首页> 外文会议>IEEE International Conference on Advanced Information Networking and Applications >LESS: Lightweight Establishment of Secure Session: A Cross-Layer Approach Using CoAP and DTLS-PSK Channel Encryption
【24h】

LESS: Lightweight Establishment of Secure Session: A Cross-Layer Approach Using CoAP and DTLS-PSK Channel Encryption

机译:较少:安全会话的轻量级建立:使用CoAP和DTLS-PSK通道加密的跨层方法

获取原文

摘要

Secure yet lightweight protocol for communication over the Internet is a pertinent problem for constrained environments in the context of Internet of Things (IoT) / Machine to Machine (M2M) applications. This paper extends the initial approaches published in [1], [2] and presents a novel cross-layer lightweight implementation to establish a secure channel. It distributes the responsibility of communication over secure channel in between the application and transport layers. Secure session establishment is performed using a payload embedded challenge response scheme over the Constrained Application Protocol (CoAP) [3]. Record encryption mechanism of Datagram Transport Layer Security (DTLS) [4] with Pre-Shared Key (PSK) [5] is used for encrypted exchange of application layer data. The secure session credentials derived from the application layer is used for encrypted exchange over the transport layer. The solution is designed in such a way that it can easily be integrated with an existing system deploying CoAP over DTLS-PSK. The proposed method is robust under different security attacks like replay attack, DoS and chosen cipher text. The improved performance of the proposed solution is established with comparative results and analysis.
机译:在物联网(IoT)/机器对机器(M2M)应用程序上下文中,对于受约束的环境而言,用于通过Internet进行通信的安全而轻便的协议是一个相关的问题。本文扩展了在[1],[2]中发布的初始方法,并提出了一种新颖的跨层轻量级实现,以建立安全通道。它在应用程序层和传输层之间的安全通道上分配通信职责。使用受约束的应用协议(CoAP)[3]上的有效负载嵌入质询响应方案来执行安全会话的建立。带有预共享密钥(PSK)[5]的数据报传输层安全性(DTLS)[4]的记录加密机制用于应用层数据的加密交换。从应用程序层派生的安全会话凭据用于在传输层上进行加密交换。该解决方案的设计方式使其可以轻松地与通过DTLS-PSK部署CoAP的现有系统集成。所提出的方法在不同的安全攻击(如重放攻击,DoS和所选密文)下均具有较强的鲁棒性。通过比较结果和分析,确定了所提出解决方案的改进性能。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号