首页> 外文会议>International Symposium on Power Line Communications and Its Applications >Location authentication through Power Line Communication: Design, protocol, and analysis of a new out-of-band strategy
【24h】

Location authentication through Power Line Communication: Design, protocol, and analysis of a new out-of-band strategy

机译:通过电力线通信进行位置验证:一种新的带外策略的设计,协议和分析

获取原文
获取原文并翻译 | 示例

摘要

We propose using Power Line Communication (PLC) as a second channel for data origin authentication, and we present a system architecture and protocol for doing so taking advantage of existing infrastructure for communicating over power lines. Our system connects a user's computer to a secure electric meter in his building via a secure Human Authorization Detector (HAD). The electric meter, which has a unique secret identifier and encryption key, communicates securely with the trusted Power Grid Server (PG) through PLC. Upon request from an Internet Application Server (AS), the user sends a location certificate to the AS, obtained via PLC from the PG and signed by the PG. Because PLC requires physical access to the electric meter, our system offers fine-grain location authentication. Unlike movable modems and dongles, the meter is permanently attached to the user's building. The user authorizes or denies certificate requests and deliveries by reading the HAD's display and pushing a button on the HAD, thus protecting against the possible threat of malware on the user's computer maliciously requesting or forwarding location certificates unauthorized by the user. Our system provides strong location authentication useful to many online applications, such as banking and SCADA systems. PLC offers finer-grain location authentication than do cellular telephones. Furthermore, the power grid is deployed widely and is highly reliable, even in many places where cellular telephone and GPS signals are obstructed or unavailable. We present our architecture and Power line Location Authentication Protocol (PLAP) in sufficient detail to permit further implementation and analysis.
机译:我们建议使用电力线通信(PLC)作为数据来源身份验证的第二个渠道,并提出一种系统架构和协议,以利用现有的基础设施通过电力线进行通信。我们的系统通过安全的人工授权检测器(HAD)将用户的计算机连接到建筑物中的安全电表。具有唯一的秘密标识符和加密密钥的电表通过PLC与受信任的电网服务器(PG)安全通信。根据Internet应用服务器(AS)的请求,用户将位置证书发送给AS,该证书是通过PLC从PG获得并由PG签名的。由于PLC需要物理访问电表,因此我们的系统提供了细粒度的位置认证。与可移动调制解调器和加密狗不同,电表永久性地连接到用户的建筑物上。用户通过阅读HAD的显示并按下HAD上的按钮来授权或拒绝证书申请和交付,从而防止用户计算机上恶意软件的恶意威胁,恶意地请求或转发用户未授权的位置证书。我们的系统提供了强大的位置验证,可用于许多在线应用程序,例如银行和SCADA系统。与蜂窝电话相比,PLC提供更精细的位置验证。此外,即使在蜂窝电话和GPS信号受阻或无法使用的许多地方,电网也得到了广泛的部署并且高度可靠。我们将详细介绍我们的体系结构和电力线位置认证协议(PLAP),以允许进一步的实施和分析。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号