Secure mutual authentication and automated access control for IoT smart home using cumulative Keyed-hash chain

被引:56
|
作者
Alshahrani, Mohammed [1 ]
Traore, Issa [1 ]
机构
[1] Univ Victoria, Victoria, BC V8W 2Y2, Canada
关键词
AVISPA; Fog computing; IoT security; Mutual authentication; Virtual domain; Authentication protocols; Anonymity; EFFICIENT AUTHENTICATION; INTERNET; SCHEME;
D O I
10.1016/j.jisa.2019.02.003
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
IoT platforms face huge challenge in deploying robust authentication mechanisms due to the fact that edge devices and resource-constrained devices may not have enough compute and storage capability to deploy and run existing mechanisms, which involve in general complex computations. In this paper, we propose a secure lightweight mutual authentication and key exchange protocol for IoT smart home environment based on temporary identity and cumulative Keyed-hash chain. Nodes can anonymously authenticate and establish session with the controller node using dynamic identities and symmetric keys in an unlinkable manner. Moreover, the enforcement of security policy between nodes is ensured by setting up a virtual domain segregation and restricting nodes capabilities of sending and receiving instructions and commands to or from other nodes. Cumulative Keyed-hash chain mechanism is introduced as a way to ensure the identity of the sender (through challenge-response). In addition, we capitalize on fog computing concept to improve identity assurance. Finally, we formally evaluate and prove the security of our protocol by using the Burrows-Abadi-Needham (BAN) logic and the Automated Validation of Internet Security Protocols and Applications (AVISPA) toolkit. (C) 2019 Elsevier Ltd. All rights reserved.
引用
收藏
页码:156 / 175
页数:20
相关论文
共 14 条
  • [1] Secure user authentication and key agreement scheme for IoT device access control based smart home communications
    Sirisha Uppuluri
    G. Lakshmeeswari
    [J]. Wireless Networks, 2023, 29 : 1333 - 1354
  • [2] Secure user authentication and key agreement scheme for IoT device access control based smart home communications
    Uppuluri, Sirisha
    Lakshmeeswari, G.
    [J]. WIRELESS NETWORKS, 2023, 29 (03) : 1333 - 1354
  • [3] 3-Level Secure Kerberos Authentication for Smart Home Systems Using IoT
    Gaikwad, Pranay P.
    Gabhane, Jyotsna P.
    Golait, Snehal S.
    [J]. 2015 1ST INTERNATIONAL CONFERENCE ON NEXT GENERATION COMPUTING TECHNOLOGIES (NGCT), 2015, : 262 - 268
  • [4] A Reverse Sequence Hash Chain-based Access Control for a Smart Home System
    Kim, DaeYoub
    [J]. 2020 IEEE INTERNATIONAL CONFERENCE ON CONSUMER ELECTRONICS (ICCE), 2020, : 570 - 573
  • [5] Towards Secure Smart Home IoT: Manufacturer and User Network Access Control Framework
    Al-Shaboti, Mohammed
    Welch, Ian
    Chen, Aaron
    Mahmood, Muhammad Adeel
    [J]. PROCEEDINGS 2018 IEEE 32ND INTERNATIONAL CONFERENCE ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS (AINA), 2018, : 892 - 899
  • [6] Hybrid Approaches (ABAC and RBAC) Toward Secure Access Control in Smart Home IoT
    Ameer, Safwa
    Benson, James
    Sandhu, Ravi
    [J]. IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2023, 20 (05) : 4032 - 4051
  • [7] Toward a Secure Smart-Home IoT Access Control Scheme Based on Home Registration Approach
    Wu, Tsu-Yang
    Meng, Qian
    Chen, Yeh-Cheng
    Kumari, Saru
    Chen, Chien-Ming
    [J]. MATHEMATICS, 2023, 11 (09)
  • [8] A Secure and Anonymous User Authentication Scheme for IoT-Enabled Smart Home Environments Using PUF
    Cho, Yeongjae
    Oh, Jihyeon
    Kwon, Deokkyu
    Son, Seunghwan
    Lee, Joonyoung
    Park, Youngho
    [J]. IEEE ACCESS, 2022, 10 : 101330 - 101346
  • [9] A Reverse Hash Chain Path-Based Access Control Scheme for a Connected Smart Home System
    Kim, DaeYoub
    Lee, Jihoon
    [J]. IEEE CONSUMER ELECTRONICS MAGAZINE, 2021, 10 (01) : 93 - 100
  • [10] Lightweight Secure Session Key Protection, Mutual Authentication, and Access Control (LSSMAC) for WBAN-Assisted IoT Network
    Gupta, Mayank
    Kumar, B. Sathis
    [J]. IEEE SENSORS JOURNAL, 2023, 23 (17) : 20283 - 20293