论文标题

用于物联网应用程序(IoT)应用程序的多因素多因素多层和互动(M2I)身份验证框架

A Multi-factor Multi-level and Interaction based (M2I) Authentication Framework for Internet of Things (IoT) Applications

论文作者

AlJanah, Salem, Zhang, Ning, Tay, Siok Wah

论文摘要

为物联网提出的现有身份验证解决方案(IoT)提供了一个单一的保证(LOA),而不管受保护的物联网设备之间的资源或交互的敏感性水平如何。为了有效(具有足够的保护水平)和有效的效率(尽可能低的间接费用)保护措施,可以根据资源的敏感性水平来量身定制保护水平,因为更强大的保护水平通常会施加更高的间接费用。在本文中,我们通过提出基于多因素的多因素和基于相互作用(M2I)身份验证框架来促进物联网的多LOA身份验证。该框架实现了基于LOA链接和基于交互的身份验证。研究了两种相互作用模式,即通过设计两个相应协议的设计,P2P(点对点)和O2M(一对多)。评估结果表明,在身份验证中采用O2M交互模式可以大大降低通信成本;与Kerberos协议相比,O2M协议将通信成本降低了42%〜45%。协议还引入了较少的计算成本。与Kerberos相比,P2P和O2M方案分别将计算成本降低了70%〜72%和81%〜82%。评估结果还表明,两个因素身份验证选项的成本是单因素选项的两倍。

Existing authentication solutions proposed for Internet of Things (IoT) provide a single Level of Assurance (LoA) regardless of the sensitivity levels of the resources or interactions between IoT devices being protected. For effective (with adequate level of protection) and efficient (with as low overhead costs as possible) protections, it may be desirable to tailor the protection level in response to the sensitivity level of the resources, as a stronger protection level typically imposes a higher level of overheads costs. In this paper, we investigate how to facilitate multi-LoA authentication for IoT by proposing a multi-factor multi-level and interaction based (M2I) authentication framework. The framework implements LoA linked and interaction based authentication. Two interaction modes are investigated, P2P (Peer-to-Peer) and O2M (One-to-Many) via the design of two corresponding protocols. Evaluation results show that adopting the O2M interaction mode in authentication can cut communication cost significantly; compared with that of the Kerberos protocol, the O2M protocol reduces the communication cost by 42% ~ 45%. The protocols also introduce less computational cost. The P2P and O2M protocol, respectively, reduce the computational cost by 70% ~ 72% and 81% ~ 82% in comparison with that of Kerberos. Evaluation results also show that the two factor authentication option costs twice as much as that of the one-factor option.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源