Lightweight Dynamic Topic-Centric End-to-End Security Mechanism for MQTT

被引:6
|
作者
Spina, Mattia Giovanni [1 ]
De Rango, Floriano [1 ]
Marotta, Gerardo Mario [1 ]
机构
[1] Univ Calabria, DIMES Dept, Arcavacata Di Rende, CS, Italy
关键词
IoT; MQTT; security; TLS; block ciphering; stream-ciphering;
D O I
10.1109/DS-RT52167.2021.9576144
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
This paper proposes a lightweight security mechanism to manage security levels in MQTT protocol reducing the protocol overhead and using a flexible security negotiation in comparison with classical TLS solution applied to application layer protocol in the IoT context. Our proposal considers the security features around the topic and it involves the publishers as the main actors to negotiate the possible security levels on the topics. The proposal supports an end-to-end security features reducing the complexity of the broker that can only forward encrypted packet towards subscribers without performing ciphering or encryption/decryption. The performance of the proposed solutions has been tested considering increasing number of topics and clients and considering some metrics such as processed packets and bytes, processing time and RAM usage. A comparison between the dynamic security approach with MQTT and classical MQTT+TLS has been also considered.
引用
收藏
页数:7
相关论文
共 50 条
  • [1] POSTER: Integration of End-to-End Security and Lightweight-SSL for Enhancing Security and Efficiency of MQTT
    Chien, Hung-Yu
    APPLIED CRYPTOGRAPHY AND NETWORK SECURITY WORKSHOPS, ACNS 2023 SATELLITE WORKSHOPS, ADSC 2023, AIBLOCK 2023, AIHWS 2023, AIOTS 2023, CIMSS 2023, CLOUD S&P 2023, SCI 2023, SECMT 2023, SIMLA 2023, 2023, 13907 : 669 - 674
  • [2] Design of End-To-End Security for MQTT 5.0
    Chien, Hung-Yu
    SCIENCE OF CYBER SECURITY, SCISEC 2022, 2022, 13580 : 353 - 363
  • [3] The end of end-to-end security?
    Bradner, S
    IEEE SECURITY & PRIVACY, 2006, 4 (02) : 76 - 79
  • [4] MQTT-I: Achieving End-to-End Data Flow Integrity in MQTT
    Buccafurri, Francesco
    De Angelis, Vincenzo
    Lazzaro, Sara
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2024, 21 (05) : 4717 - 4734
  • [5] An efficient end-to-end security mechanism for IP multimedia subsystem
    Chen, Chi-Yuan
    Wu, Tin-Yu
    Huang, Yueh-Min
    Chao, Han-Chieh
    COMPUTER COMMUNICATIONS, 2008, 31 (18) : 4259 - 4268
  • [6] Lightweight certificate revocation for low-power IoT with end-to-end security
    Hoglund, Joel
    Furuhed, Martin
    Raza, Shahid
    JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2023, 73
  • [7] E-MQTT: End-to-End Synchronous and Asynchronous Communication Mechanisms in MQTT Protocol
    Im, Yerin
    Lim, Mingyu
    APPLIED SCIENCES-BASEL, 2023, 13 (22):
  • [8] End-to-End Security for the IoT
    Dooley, James
    INTELLIGENT ENVIRONMENTS 2016, 2016, 21 : 606 - 606
  • [9] END-TO-END SECURITY PROTECTION
    Nazaryan, Levon
    Panaousis, Emmanouil A.
    Politis, Christos
    IEEE VEHICULAR TECHNOLOGY MAGAZINE, 2010, 5 (01): : 85 - 90
  • [10] End-to-end Service Assurance in IoT MQTT-SN
    Govindan, Kannan
    Azad, Amar Prakash
    2015 12TH ANNUAL IEEE CONSUMER COMMUNICATIONS AND NETWORKING CONFERENCE, 2015, : 290 - 296