A Survey of Key Bootstrapping Protocols Based on Public Key Cryptography in the Internet of Things

被引:35
作者
Malik, Manisha [1 ]
Dutta, Maitreyee [2 ]
Granjal, Jorge [3 ]
机构
[1] Natl Inst Tech Teachers Training & Res, Chandigarh 600116, India
[2] Natl Inst Tech Teachers Training & Res, Comp Sci & Engn Dept, Chandigarh 600116, India
[3] Univ Coimbra, Ctr Informat & Syst, P-3030290 Coimbra, Portugal
来源
IEEE ACCESS | 2019年 / 7卷
关键词
Authentication; Internet of Things; key bootstrapping; key management; public key cryptography; security; WIRELESS SENSOR NETWORKS; AUTHENTICATION; SECURITY; AGREEMENT; LIGHTWEIGHT; MANAGEMENT; SCHEME;
D O I
10.1109/ACCESS.2019.2900957
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The Internet of Things envisages connecting all physical objects or things to the Internet, using devices as diverse as smartphones, coffee makers, washing machines, automobiles, lamps, and wearable devices, among many others. The explosive growth of Internet-connected sensing and actuating devices has bridged the gap between the physical and the digital world, with new solutions bringing benefits to people, processes, and businesses. However, security will be a major challenge in enabling most of such applications. The lack of secure links exposes data exchanged by devices to theft and attacks, with hackers already showing a keen interest in this area. Secure communication in the IoT will require a multifaceted approach, in particular, targeting aspects as relevant as the communications' protocols and data that need to be secured. One of the major aspects among these is how keys are bootstrapped in devices, for the purpose of supporting secure communications. In this paper, we survey the state of the art in key bootstrapping protocols based on public-key cryptography in the Internet of Things. Due to its inherent scalability, such protocols are particularly relevant for the implementation of distributed identity and trust management mechanisms on the IoT, in the context of which devices may be authenticated and trusted. The reviewed proposals are analyzed and classified on the basis of the key delivery method, the underlying cryptographic primitive, and the authentication mechanism supported. We also identify and discuss the main challenges of implementing such methods in the context of IoT applications and devices, together with the main avenues for conducting further research in the area.
引用
收藏
页码:27443 / 27464
页数:22
相关论文
共 113 条
  • [1] Lightweight and escrow-less authenticated key agreement for the internet of things
    A. Simplicio, Marcos, Jr.
    Silva, Marcos V. M.
    Alves, Renan C. A.
    Shibata, Tiago K. C.
    [J]. COMPUTER COMMUNICATIONS, 2017, 98 : 43 - 51
  • [2] A. Zigbee, 2006, 053474R13 A ZIGB
  • [3] Adiga B., 2012, PROC 1 INT C SECUR I, P68
  • [4] Al-Riyami SS, 2003, LECT NOTES COMPUT SC, V2894, P452
  • [5] Alexander R., 2012, Adapted Multimedia Internet KEYing (AMIKEY): An extension of Multimedia Internet KEYing (MIKEY) Nethods for Generic LLN Environments
  • [6] [Anonymous], 2018, SECURE IOT BOOTSTRAP
  • [7] [Anonymous], 2012, SECURITY BOOTSTRAPPI
  • [8] [Anonymous], OBJECT SECURITY COAP
  • [9] [Anonymous], 2014, RFC 7228
  • [10] [Anonymous], 2016, HDB APPL CRYPTOGRAPH