Please use this identifier to cite or link to this item: https://hdl.handle.net/10316/114713
DC FieldValueLanguage
dc.contributor.authorMalik, Manisha-
dc.contributor.authorKamaldeep, null-
dc.contributor.authorDutta, Maitreyee-
dc.contributor.authorGranjal, Jorge-
dc.date.accessioned2024-04-05T11:54:59Z-
dc.date.available2024-04-05T11:54:59Z-
dc.date.issued2023-
dc.identifier.issn2169-3536pt
dc.identifier.urihttps://hdl.handle.net/10316/114713-
dc.description.abstractThe vast expansion of the Internet of Things (IoT) devices and related applications has bridged the gap between the physical and digital world. Unfortunately, security remains a major challenge and the lack of secure links have fueled the increased attacks on IoT devices and networks. Due to its inherent scalability, Public Key Infrastructure (PKI) is the well-known and classic approach to bring public-key certificate based security to IoT. Even though the standard X.509 explicit certificates can be viable solution, they are inefficient and too large for resource constrained IoT networks and therefore, smaller, faster and more efficient Elliptic Curve Qu Vanstone (ECQV) implicit certificates can be employed for establishing authenticated connections in IoT. Moreover, the existing certificate-based authentication proposals in standardized IoT networks have either been deployed at the transport or physical layers. Thus, these proposals fail to provide true end-to-end security to messages at the application layer in the presence of intermediate CoAP proxies. This challenging aspect is addressed in this proposal by focusing on the certificate-based authentication at the application layer to ensure true end-to-end security of messages. Additionally, IoT application layer security protocols like EDHOC lacks mechanism for authenticated distribution of public keys and thus, there is a need for lightweight authentication based cryptographic primitive for establishing secure key agreement in IoT. This paper introduces a design and implementation of a lightweight ECQV implicit certificate and use them for authenticated key exchange in EDHOC at the application layer.We also design a lightweight profile with a novel encoding mechanism for ECQV implicit certificate, called L-ECQV. To prove its viability, L-ECQV has been implemented and evaluated on Contiki operating system. Our evaluation results show that the proposed L-ECQV certificate approach reduces energy consumption by 27%, message overhead of EDHOC handshake by 52%, and shows improvements in certificate validation time. The security analysis demonstrates that proposed L-ECQV certificates for EDHOC protocol is secure against a number of attack vectors present in the IoT network. This novel combination of ECQV certificates with EDHOC key exchange leads to a secure and lightweight authenticated key agreement in IoT networks.pt
dc.language.isoengpt
dc.publisherIEEEpt
dc.relationUIDB/00326/2020pt
dc.relationUIDP/00326/2020pt
dc.rightsopenAccesspt
dc.rights.urihttp://creativecommons.org/licenses/by-nc-nd/4.0/pt
dc.subjectCryptographic primitivept
dc.subjectauthenticationpt
dc.subjectkey agreementpt
dc.subjectInternet of Things (IoT)pt
dc.subjectelliptic curve Qu Vanstone (ECQV)pt
dc.subjectephemeral Diffie-Hellman over COSE (EDHOC)pt
dc.titleL-ECQV: Lightweight ECQV Implicit Certificates for Authentication in the Internet of Thingspt
dc.typearticle-
degois.publication.firstPage35517pt
degois.publication.lastPage35540pt
degois.publication.titleIEEE Accesspt
dc.peerreviewedyespt
dc.identifier.doi10.1109/ACCESS.2023.3261666pt
degois.publication.volume11pt
dc.date.embargo2023-01-01*
uc.date.periodoEmbargo0pt
item.openairetypearticle-
item.fulltextCom Texto completo-
item.languageiso639-1en-
item.grantfulltextopen-
item.cerifentitytypePublications-
item.openairecristypehttp://purl.org/coar/resource_type/c_18cf-
crisitem.project.grantnoCISUC- CENTRE FOR INFORMATICS AND SYSTEMS OF THE UNIVERSITY OF COIMBRA-
crisitem.author.researchunitCISUC - Centre for Informatics and Systems of the University of Coimbra-
crisitem.author.parentresearchunitFaculty of Sciences and Technology-
crisitem.author.orcid0000-0001-6714-1164-
Appears in Collections:I&D CISUC - Artigos em Revistas Internacionais
Show simple item record

Page view(s)

51
checked on Jul 17, 2024

Download(s)

86
checked on Jul 17, 2024

Google ScholarTM

Check

Altmetric

Altmetric


This item is licensed under a Creative Commons License Creative Commons