Efficient and Privacy-Preserving Blockchain-Based Multifactor Device Authentication Protocol for Cross-Domain IIoT

被引:38
|
作者
Zhang, Yan [1 ]
Li, Bing [2 ,3 ]
Wu, Jiaxin [4 ]
Liu, Bo [5 ]
Chen, Rui [6 ]
Chang, Jinke [7 ]
机构
[1] Southeast Univ, Sch Cyber Sci & Engn, Nanjing 210096, Peoples R China
[2] Southeast Univ, Sch Microelect, Sch Cyber Sci & Engn, Shenzhen Res Inst, Nanjing 210000, Peoples R China
[3] Southeast Univ, Adv Cloud Syst Res Ctr, Nanjing 210000, Peoples R China
[4] Southeast Univ, Sch Microelect, Nanjing 210000, Peoples R China
[5] Univ Technol Sydney, Sch Comp Sci, Ultimo, NSW 2007, Australia
[6] Nanjing Vocat Univ Ind Technol, Sch Comp & Software, Nanjing 210023, Peoples R China
[7] UCL, UCL Ctr Biomat Surg Reconstruct & Regenerat, London WC1E 6BT, England
基金
中国国家自然科学基金;
关键词
Blockchains; Industrial Internet of Things; Security; Protocols; Multi-factor authentication; Public key; Privacy; Blockchain; cross-domain IIoT; Industrial Internet of Things (IIoT); multifactor authentication; security and privacy; USER AUTHENTICATION; INTERNET; SECURITY; SCHEME; THINGS;
D O I
10.1109/JIOT.2022.3176192
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Industrial Internet of Things (IIoT) has emerged as a prospective technology that improves the productivity and automation level for industrial applications. Devices from cooperative IIoT domains will communicate and collaborate on the increasingly complicated manufacturing tasks. To secure cross-domain device collaborations, we propose combining the blockchain with multifactor authentication. Because the multifactor authentication conforms to IIoT devices' operation modes and brings higher security levels, and the blockchain technology contributes to building trust among different domains. However, this combined usage still has limitations in terms of the potential loss of factor attack, the storage overhead on the blockchain, and the contradiction between efficiency and privacy preservation. Motivated by these facts, in this article, we develop a privacy-preserving blockchain-based multifactor device authentication protocol for cross-domain IIoT. Specifically, multiple factors are additionally encoded by the hardware fingerprint into random numbers, before being transformed into key materials. The blockchain only stores each domain's dynamic accumulator, which accumulates derived key materials for devices, thereby reducing the overhead. Moreover, the on-chain accumulator is leveraged to efficiently verify the unlinkable identities of cross-domain IIoT devices. The security of our protocol is formally proved, and the security features and functionalities are, respectively, discussed. A proof-of-concept prototype was implemented to prove the efficiency and reliability. The comparison results indicate that the on-chain storage is greatly reduced. Finally, the smart contract's performance was evaluated to show scalability.
引用
收藏
页码:22501 / 22515
页数:15
相关论文
共 50 条
  • [1] An Efficient Blockchain-Based Conditional Privacy-Preserving Authentication Protocol for VANETs
    Zhou, Xiaotong
    He, Debiao
    Khan, Muhammad Khurram
    Wu, Wei
    Choo, Kim-Kwang Raymond
    IEEE TRANSACTIONS ON VEHICULAR TECHNOLOGY, 2023, 72 (01) : 81 - 92
  • [2] Efficient and Anonymous Cross-Domain Authentication for IIoT Based on Blockchain
    Cui, Jie
    Liu, Nan
    Zhang, Qingyang
    He, Debiao
    Gu, Chengjie
    Zhong, Hong
    IEEE TRANSACTIONS ON NETWORK SCIENCE AND ENGINEERING, 2023, 10 (02): : 899 - 910
  • [3] EBCPA: Efficient Blockchain-Based Conditional Privacy-Preserving Authentication for VANETs
    Lin, Chao
    Huang, Xinyi
    He, Debiao
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2023, 20 (03) : 1818 - 1832
  • [4] XAuth: Efficient Privacy-Preserving Cross-Domain Authentication
    Chen, Jing
    Zhan, Zeyi
    He, Kun
    Du, Ruiying
    Wang, Donghui
    Liu, Fei
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2022, 19 (05) : 3301 - 3311
  • [5] Efficient and Privacy-Preserving Authentication Protocol for Heterogeneous Systems in IIoT
    Xiong, Hu
    Wu, Yan
    Jin, Chuanjie
    Kumari, Saru
    IEEE INTERNET OF THINGS JOURNAL, 2020, 7 (12): : 11713 - 11724
  • [6] A Blockchain-based Privacy-Preserving Scheme for Cross-domain Authentication
    Jiang, Junfeng
    Zhang, Yujian
    Li, Junhao
    2022 IEEE INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS, TRUSTCOM, 2022, : 992 - 999
  • [7] PBAG: A Privacy-Preserving Blockchain-Based Authentication Protocol With Global-Updated Commitment in IoVs
    Feng, Xia
    Cui, Kaiping
    Wang, Liangmin
    Liu, Zhiquan
    Ma, Jianfeng
    IEEE TRANSACTIONS ON INTELLIGENT TRANSPORTATION SYSTEMS, 2024, 25 (10) : 13524 - 13545
  • [8] Permissioned Blockchain-Based Secure and Privacy-Preserving Data Sharing Protocol
    Wang, Zhiwei
    Chen, Qingqing
    Liu, Lei
    IEEE INTERNET OF THINGS JOURNAL, 2023, 10 (12) : 10698 - 10707
  • [9] Efficient Blockchain-Based Mutual Authentication and Session Key Agreement for Cross-Domain IIoT
    Cui, Jie
    Zhu, Yihu
    Zhong, Hong
    Zhang, Qingyang
    Gu, Chengjie
    He, Debiao
    IEEE INTERNET OF THINGS JOURNAL, 2024, 11 (09): : 16325 - 16338
  • [10] BEPHAP: A Blockchain-based Efficient Privacy-Preserving Handover Authentication Protocol with key agreement for Internet of Vehicles
    Xie, Xianwang
    Wu, Bin
    Hou, Botao
    JOURNAL OF SYSTEMS ARCHITECTURE, 2023, 138