IoT-Friendly AKE: Forward Secrecy and Session Resumption Meet Symmetric-Key Cryptography

被引:8
作者
Avoine, Gildas [1 ,2 ]
Canard, Sebastien [3 ]
Ferreira, Loic [1 ,3 ]
机构
[1] Univ Rennes, IRISA, CNRS, INSA Rennes, Rennes, France
[2] Inst Univ France, Paris, France
[3] Appl Crypto Grp, Orange Labs, Caen, France
来源
COMPUTER SECURITY - ESORICS 2019, PT II | 2019年 / 11736卷
关键词
Security protocols; Authenticated key exchange; Symmetric-key cryptography; Session resumption; Forward secrecy; Security model; Internet of Things;
D O I
10.1007/978-3-030-29962-0_22
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With the rise of the Internet of Things and the growing popularity of constrained end-devices, several security protocols are widely deployed or strongly promoted (e.g., Sigfox, LoRaWAN, NB-IoT). Based on symmetric-key functions, these protocols lack in providing security properties usually ensured by asymmetric schemes, in particular forward secrecy. We describe a 3-party authenticated key exchange protocol solely based on symmetric-key functions (regarding the computations done between the end-device and the back-end network) which guarantees forward secrecy. Our protocol enables session resumption (without impairing security). This allows saving communication and computation cost, and is particularly advantageous for low-resources end-devices. Our 3-party protocol can be applied in a real-case IoT deployment (i.e., involving numerous end-devices and servers) such that the latter inherits from the security properties of the protocol. We give a concrete instantiation of our key exchange protocol, and formally prove its security.
引用
收藏
页码:463 / 483
页数:21
相关论文
共 24 条
[1]  
[Anonymous], 2017, LORAWAN BACKEND INTE
[2]  
[Anonymous], 2018, TRANSPORT LAYER SECU
[3]  
[Anonymous], 2016, LORAWAN SPECIFICATIO
[4]  
[Anonymous], 2008, The transport layer security (TLS) protocol version 1.2
[5]   Session Resumption Protocols and Efficient Forward Security for TLS 1.3 0-RTT [J].
Aviram, Nimrod ;
Gellert, Kai ;
Jager, Tibor .
ADVANCES IN CRYPTOLOGY - EUROCRYPT 2019, PT II, 2019, 11477 :117-150
[6]  
Avoine G., 2019, IOT FRIENDLY AKE FOR
[7]  
Avoine G., 2019, 2019444 CRYPT
[8]  
Avoine G., 2018, LNCS
[9]   Augmented Secure Channels and the Goal of the TLS 1.3 Record Layer [J].
Badertscher, Christian ;
Matt, Christian ;
Maurer, Ueli ;
Rogaway, Phillip ;
Tackmann, Bjorn .
PROVABLE SECURITY, PROVSEC 2015, 2015, 9451 :85-104
[10]  
Bellare M., 1993, P ANN INT CRYPT C, P232, DOI DOI 10.1007/3-540-48329-2_21