首页> 外文期刊>Communications Surveys & Tutorials, IEEE >TLS/PKI Challenges and Certificate Pinning Techniques for IoT and M2M Secure Communications
【24h】

TLS/PKI Challenges and Certificate Pinning Techniques for IoT and M2M Secure Communications

机译:物联网和M2M安全通信的TLS / PKI挑战和证书固定技术

获取原文
获取原文并翻译 | 示例
           

摘要

Transport layer security (TLS) is becoming the de facto standard to provide end-to-end security in the current Internet. IoT and M2M scenarios are not an exception since TLS is also being adopted there. The ability of TLS for negotiating any security parameter, its flexibility and extensibility are responsible for its wide adoption but also for several attacks. Moreover, as it relies on public key infrastructure (PKI) for authentication, it is also affected by PKI problems. Considering the advent of IoT/M2M scenarios and their particularities, it is necessary to have a closer look at TLS history to evaluate the potential challenges of using TLS and PKI in these scenarios. According to this, this paper provides a deep revision of several security aspects of TLS and PKI, with a particular focus on current certificate pinning solutions in order to illustrate the potential problems that should be addressed.
机译:传输层安全性(TLS)已成为在当前Internet中提供端到端安全性的事实上的标准。物联网和M2M场景也不例外,因为那里也采用了TLS。 TLS协商任何安全性参数的能力,灵活性和可扩展性不仅导致TLS的广泛采用,还导致了多种攻击。此外,由于它依赖于公钥基础结构(PKI)进行身份验证,因此也受到PKI问题的影响。考虑到IoT / M2M场景的出现及其特殊性,有必要仔细研究TLS历史,以评估在这些场景中使用TLS和PKI的潜在挑战。据此,本文对TLS和PKI的几个安全性方面进行了深入的修订,并特别关注当前的证书固定解决方案,以说明应解决的潜在问题。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号