Remote Attestation based Software Integrity of IoT devices

被引:2
|
作者
Sundar, Shyam [1 ]
Yellai, Prabhakara [2 ]
Sanagapati, Siva Sankara Sai [1 ]
Pradhan, Prayas Chandra [1 ]
Reddy, Sai Kiran Kumar Y. [1 ]
机构
[1] Sri Sathya Sai Inst Higher Learning, Dept Phys, Prasanthinilayam, Andhra Pradesh, India
[2] Cisco Syst Inc, Bengaluru, India
关键词
IoT; TPM; HMAC; cryptography;
D O I
10.1109/ants47819.2019.9117946
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
Internet of Things is the new paradigm towards which the world is moving today. As these devices proliferate, security issues at these scales become more and more intimidating. Traditional approach like an antivirus does not work well with these devices and there is a need to look for a more trusted solution. For a device with reasonable computational power, we use a software trusted platform module for the cryptographic operations. In this paper, we have developed a model to remotely attest to the integrity of the processes running in the device. We have also explored the various features of the TPM (Trusted Platform Module) to gain insight into its working and also to ascertain those which can make this process better. This model depends on the server and the TPM to behave as roots of trust for this model. The client computes the HMAC (Hashed Message Authentication Code) values and appends a nonce and sends these values periodically to the server via asymmetric encryption. The HMAC values are verified by the server by comparing with its known good values (KGV) and the trustworthiness of the process is determined and accordingly an authorization response is sent.
引用
收藏
页数:4
相关论文
共 50 条
  • [1] Counteracting software integrity attacks on IoT devices with remote attestation: a prototype
    Berbecaru, Diana Gratiela
    Sisinni, Silvia
    [J]. 2022 26TH INTERNATIONAL CONFERENCE ON SYSTEM THEORY, CONTROL AND COMPUTING (ICSTCC), 2022, : 380 - 385
  • [2] A Software-Based Remote Attestation Scheme for Internet of Things Devices
    Cao, Jin
    Zhu, Tong
    Ma, Ruhui
    Guo, Zhenyang
    Zhang, Yinghui
    Li, Hui
    [J]. IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2023, 20 (02) : 1422 - 1434
  • [3] Poster: Enhancing Remote Healthiness Attestation for Constrained IoT Devices
    Jia, Yihao
    Liu, Bingyang
    Jiang, Weiyu
    Wu, Bo
    Wang, Chuang
    [J]. 2020 IEEE 28TH INTERNATIONAL CONFERENCE ON NETWORK PROTOCOLS (IEEE ICNP 2020), 2020,
  • [4] Software complexity based remote attestation
    Li Xiao-Yong
    Han Zhen
    Shen Chang-Xiang
    [J]. ICICIC 2006: FIRST INTERNATIONAL CONFERENCE ON INNOVATIVE COMPUTING, INFORMATION AND CONTROL, VOL 3, PROCEEDINGS, 2006, : 220 - +
  • [5] Integrity Attestation in Military IoT
    Fongen, Anders
    Mancini, Federico
    [J]. 2015 IEEE 2ND WORLD FORUM ON INTERNET OF THINGS (WF-IOT), 2015, : 484 - 489
  • [6] Remote Attestation as a Service for IoT
    Conti, Mauro
    Dushku, Edlira
    Mancini, Luigi V.
    Rabbani, Md Masoom
    Ranise, Silvio
    [J]. 2019 SIXTH INTERNATIONAL CONFERENCE ON INTERNET OF THINGS: SYSTEMS, MANAGEMENT AND SECURITY (IOTSMS), 2019, : 320 - 325
  • [7] SIMPLE: A Remote Attestation Approach for Resource-constrained IoT devices
    Ammar, Mahmoud
    Crispo, Bruno
    Tsudik, Gene
    [J]. 2020 ACM/IEEE 11TH INTERNATIONAL CONFERENCE ON CYBER-PHYSICAL SYSTEMS (ICCPS 2020), 2020, : 247 - 258
  • [8] Memory Offloading for Remote Attestation of Multi-Service IoT Devices
    Dushku, Edlira
    Ostergaard, Jeppe Hagelskjaer
    Dragoni, Nicola
    [J]. SENSORS, 2022, 22 (12)
  • [9] Software-Based Remote Network Attestation
    Kumar, Seema
    Eugster, Patrick
    Santini, Silvia
    [J]. IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2022, 19 (05) : 2920 - 2933
  • [10] RealSWATT: Remote Software-based Attestation for Embedded Devices under Realtime Constraints
    Surminski, Sebastian
    Niesler, Christian
    Brasser, Ferdinand
    Davi, Lucas
    Sadeghi, Ahmad-Reza
    [J]. CCS '21: PROCEEDINGS OF THE 2021 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2021, : 2890 - 2905