A Secure Publish/Subscribe Protocol for Internet of Things

被引:53
作者
Malina, Lukas [1 ]
Srivastava, Gautam [2 ]
Dzurenda, Petr [1 ]
Hajny, Jan [1 ]
Fujdiak, Radek [1 ]
机构
[1] Brno Univ Technol, Brno, Czech Republic
[2] Brandon Univ, Brandon, MB, Canada
来源
14TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY (ARES 2019) | 2019年
基金
欧盟地平线“2020”;
关键词
MQTT; Security; Cryptography; IoT; Digital Signature; Privacy; PRIVACY;
D O I
10.1145/3339252.3340503
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The basic concept behind the emergence of Internet of Things (IoT) is to connect as many objects to the Internet as possible in an attempt to make our lives better in some way. However, connecting everyday objects like your car or house to the Internet can open up major security concerns. In this paper, we present a novel security framework for the Message Queue Transport Telemetry (MQTT) protocol based on publish/subscribe messages in order to enhance secure and privacy-friendly Internet of Things services. MQTT has burst onto the IoT scene in recent years due to its lightweight design and ease of use implementation necessary for IoT. Our proposed solution provides 3 security levels. The first security level suits for lightweight data exchanges of non-tampered messages. The second security level enhances the privacy protection of data sources and data receivers. The third security level offers robust long-term security with mutual authentication for all parties. The security framework is based on light cryptographic schemes in order to be suitable for constrained and small devices that are widely used in various IoT use cases. Moreover, our solution is tailored to MQTT without using additional security overhead.
引用
收藏
页数:10
相关论文
共 26 条
  • [1] Abdalla M., 1999, IACR Cryptol. ePrint Arch., V1999, P7
  • [2] Amaran M.H., 2018, Int. J. Eng. Technol., V7, P223, DOI 10.14419/ijet.v7i4.11
  • [3] [Anonymous], WIRELESS COMMUNICATI
  • [4] [Anonymous], 1989, Conference on the Theory and Application of Cryptology, DOI DOI 10.1007/0-387-34805-0'22
  • [5] [Anonymous], 2013, COMPUTER NETWORKS
  • [6] [Anonymous], 1979, DIGITALIZED SIGNATUR
  • [7] Bryce Clay, 2018, Records of the Western Australian Museum, P1, DOI 10.18195/issn.0313-122x.85.2018.001-043
  • [8] Bryce R., 2018, ICSOFT, P796
  • [9] Calabretta M, 2018, 2018 26TH INTERNATIONAL CONFERENCE ON SOFTWARE, TELECOMMUNICATIONS AND COMPUTER NETWORKS (SOFTCOM), P246
  • [10] Esfahani A., 2017, IEEE INTERNET THINGS