SCIoT: A Secure and sCalable End-to-End Management Framework for IoT Devices

被引:5
|
作者
Ambrosin, Moreno [1 ]
Conti, Mauro [3 ]
Ibrahim, Ahmad [2 ]
Sadeghi, Ahmad-Reza [2 ]
Schunter, Matthias [1 ]
机构
[1] Intel Labs, Hillsboro, OR 97124 USA
[2] Tech Univ Darmstadt, Darmstadt, Germany
[3] Univ Padua, Padua, Italy
来源
基金
欧盟地平线“2020”;
关键词
SIGNATURES; INTERNET;
D O I
10.1007/978-3-319-99073-6_29
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The Internet of Things (IoT) is connecting billions of smart devices. One of the emerging challenges in the IoT scenario is how to efficiently and securely manage large deployments of devices. This includes sending commands, monitoring status and execution results, updating devices firmware, and interactively resolving problems. In this paper we propose SCIoT, a Secure and sCalable framework for IoT management. SCIoT guarantees low complexity in terms of communication, storage and computation on both managed devices and the management entity. SCIoT enables secure management of large deployments with a single low-power management device, by leveraging trees of common untrusted intermediate infrastructures. SCIoT brings three technical contributions: (1) a domain-independent management specification by means of extended finite state machines, which specifies states and desired transitions to describe the whole management process; (2) a protocol for securely and efficiently distributing applicable transitions of the automaton corresponding to commands; and (3) a protocol for securely aggregating status responses from the managed nodes using a tree of untrusted nodes. We show feasibility and efficiency of SCIoT by both a proof-of-concept implementation of the client agent on Riot-OS - an operating system for the IoT, and a large scale evaluation, using realistic assumptions. Our thorough evaluation highlights the efficiency of our command distribution protocol, as well as the small (logarithmic) runtime and overhead of data collection.
引用
收藏
页码:595 / 617
页数:23
相关论文
共 50 条
  • [31] AN END-TO-END TESTBED FOR SCALABLE VIDEO STREAMING TO MOBILE DEVICES OVER HTTP
    Li, Yu-Sian
    Chen, Chien-Chang
    Lin, Ting-An
    Hsu, Cheng-Hsin
    Wang, Yichuan
    Liu, Xin
    2013 IEEE INTERNATIONAL CONFERENCE ON MULTIMEDIA AND EXPO (ICME 2013), 2013,
  • [32] A scalable end-to-end QoS architecture
    Hoang, Doan B.
    Phan, H. T.
    2007 INTERNATIONAL SYMPOSIUM ON COMMUNICATIONS AND INFORMATION TECHNOLOGIES, VOLS 1-3, 2007, : 677 - 682
  • [33] End-to-end security validation of IoT systems based on digital twins of end-devices
    Maillet-Contoz, Laurent
    Michel, Emmanuel
    Nava, Mario Diaz
    Brun, Paul-Emmanuel
    Lepretre, Kevin
    Massot, Guillemette
    2020 GLOBAL INTERNET OF THINGS SUMMIT (GIOTS), 2020,
  • [34] End-to-end malware detection for android IoT devices using deep learning
    Ren, Zhongru
    Wu, Haomin
    Ning, Qian
    Hussain, Iftikhar
    Chen, Bingcai
    AD HOC NETWORKS, 2020, 101
  • [35] End-to-End Authenticated Key Exchange Agreement for Wearable Devices in IoT Environments
    Hsu, Chien-Lung
    Chuang, Tzu-Hsien
    Lin, Tzu-Wei
    2017 IEEE GREAT LAKES BIOMEDICAL CONFERENCE (GLBC), 2017,
  • [36] Towards an Improved Energy Efficient and End-to-End Secure Protocol for IoT Healthcare Applications
    Ahmad, Arshad
    Ullah, Ayaz
    Feng, Chong
    Khan, Muzammil
    Ashraf, Shahzad
    Adnan, Muhammad
    Nazir, Shah
    Khan, Habib Ullah
    SECURITY AND COMMUNICATION NETWORKS, 2020, 2020
  • [37] Multi-Layered IoT System Design Towards End-to-End Secure Communication
    Rech, Alexander
    Gressl, Lukas
    Basic, Fikret
    Seifert, Christian
    Steger, Christian
    Sinnhofer, Andreas
    IECON 2020: THE 46TH ANNUAL CONFERENCE OF THE IEEE INDUSTRIAL ELECTRONICS SOCIETY, 2020, : 2213 - 2220
  • [38] Secure Provisioning for Achieving End-to-End Secure Communications
    Sousa, Patricia R.
    Resende, Joao S.
    Martins, Rolando
    Antunes, Luis
    AD-HOC, MOBILE, AND WIRELESS NETWORKS (ADHOC-NOW 2019), 2019, 11803 : 498 - 507
  • [39] Towards scalable management of QoS-based end-to-end services
    Bless, R
    NOMS 2004: IEEE/IFIP NETWORK OPERATIONS AND MANAGMENT SYMPOSIUM: MANAGING NEXT GENERATION CONVERGENCE NETWORKS AND SERVICES, 2004, : 293 - 306
  • [40] End-to-end Secure Insurance Telematics
    Salant, Eliot
    Gershinsky, Gidon
    SYSTOR '19: PROCEEDINGS OF THE 12TH ACM INTERNATIONAL SYSTEMS AND STORAGE CONFERENCE, 2019, : 182 - 182