CMXsafe: A Proxy Layer for Securing Internet-of-Things Communications

被引:1
|
作者
de Hoz Diego, Jorge David [1 ]
Madi, Taous [1 ]
Konstantinou, Charalambos [1 ]
机构
[1] King Abdullah Univ Sci & Technol, Comp Elect & Math Sci & Engn Div, Thuwal 23955, Saudi Arabia
关键词
Internet-of-Things; secure communications; socket proxy; secure proxy session; security context;
D O I
10.1109/TIFS.2024.3404258
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Security in Internet-of-Things (IoT) environments has become a major concern. This is partly due to a large number of remotely exploitable IoT vulnerabilities in service authentication and access control combined with the lack of timely technical support. To reduce the threat surface of remote vulnerability exploitation, we propose CMXsafe, a secure-by-design application-agnostic proxy layer that can be updated and managed independently of the IoT device application. CMXsafe places IoT devices behind gateways operating as 4th OSI transport layer relayers to offload security concerns of IoT network communications into the proxy layer. Specifically, the proxy layer produces secure communication paths between IoT applications and platforms while enforcing mutual authentication and access control to proxied services. We evaluate the performance of our architecture on the MQTT protocol used in a standard publisher-broker-subscriber configuration provided by Eclipse Mosquitto. We compare the performance penalty on the protocol when securing communications with TLS following a monolithic implementation and with CMXsafe. The experimental results suggest that CMXsafe outperforms integrated security by providing at least a 25% latency reduction and a 22% bandwidth improvement.
引用
收藏
页码:5767 / 5782
页数:16
相关论文
共 50 条
  • [1] Securing Internet-of-Things
    Gong, Guang
    FOUNDATIONS AND PRACTICE OF SECURITY, FPS 2018, 2019, 11358 : 3 - 16
  • [2] Securing Real-Time Internet-of-Things
    Chen, Chien-Ying
    Hasan, Monowar
    Mohan, Sibin
    SENSORS, 2018, 18 (12)
  • [3] Securing Wireless Communications of the Internet of Things from the Physical Layer, An Overview
    Zhang, Junqing
    Duong, Trung Q.
    Woods, Roger
    Marshall, Alan
    ENTROPY, 2017, 19 (08)
  • [4] Securing the Internet-of-Things: Advances, challenges, future trends
    Liu, Ximeng
    Mu, Yi
    Ning, Jianting
    Zhang, Qingchen
    TRANSACTIONS ON EMERGING TELECOMMUNICATIONS TECHNOLOGIES, 2021, 32 (05)
  • [5] Physical Layer Security of Cognitive Ambient Backscatter Communications for Green Internet-of-Things
    Li, Xingwang
    Zheng, Yike
    Khan, Wali Ullah
    Zeng, Ming
    Li, Dong
    Ragesh, G. K.
    Li, Lihua
    IEEE TRANSACTIONS ON GREEN COMMUNICATIONS AND NETWORKING, 2021, 5 (03): : 1066 - 1076
  • [6] Visible light communications for the implementation of internet-of-things
    Chen, Chia-Wei
    Wang, Wei-Chung
    Wu, Jhao-Ting
    Chen, Hung-Yu
    Liang, Kevin
    Wei, Liang-Yu
    Hsu, Yung
    Hsu, Chin-Wei
    Chow, Chi-Wai
    Yeh, Chien-Hung
    Liu, Yang
    Hsieh, Hsiang-Chin
    Chen, Yen-Ting
    OPTICAL ENGINEERING, 2016, 55 (06)
  • [7] Narrowband Internet-of-Things to Enhance the Vehicular Communications Performance
    Hamarsheh, Qadri
    Daoud, Omar
    Baniyounis, Mohammed
    Damati, Ahlam
    FUTURE INTERNET, 2023, 15 (01)
  • [8] Cooperative Ambient Backscatter Communications for Green Internet-of-Things
    Yang, Gang
    Zhang, Qianqian
    Liang, Ying-Chang
    IEEE INTERNET OF THINGS JOURNAL, 2018, 5 (02): : 1116 - 1130
  • [9] Securing Internet-of-Things Systems Through Implicit and Explicit Reputation Models
    Bordel, Bona
    Alcarria, Ramon
    Martin De Andres, Diego
    You, Ilsun
    IEEE ACCESS, 2018, 6 : 47472 - 47488
  • [10] Cellular Internet-of-Things (IoT) Communications over Unlicensed Band
    Zhang, Hongliang
    Di, Boya
    Zhang, Xiaomei
    Bian, Kaigui
    Song, Lingyang
    Han, Zhu
    2018 IEEE INTERNATIONAL SYMPOSIUM ON DYNAMIC SPECTRUM ACCESS NETWORKS (DYSPAN), 2018,