Security Evaluation of Authentication Requirements in IoT Gateways

被引:0
作者
Diego R. Gomes
Fernando A. Aires Lins
Obionor O. Nóbrega
Eduardo F. Felix
Bruno A. Jesus
Marco Vieira
机构
[1] Federal Rural University of Pernambuco,Department of Computing
[2] University of Coimbra,Department of Informatics Engineering
来源
Journal of Network and Systems Management | 2023年 / 31卷
关键词
Security; Internet of Things; Gateway; Authentication requirements;
D O I
暂无
中图分类号
学科分类号
摘要
In the Internet of Things (IoT) context, gateways are devices that play a strategic role in the communication of things with the external environment. Gateways help with the problem of heterogeneity, acting to carry out the communication of the devices even if they use different protocols. Their centralized and strategic position in an IoT network makes security a key concern, as an attack on this device may leave the entire system vulnerable. Considering the security requirements in IoT, authentication is essential since devices should be authenticated before being inserted into the environment. The main contribution of this paper is the evaluation of the authentication compliance levels of currently used IoT gateways. A methodology is proposed to assess authentication requirements in IoT gateways, making it possible to analyze and select various authentication requirements published by recognized technical organizations such as IoTSF and OWASP. Several gateways currently used were chosen, installed, and configured, and a requirements inspection process was performed. In terms of results, it is possible to observe that, in their default configuration, the current gateways can only meet approximately 66% of the authentication requirements proposed by technical organizations.
引用
收藏
相关论文
共 28 条
  • [21] Kajati E(undefined)undefined undefined undefined undefined-undefined
  • [22] Cupkova D(undefined)undefined undefined undefined undefined-undefined
  • [23] Mocnej J(undefined)undefined undefined undefined undefined-undefined
  • [24] Miskuf M(undefined)undefined undefined undefined undefined-undefined
  • [25] Zolotova I(undefined)undefined undefined undefined undefined-undefined
  • [26] Kebande VR(undefined)undefined undefined undefined undefined-undefined
  • [27] Menza NK(undefined)undefined undefined undefined undefined-undefined
  • [28] Venter HS(undefined)undefined undefined undefined undefined-undefined