A Secure and Lightweight Authentication Protocol for IoT-Based Smart Homes

被引:47
|
作者
Oh, JiHyeon [1 ]
Yu, SungJin [1 ,2 ]
Lee, JoonYoung [1 ]
Son, SeungHwan [1 ]
Kim, MyeongHyun [1 ]
Park, YoungHo [1 ,3 ]
机构
[1] Kyungpook Natl Univ, Sch Elect & Elect Engn, Daegu 41566, South Korea
[2] Elect & Telecommun Res Inst, Daejeon 34129, South Korea
[3] Kyungpook Natl Univ, Sch Elect Engn, Daegu 41566, South Korea
基金
新加坡国家研究基金会;
关键词
smart homes; IoT; authentication; BAN logic; ROR model; AVISPA; KEY MANAGEMENT PROTOCOL; PROVABLY SECURE; SCHEME; INTERNET; PRIVACY; DESIGN; ACCESS; ROBUST;
D O I
10.3390/s21041488
中图分类号
O65 [分析化学];
学科分类号
070302 ; 081704 ;
摘要
With the information and communication technologies (ICT) and Internet of Things (IoT) gradually advancing, smart homes have been able to provide home services to users. The user can enjoy a high level of comfort and improve his quality of life by using home services provided by smart devices. However, the smart home has security and privacy problems, since the user and smart devices communicate through an insecure channel. Therefore, a secure authentication protocol should be established between the user and smart devices. In 2020, Xiang and Zheng presented a situation-aware protocol for device authentication in smart grid-enabled smart home environments. However, we demonstrate that their protocol can suffer from stolen smart device, impersonation, and session key disclosure attacks and fails to provide secure mutual authentication. Therefore, we propose a secure and lightweight authentication protocol for IoT-based smart homes to resolve the security flaws of Xiang and Zheng's protocol. We proved the security of the proposed protocol by performing informal and formal security analyses, using the real or random (ROR) model, Burrows-Abadi-Needham (BAN) logic, and the Automated Validation of Internet Security Protocols and Applications (AVISPA) tool. Moreover, we provide a comparison of performance and security properties between the proposed protocol and related existing protocols. We demonstrate that the proposed protocol ensures better security and lower computational costs than related protocols, and is suitable for practical IoT-based smart home environments.
引用
收藏
页码:1 / 24
页数:24
相关论文
共 50 条
  • [1] Secure and Lightweight Authentication Protocol Using PUF for the IoT-based Wireless Sensor Network
    Roy, Sourav
    Das, Dipnarayan
    Sen, Bibhash
    [J]. ACM JOURNAL ON EMERGING TECHNOLOGIES IN COMPUTING SYSTEMS, 2024, 20 (01)
  • [2] A lightweight authentication protocol for IoT-based cloud environment
    Zargar, Sadra
    Shahidinejad, Ali
    Ghobaei-Arani, Mostafa
    [J]. INTERNATIONAL JOURNAL OF COMMUNICATION SYSTEMS, 2021, 34 (11)
  • [3] A Lightweight and Robust User Authentication Protocol with User Anonymity for IoT-Based Healthcare
    Chen, Chien-Ming
    Liu, Shuangshuang
    Chaudhry, Shehzad Ashraf
    Chen, Yeh-Cheng
    Khan, Muhammad Asghar
    [J]. CMES-COMPUTER MODELING IN ENGINEERING & SCIENCES, 2022, 131 (01): : 307 - 329
  • [4] A Lightweight Authentication Protocol for IoT-Based Applications Using Reconfigurable Noisy PUFs
    Modarres, Amir Masoud Aminian
    Sarbishaei, Ghazaleh
    [J]. IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2024, 20 (09) : 11384 - 11392
  • [5] A Lightweight Pairing Protocol for IoT Devices in Smart Homes
    Tufail, Ali
    [J]. INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2019, 19 (04): : 227 - 235
  • [6] Verifying Secure Authentication Protocol for Communication between IoT-based Medical Devices
    Theera-Umpon, Nipon
    Han, Kun-Hee
    Bae, Woo-Sik
    Lee, Sanghyuk
    Van Huy Pham
    [J]. JOURNAL OF UNIVERSAL COMPUTER SCIENCE, 2018, 24 (09) : 1258 - 1270
  • [7] Secure and Lightweight Authentication Protocol for Smart Metering System
    El Makhtoum, Hind
    Bentaleb, Youssef
    [J]. International Journal of Advanced Computer Science and Applications, 2022, 13 (11): : 784 - 791
  • [8] Secure and Lightweight Authentication Protocol for Smart Metering System
    El Makhtoum, Hind
    Bentaleb, Youssef
    [J]. INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2022, 13 (11) : 784 - 791
  • [9] Cloud-based lightweight secure RFID mutual authentication protocol in IoT
    Fan, Kai
    Luo, Qi
    Zhang, Kuan
    Yang, Yintang
    [J]. INFORMATION SCIENCES, 2020, 527 : 329 - 340
  • [10] Conflict Detection in IoT-based Smart Homes
    Huang, Bing
    Dong, Hai
    Bouguettaya, Athman
    [J]. 2021 IEEE INTERNATIONAL CONFERENCE ON WEB SERVICES, ICWS 2021, 2021, : 303 - 313