Scalable and Secure Big Data IoT System Based on Multifactor Authentication and Lightweight Cryptography

被引:40
|
作者
Atiewi, Saleh [1 ]
Al-Rahayfeh, Amer [1 ]
Almiani, Muder [2 ]
Yussof, Salman [3 ]
Alfandi, Omar [4 ]
Abugabah, Ahed [4 ]
Jararweh, Yaser [5 ]
机构
[1] Al Hussein Bin Talal Univ, Dept Comp Sci, Maan 71111, Jordan
[2] Al Hussein Bin Talal Univ, Dept Comp Informat Syst, Maan 71111, Jordan
[3] Tenaga Natl Univ, Dept Syst & Networking, Kajang 43000, Malaysia
[4] Zayed Univ, Coll Technol Innovat, Abu Dhabi, U Arab Emirates
[5] Jordan Univ Sci & Technol, Dept Comp Sci, Irbid 22110, Jordan
来源
IEEE ACCESS | 2020年 / 8卷
关键词
Cloud computing; Internet of Things; Authentication; Encryption; Big Data; Big data; cloud computing; multilevel authentication; lightweight cryptography; CLOUD; FRAMEWORK; INTERNET; ENCRYPTION; AUTHORITY; ACCESS; SCHEME; MODEL;
D O I
10.1109/ACCESS.2020.3002815
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Organizations share an evolving interest in adopting a cloud computing approach for Internet of Things (IoT) applications. Integrating IoT devices and cloud computing technology is considered as an effective approach to storing and managing the enormous amount of data generated by various devices. However, big data security of these organizations presents a challenge in the IoT-cloud architecture. To overcome security issues, we propose a cloud-enabled IoT environment supported by multifactor authentication and lightweight cryptography encryption schemes to protect big data system. The proposed hybrid cloud environment is aimed at protecting organizations' data in a highly secure manner. The hybrid cloud environment is a combination of private and public cloud. Our IoT devices are divided into sensitive and nonsensitive devices. Sensitive devices generate sensitive data, such as healthcare data; whereas nonsensitive devices generate nonsensitive data, such as home appliance data. IoT devices send their data to the cloud via a gateway device. Herein, sensitive data are split into two parts: one part of the data is encrypted using RC6, and the other part is encrypted using the Fiestel encryption scheme. Nonsensitive data are encrypted using the Advanced Encryption Standard (AES) encryption scheme. Sensitive and nonsensitive data are respectively stored in private and public cloud to ensure high security. The use of multifactor authentication to access the data stored in the cloud is also proposed. During login, data users send their registered credentials to the Trusted Authority (TA). The TA provides three levels of authentication to access the stored data: first-level authentication - read file, second-level authentication - download file, and third-level authentication - download file from the hybrid cloud. We implement the proposed cloud-IoT architecture in the NS3 network simulator. We evaluated the performance of the proposed architecture using metrics such as computational time, security strength, encryption time, and decryption time.
引用
收藏
页码:113498 / 113511
页数:14
相关论文
共 50 条
  • [1] Hybrid lightweight cryptography with attribute-based encryption standard for secure and scalable IoT system
    Jammula, Mounika
    Vakamulla, Venkata Mani
    Kondoju, Sai Krishna
    CONNECTION SCIENCE, 2022, 34 (01) : 2431 - 2447
  • [2] A secure authentication scheme based on elliptic curve cryptography for IoT and cloud servers
    Kumari, Saru
    Karuppiah, Marimuthu
    Das, Ashok Kumar
    Li, Xiong
    Wu, Fan
    Kumar, Neeraj
    JOURNAL OF SUPERCOMPUTING, 2018, 74 (12) : 6428 - 6453
  • [3] Lightweight Cryptography: A Solution to Secure IoT
    Dhanda, Sumit Singh
    Singh, Brahmjit
    Jindal, Poonam
    WIRELESS PERSONAL COMMUNICATIONS, 2020, 112 (03) : 1947 - 1980
  • [4] A Secure and Lightweight Authentication Protocol for IoT-Based Smart Homes
    Oh, JiHyeon
    Yu, SungJin
    Lee, JoonYoung
    Son, SeungHwan
    Kim, MyeongHyun
    Park, YoungHo
    SENSORS, 2021, 21 (04) : 1 - 24
  • [5] An Efficient Lightweight Cryptography Hash Function for Big Data and IoT Applications
    Al-Odat, Zeyad A.
    Al-Qtiemat, Eman M.
    Khan, Samee U.
    2020 IEEE CLOUD SUMMIT, 2020, : 66 - 71
  • [6] A Provably Secure Mobile User Authentication Scheme for Big Data Collection in IoT-Enabled Maritime Intelligent Transportation System
    Mahmood, Khalid
    Ferzund, Javed
    Saleem, Muhammad Asad
    Shamshad, Salman
    Das, Ashok Kumar
    Park, Youngho
    IEEE TRANSACTIONS ON INTELLIGENT TRANSPORTATION SYSTEMS, 2023, 24 (02) : 2411 - 2421
  • [7] Lightweight authentication for IoT/Cloud-based forensics in intelligent data computing
    Deebak, B. D.
    AL-Turjman, Fadi
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2021, 116 : 406 - 425
  • [8] Authentication in cloud-driven IoT-based big data environment: Survey and outlook
    Wazid, Mohammad
    Das, Ashok Kumar
    Hussain, Rasheed
    Succi, Giancarlo
    Rodrigues, Joel J. P. C.
    JOURNAL OF SYSTEMS ARCHITECTURE, 2019, 97 : 185 - 196
  • [9] Provably Secure Lightweight Mutual Authentication and Key Agreement Scheme for Cloud-Based IoT Environments
    Ju, Sieun
    Park, Yohan
    SENSORS, 2023, 23 (24)
  • [10] A lightweight multi-factor secure smart card based remote user authentication scheme for cloud-IoT applications
    Sharma, Geeta
    Kalra, Sheetal
    JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2018, 42 : 95 - 106