ASSURED: Architecture for Secure Software Update of Realistic Embedded Devices

被引:52
作者
Asokan, N. [1 ]
Nyman, Thomas [2 ,3 ]
Rattanavipanon, Norrathep [4 ]
Sadeghi, Ahmad-Reza [5 ]
Tsudik, Gene [4 ]
机构
[1] Aalto Univ, Secure Syst Grp, Espoo 02150, Finland
[2] Trustonic, Adv Dev Dept, Helsinki, Finland
[3] Aalto Univ, Secure Syst Grp, Espoo 02150, Finland
[4] Univ Calif Irvine, Dept Comp Sci, Irvine, CA 92697 USA
[5] Tech Univ Darmstadt, Dept Comp Sci, D-64289 Darmstadt, Germany
基金
芬兰科学院;
关键词
Computer security; embedded software; embedded systems; Internet of Things (IoT);
D O I
10.1109/TCAD.2018.2858422
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Secure firmware update is an important stage in the Internet of Things (IoT) device life-cycle. Prior techniques, designed for other computational settings, are not readily suitable for IoT devices, since they do not consider idiosyncrasies of a realistic large-scale IoT deployment. This motivates our design of architecture for secure software update of realistic embedded devices (ASSURED), a secure and scalable update framework for IoT. ASSURED includes all stakeholders in a typical IoT update ecosystem, while providing end-to-end security between manufacturers and devices. To demonstrate its feasibility and practicality, ASSURED is instantiated and experimentally evaluated on two commodity hardware platforms. Results show that ASSURED is considerably faster than current update mechanisms in realistic settings.
引用
收藏
页码:2290 / 2300
页数:11
相关论文
共 36 条
[1]   INVITED Things, Trouble, Trust: On Building Trust in IoT Systems [J].
Abera, Tigist ;
Asokan, N. ;
Davi, Lucas ;
Koushanfar, Farinaz ;
Paverd, Andrew ;
Sadeghi, Ahmad-Reza ;
Tsudik, Gene .
2016 ACM/EDAC/IEEE DESIGN AUTOMATION CONFERENCE (DAC), 2016,
[2]  
[Anonymous], FIRMWARE UPDATE ARCH
[3]  
[Anonymous], BD SL I MX6
[4]  
[Anonymous], **NON-TRADITIONAL**
[5]  
[Anonymous], GLOBALPLATFORM DEV T
[6]  
[Anonymous], SECURING MCU DESIGNS
[7]  
[Anonymous], GLOBALPLATFORM DEV T
[8]  
[Anonymous], 4634 RFC INT ENG TAS
[9]  
[Anonymous], OPENSSL 1 1 0 PRE7 D
[10]  
[Anonymous], TRUSTZONE TECHN ARMV