DCapBAC: embedding authorization logic into smart things through ECC optimizations

被引:81
作者
Hernandez-Ramos, Jose L. [1 ]
Jara, Antonio J. [2 ]
Marin, Leandro [3 ]
Skarmeta Gomez, Antonio F. [1 ]
机构
[1] Univ Murcia, Fac Comp Sci, Dept Informat & Commun Engn, Murcia, Spain
[2] Univ Appl Sci Western Switzerland HES SO, Inst Informat Syst, Sierre, Switzerland
[3] Univ Murcia, Fac Comp Sci, Dept Appl Math, Murcia, Spain
关键词
12E30; 14H52; security; ECC; Internet of Things; shifting primes; privacy; SECURITY; INTERNET;
D O I
10.1080/00207160.2014.915316
中图分类号
O29 [应用数学];
学科分类号
070104 ;
摘要
In recent years, the increasing development of wireless communication technologies and IPv6 is enabling a seamless integration of smart objects into the Internet infrastructure. This extension of technology to common environments demands greater security restrictions, since any unexpected information leakage or illegitimate access to data could present a high impact in our lives. Additionally, the application of standard security and access control mechanisms to these emerging ecosystems has to face new challenges due to the inherent nature and constraints of devices and networks which make up this novel landscape. While these challenges have been usually addressed by centralized approaches, in this work we present a set of Elliptic Curve Cryptography optimizations for point and field arithmetic which are used in the design and implementation of a security and capability-based access control mechanism (DCapBAC) on smart objects. Our integral solution is based on a lightweight and flexible design that allows this functionality is embedded on resource-constrained devices, providing the advantages of a distributed security approach for Internet of Things (IoT) in terms of scalability, interoperability and end-to-end security. Additionally, our scheme has been successfully validated by using AVISPA tool and implemented on a real scenario over the Jennic/NXP JN5148 chipset based on a 32-bit RISC CPU. The results demonstrate the feasibility of our work and show DCapBAC as a promising approach to be considered as security solution for IoT scenarios.
引用
收藏
页码:345 / 366
页数:22
相关论文
共 51 条
[1]  
Anggorojati B., 2012, 2012 15th International Symposium on Wireless Personal Multimedia Communications (WPMC 2012), P604
[2]  
[Anonymous], 2013, J INTERNET SERVICES
[3]  
[Anonymous], P 12 IEEE INT C WEB
[4]  
[Anonymous], 2013, CONSTRAINED IN PRESS
[5]  
[Anonymous], P 6 IEEE INT C ADV N
[6]  
[Anonymous], 2013, EXTENSIBLE ACC CONTR
[7]  
[Anonymous], RFC4919
[8]  
Armando A, 2005, LECT NOTES COMPUT SC, V3576, P281
[9]   The Internet of Things: A survey [J].
Atzori, Luigi ;
Iera, Antonio ;
Morabito, Giacomo .
COMPUTER NETWORKS, 2010, 54 (15) :2787-2805
[10]  
Babar S, 2010, COMM COM INF SC, V89, P420