...
首页> 外文期刊>Computers & Security >FoNAC - An automated Fog Node Audit and Certification scheme
【24h】

FoNAC - An automated Fog Node Audit and Certification scheme

机译:FONAC - 一种自动雾节点审计和认证方案

获取原文
获取原文并翻译 | 示例
           

摘要

Meeting the security and privacy needs for IoT data becomes equally important in the newly introduced intermediary Fog Computing layer, as it was in its former technological layer - Cloud; but the accomplishment of such security is critical and challenging. While security assurance of the fog layer devices is imperative due to their exposure to the public Internet, it becomes even more complex, than the cloud layer, as it involves a large number of heterogeneous devices deployed hierarchically. Manual audit and certification schemes are unsuitable for large number of fog nodes thereby inhibiting the involved stakeholders to use manual security assurance schemes altogether. However, scalable and feasible security assurance can be provided by introducing automated and continuous monitoring and auditing of fog nodes to ensure a trusted, updated and vulnerability free fog layer. This paper presents such an solution in the form of an automated Fog Node Audit and Certification scheme (FoNAC) which guarantees a secure fog layer through the proposed fog layer assurance mechanism. FoNAC leverages Trusted Platform Module (TPM 2.0) capabilities to evaluate/audit the platform integrity of the operating fog nodes and grants certificate to the individual node after a successful security audit. FoNAC security is also validated through its formal security analysis performed using AVISPA under Dolev-Yao intruder model. The security analysis of FoNAC shows its resistance against cyber-attacks like impersonation, replay attack, forgery, Denial of Service(DoS) and MITM attack.
机译:满足IOT数据的安全和隐私需求在新引入的中间雾计算层中同样重要,因为它在其前技术层 - 云;但是这种安全的实现是至关重要的和挑战性。虽然雾层设备的安全保证是由于其对公共互联网的曝光而势在必行,但它比云层更复杂,因为它涉及大量的分层部署的异构设备。手动审核和认证计划不适合大量的雾节点,从而禁止所涉及的利益相关者完全使用手动安全保证方案。但是,可以通过引入雾节点的自动和连续监控和审计来提供可扩展和可行的安全保证,以确保可信,更新和漏洞的免费雾层。本文以自动雾节点审计和认证方案(FONAC)的形式提供了这种解决方案,可通过所提出的雾层保证机制保证安全雾层。 FONAC利用可信平台模块(TPM 2.0)能力来评估/审核操作雾节点的平台完整性,并在成功的安全审核后给各个节点授予证书。通过在Dolev-yao Intruder模型下使用Avispa执行的正式安全性分析,还通过其正规安全分析验证了FONAC安全性。 FONAC的安全分析显示其对冒充,重播攻击,伪造,拒绝服务(DOS)和MITM攻击等网络攻击的阻力。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号