The rapid development of IoT networks has led to a research trend in designing effective security features for them. Due to the power-constrained nature of IoT devices, the security features should remain as lightweight as possible. Currently, most of the IoT network traffic is unencrypted. The leakage of smart devices' unencrypted data can come with the significant cost of a privacy breach. To have a secure channel with encrypted traffic, two endpoints in a network have to authenticate each other and calculate a short-term key. They can then communicate through an authenticated and secure channel. This process is referred to as authenticated key exchange (AKE). Although Datagram Transport Layer Security (DTLS) offers an AKE protocol for IoT networks, research has proposed more efficient and case-specific alternatives. This paper presents LAKEE, a straightforward, lightweight AKE protocol for IoT networks. Our protocol employs elliptic curve cryptography for generating a short-term session key. It reduces the communication and computational overhead of its alternatives while maintaining or improving their security strength. The simplicity and low overhead of our protocol make it a fit for a network of constrained devices.
翻译:IoT网络的迅速发展导致了设计有效安全特征的研究趋势。由于IoT设备受电源限制的性质,安全特征应保持尽可能轻轻的重量。目前,IoT网络的大多数流量都是不加密的。智能设备未加密数据泄漏可能带来隐私侵犯的重大成本。为了拥有一个加密交通的安全通道,一个网络的两个端点必须相互验证并计算一个短期钥匙。然后它们可以通过一个经认证和安全的频道进行通信。这一过程被称为认证的关键交换(Make)。虽然DTDLS(DTDLS)为IoT网络提供了一个Aake协议,但研究提出了更有效率和针对具体案例的替代方案。本文介绍了智能设备网络的LakeE,一个简单、轻巧的Aake协议。我们的协议使用椭略曲线加密法来生成一个短期会议钥匙。它减少了其替代品的通信和计算管理费,同时保持或改进它们的安全强度。我们的协议的简单和低的顶部使它适合一个封闭装置的网络。