首页> 外文会议>European symposium on research in computer security >DTLS-HIMMO: Achieving DTLS Certificate Security with Symmetric Key Overhead
【24h】

DTLS-HIMMO: Achieving DTLS Certificate Security with Symmetric Key Overhead

机译:DTLS-HIMMO:使用对称键开销实现DTL证书安全性

获取原文

摘要

Billions of devices are being connected to the Internet creating the Internet of Things (IoT). The IoT not only requires strong security, like current Internet applications, but also efficient operation. The recently introduced HIMMO scheme enables lightweight and collusion-resistant identity-based key sharing in a non-interactive way, so that any pair of Internet-connected devices can securely communicate. This paper firstly reviews the HIMMO scheme and introduces two extensions that e.g. enable implicit credential verification without the need of traditional digital certificates. Then, we show how HIMMO can be efficiently implemented even in resource-constrained devices, enabling combined key agreement and credential verification more efficiently than using ECDH-ECDSA. We further explain how HIMMO helps to secure the Internet and IoT by introducing the DTLS-HIMMO operation mode. DTLS, the datagram version of TLS, is becoming the standard security protocol in the IoT, although it is very frequently discussed that it does not offer the right performance for IoT scenarios. Our design, implementation, and evaluation show that DTLS-HIMMO operation mode achieves the security properties of the DTLS-Certificate security suite while exhibiting the overhead of symmetric-key primitives without requiring changes in the DTLS standard.
机译:数十亿个设备正在连接到Internet创建物联网(物联网)。 IOT不仅需要强大的安全性,如当前的Internet应用程序,还需要高效的操作。最近介绍的HIMMO方案能够以非交互方式实现轻量级和抗性的基于身份的密钥共享,从而可以安全地通信任何一对互联网连接设备。本文首先审查了HIMMO计划,并介绍了两种延伸。如果不需要传统的数字证书,请启用隐式凭证验证。然后,我们展示即使在资源受限的设备中如何能够有效地实现HIMMO,比使用ECDH-ECDSA更有效地实现关键协议和凭证验证。我们进一步解释了HIMMO如何通过引入DTLS-HIMMO操作模式来帮助保护互联网和IOT。 DTLS,TLS的数据报版本是IOT中的标准安全协议,尽管它非常讨论它没有为IOT方案提供正确的性能。我们的设计,实现和评估表明,DTLS-HIMMO操作模式实现了DTLS证书安全套件的安全性属性,同时展示了对称密钥基元的开销,而无需更改DTLS标准。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号