首页> 外文会议>International Conference on Information and Communications Security >rTLS: Lightweight TLS Session Resumption for Constrained IoT Devices
【24h】

rTLS: Lightweight TLS Session Resumption for Constrained IoT Devices

机译:RTLS:Lightweight TLS会话恢复限制的物联网设备

获取原文

摘要

The Transport Layer Security (TLS) 1.3 protocol supports a fast zero round-trip time (0-RTT) session resumption mechanism, enabling clients to send data in their first flight of messages. This protocol has been designed with Web infrastructure in mind, and requires these first messages to not change any state on the server side, as it is susceptible to replay attacks. This is disastrous for common IoT scenarios, where sensors often transmit state-changing data to servers. As bandwidth is a huge concern in the IoT, the field stands to benefit significantly from an efficient session resumption protocol that does not suffer from these limitations. Building on the observation that in IoT scenarios the set of clients is often bounded and fairly static, we propose rTLS (ratchet TLS), an efficient 0-RTT session resumption protocol that dramatically decreases bandwidth overhead, while adding forward secrecy and break-in resilience, and is not susceptible against replay attacks.
机译:传输层安全性(TLS)1.3协议支持快速零循环时间(0-RT)会话恢复机制,使客户端能够在他们的第一张邮件中发送数据。 此协议设计了与Web基础架构的设计,并且需要这些第一条消息在服务器端不会更改任何状态,因为它易于重播攻击。 这对于公共IOT场景是灾难性的,其中传感器通常将状态更改数据传输到服务器。 随着带宽是IOT的巨大关注,该领域能够显着从未遭受这些限制的有效会话恢复协议中获益。 在观察中,在IOT场景中,客户端的常用和相当静态,我们提出了RTLS(ratchet TLS),一种有效的0-RTT会话恢复协议,可显着降低带宽开销,同时增加保密和断开弹性 ,并不容易受重播攻击的影响。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号