首页> 外国专利> Computer-implemented system and method for lightweight authentication in datagram transfer for the Internet of Things

Computer-implemented system and method for lightweight authentication in datagram transfer for the Internet of Things

机译:物联网数据报传输中轻量认证的计算机实现的系统和方法

摘要

A computer implemented system and method for lightweight authentication on datagram transport for internet of things provides a robust authentication scheme based on challenge-response type of exchanges between two endpoints sharing a pre-shared secret. A symmetric key-based security mechanism is utilized in the present disclosure where key management is integrated with authentication. It provides mutual authentication wherein the end-points in the system are provisioned with a pre-shared secret during a provisioning phase and a client database is provided at the server side for client identification. The system comprises random number generators for generation of nonces, and key generators to generate secret key and session key. The nonces and keys are valid only during the session and thus help in providing secure authentication across sessions. The system can be further adapted on transport layer security protocols like DTLS and can be integrated with application layer protocols like CoAP for constrained devices.
机译:用于物联网的数据报传输上的轻量级认证的计算机实现的系统和方法,基于共享预共享秘密的两个端点之间的交换的质询-响应类型,提供了一种可靠的认证方案。在本公开中利用基于对称密钥的安全机制,其中密钥管理与认证集成在一起。它提供了相互身份验证,其中在预配阶段为系统中的端点提供了预共享的机密,并在服务器端提供了一个客户端数据库以进行客户端标识。该系统包括用于产生随机数的随机数发生器,以及用于产生秘密密钥和会话密钥的密钥发生器。随机数和密钥仅在会话期间有效,因此有助于在会话之间提供安全的身份验证。该系统可进一步适应DTLS等传输层安全协议,并可与受限设备的CoAP等应用层协议集成。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号