Industrial IoT (IIoT) aims to enhance services provided by various industries such as manufacturing and product processing. IIoT suffers from various challenges and security is one of the key challenge among those challenges. Authentication and access control are two notable challenges for any Industrial IoT (IIoT) based industrial deployment. Any IoT based Industry 4.0 enterprise designs networks between hundreds of tiny devices such as sensors, actuators, fog devices and gateways. Thus, articulating a secure authentication protocol between sensing devices or a sensing device and user devices is an essential step in IoT security. In this paper, first, we present cryptanalysis for the certificate-based scheme proposed for similar environment by Das et al. and prove that their scheme is vulnerable to various traditional attacks such as device anonymity, MITM, and DoS. We then put forward an inter-device authentication scheme using an ECC (Elliptic Curve Cryptography) that is highly secure and lightweight compared to other schemes for a similar environment. Furthermore, we set forth a formal security analysis using the random oracle based ROR model and informal security analysis over the Doleve-Yao channel. In this paper, we present the comparison of the proposed scheme with existing schemes based on communication cost, computation cost and security index to prove that the proposed EBAKE-SE is highly efficient, reliable, and trustworthy compared to other existing schemes for inter-device authentication. At long last, we present an implementation for the proposed EBAKE-SE using MQTT protocol
翻译:IIoT (IIoT) 旨在增强制造业和产品加工等不同行业提供的服务。IIoT (IIoT) 旨在增强制造和产品加工等不同行业提供的服务。 IIoT 面临各种挑战,安全是这些挑战中的一项关键挑战。 任何基于工业IoT (IIoT) 的工业部署都面临两个显著的挑战。 任何基于IoT 的工业4.0 企业设计网络,这些小装置包括传感器、动作器、雾器和网关等数百个微小装置。 因此,在感测装置或感测装置和用户装置之间建立安全认证协议是IoT安全方面的一个重要步骤。 首先,我们为Das 等人为类似环境提议的基于证书的计划提供加密分析,并证明它们的计划易受各种传统攻击,如装置匿名、MITM 和 DoSE。 然后,我们用EC (Elliptict Curve Cloctologtography) 提出一个跨点认证计划,这个计划与其他类似环境的拟议计划相比是高度安全和轻度的。 此外,我们用随机的ROR 模型和非正式的安全分析, 和非正式的安全分析是目前基于透明化计划, eBELE-SE-SE-SE-SE-SE-SE-SE-Se-SE 比较计划,这个拟议的长期的比较计划,这个拟议的长期计划是现有的文件, 比较一个高额计算。