as an example to identify the common weaknesses and challenges of designing a user authentication scheme for cloud-assisted IoT systems. In addition, we propose a new secure user authentication scheme with lightweight computation on gateways. The proposed scheme provides secure access between remote users and IoT devices with many ideal attributions, such as forward secrecy and multi-factor security. Meanwhile, the security of this scheme is proved under the random-oracle model, heuristic analysis, the ProVerif tool, and BAN logic. Compared with ten state-of-the-art schemes in security and performance, the proposed scheme achieves all the listed twelve security requirements with minimum computation and storage costs on gateways.
引用
收藏
页码:2961 / 2976
页数:16
相关论文
共 50 条
  • [1] Secure Authentication and Key Agreement Protocol for Cloud-Assisted Industrial Internet of Things
    Hu, Huanhuan
    Liao, Longxia
    Zhao, Junhui
    [J]. ELECTRONICS, 2022, 11 (10)
  • [2] A Lightweight Image Cryptosystem for Cloud-Assisted Internet of Things
    Oladipupo, Esau Taiwo
    Abikoye, Oluwakemi Christiana
    Awotunde, Joseph Bamidele
    [J]. APPLIED SCIENCES-BASEL, 2024, 14 (07):
  • [3] Blockchain-Based Secure and Verifiable Deduplication Scheme for Cloud-Assisted Internet of Things
    Zhang, Guipeng
    Chen, Pinghua
    Liao, Yongwei
    [J]. IEEE INTERNET OF THINGS JOURNAL, 2024, 11 (08): : 13995 - 14006
  • [4] A secure lightweight fuzzy embedder based user authentication scheme for internet of medical things applications
    Praveen, R.
    Pabitha, P.
    [J]. JOURNAL OF INTELLIGENT & FUZZY SYSTEMS, 2023, 44 (05) : 7523 - 7542
  • [5] An Adaptive Lightweight Hybrid Encryption Scheme for Securing the Healthcare Data in Cloud-Assisted Internet of Things
    B. Padma Vijetha Dev
    K. Venkata Prasad
    [J]. Wireless Personal Communications, 2023, 130 : 2959 - 2980
  • [6] An Adaptive Lightweight Hybrid Encryption Scheme for Securing the Healthcare Data in Cloud-Assisted Internet of Things
    Dev, B. Padma Vijetha
    Prasad, K. Venkata
    [J]. WIRELESS PERSONAL COMMUNICATIONS, 2023, 130 (04) : 2959 - 2980
  • [7] An Improved Lightweight User Authentication Scheme for the Internet of Medical Things
    Kim, Keunok
    Ryu, Jihyeon
    Lee, Youngsook
    Won, Dongho
    [J]. SENSORS, 2023, 23 (03)
  • [8] Lightweight Authentication Scheme for Data Dissemination in Cloud-Assisted Healthcare IoT
    Liu, Jianghua
    Yang, Jian
    Wu, Wei
    Huang, Xinyi
    Xiang, Yang
    [J]. IEEE TRANSACTIONS ON COMPUTERS, 2023, 72 (05) : 1384 - 1395
  • [9] Secure Data Sharing and Searching at the Edge of Cloud-Assisted Internet of Things
    Mollah, Muhammad Baqer
    Azad, Md. Abul Kalam
    Vasilakos, Athanasios
    [J]. IEEE CLOUD COMPUTING, 2017, 4 (01): : 34 - 42
  • [10] Lightweight Authentication Scheme for Internet of Things
    Haenel, Arie
    Haddad, Yoram
    Zhang, Zonghua
    [J]. 2020 IEEE 17TH ANNUAL CONSUMER COMMUNICATIONS & NETWORKING CONFERENCE (CCNC 2020), 2020,