FPGA-Based Symmetric Re-Encryption Scheme to Secure Data Processing for Cloud-Integrated Internet of Things

被引:23
作者
Al-Asli, M. [1 ]
Elrabaa, M. E. S. [1 ]
Abu-Amara, M. [1 ]
机构
[1] King Fahd Univ Petr & Minerals, Comp Engn Dept, Dhahran 31261, Saudi Arabia
关键词
Cloud computing security; cryptographic protocols and algorithms; field programmable gate arrays (FPGAs); hardware security; Internet of Things (IoT) security; AUTHENTICATION;
D O I
10.1109/JIOT.2018.2864513
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
A new scheme using field programmable gate arrays (FPGAs) to secure Internet of Things (IoT) data processing in public clouds against various attacks (including attacks from insiders) is proposed. The proposed scheme supports various business models involving multiple parties and allow the data owner to give temporary access to IoT data to specific clients at a public market place (the cloud). The scheme achieves perfect forward secrecy, provides FPGA authentication, a secure way to establish a symmetric session key between the on-cloud FPGA, the IoT device and the client, and allows user's configuration integrity check while running in the cloud FPGA. A symmetric proxy re-encryption (PRE) scheme is used to support the publish/subscribe mode of operation of IoT. A complete prototype has been implemented to show the feasibility of the proposed scheme. Formal verification of the proposed protocol verified that it does not have any vulnerabilities. Experimental results showed that an FPGA implementation of the proposed PRE was 6x faster than the SW implementation in transforming a ciphertext of size 1 GB.
引用
收藏
页码:446 / 457
页数:12
相关论文
共 57 条
[1]  
[Anonymous], 2012, STC
[2]  
[Anonymous], IBM WATSON
[3]  
[Anonymous], REF ARCH
[4]  
[Anonymous], 2010006 INT ASS CRYP
[5]  
[Anonymous], 2011, RECOSOC
[6]  
[Anonymous], 2016, ARXIV PREPRINT ARXIV
[7]  
[Anonymous], 2015, INT J EMERG ENG RES
[8]  
[Anonymous], XIL PART REC US G UG
[9]  
[Anonymous], PROVERIF CRYPTOGRAPH
[10]  
[Anonymous], 2017, 11 USENIX WORKSHOP O