Cargando…

A Secure and Lightweight Authentication Protocol for IoT-Based Smart Homes

With the information and communication technologies (ICT) and Internet of Things (IoT) gradually advancing, smart homes have been able to provide home services to users. The user can enjoy a high level of comfort and improve his quality of life by using home services provided by smart devices. Howev...

Descripción completa

Detalles Bibliográficos
Autores principales: Oh, JiHyeon, Yu, SungJin, Lee, JoonYoung, Son, SeungHwan, Kim, MyeongHyun, Park, YoungHo
Formato: Online Artículo Texto
Lenguaje:English
Publicado: MDPI 2021
Materias:
Acceso en línea:https://www.ncbi.nlm.nih.gov/pmc/articles/PMC7924604/
https://www.ncbi.nlm.nih.gov/pubmed/33669920
http://dx.doi.org/10.3390/s21041488
_version_ 1783659123590561792
author Oh, JiHyeon
Yu, SungJin
Lee, JoonYoung
Son, SeungHwan
Kim, MyeongHyun
Park, YoungHo
author_facet Oh, JiHyeon
Yu, SungJin
Lee, JoonYoung
Son, SeungHwan
Kim, MyeongHyun
Park, YoungHo
author_sort Oh, JiHyeon
collection PubMed
description With the information and communication technologies (ICT) and Internet of Things (IoT) gradually advancing, smart homes have been able to provide home services to users. The user can enjoy a high level of comfort and improve his quality of life by using home services provided by smart devices. However, the smart home has security and privacy problems, since the user and smart devices communicate through an insecure channel. Therefore, a secure authentication protocol should be established between the user and smart devices. In 2020, Xiang and Zheng presented a situation-aware protocol for device authentication in smart grid-enabled smart home environments. However, we demonstrate that their protocol can suffer from stolen smart device, impersonation, and session key disclosure attacks and fails to provide secure mutual authentication. Therefore, we propose a secure and lightweight authentication protocol for IoT-based smart homes to resolve the security flaws of Xiang and Zheng’s protocol. We proved the security of the proposed protocol by performing informal and formal security analyses, using the real or random (ROR) model, Burrows–Abadi–Needham (BAN) logic, and the Automated Validation of Internet Security Protocols and Applications (AVISPA) tool. Moreover, we provide a comparison of performance and security properties between the proposed protocol and related existing protocols. We demonstrate that the proposed protocol ensures better security and lower computational costs than related protocols, and is suitable for practical IoT-based smart home environments.
format Online
Article
Text
id pubmed-7924604
institution National Center for Biotechnology Information
language English
publishDate 2021
publisher MDPI
record_format MEDLINE/PubMed
spelling pubmed-79246042021-03-03 A Secure and Lightweight Authentication Protocol for IoT-Based Smart Homes Oh, JiHyeon Yu, SungJin Lee, JoonYoung Son, SeungHwan Kim, MyeongHyun Park, YoungHo Sensors (Basel) Article With the information and communication technologies (ICT) and Internet of Things (IoT) gradually advancing, smart homes have been able to provide home services to users. The user can enjoy a high level of comfort and improve his quality of life by using home services provided by smart devices. However, the smart home has security and privacy problems, since the user and smart devices communicate through an insecure channel. Therefore, a secure authentication protocol should be established between the user and smart devices. In 2020, Xiang and Zheng presented a situation-aware protocol for device authentication in smart grid-enabled smart home environments. However, we demonstrate that their protocol can suffer from stolen smart device, impersonation, and session key disclosure attacks and fails to provide secure mutual authentication. Therefore, we propose a secure and lightweight authentication protocol for IoT-based smart homes to resolve the security flaws of Xiang and Zheng’s protocol. We proved the security of the proposed protocol by performing informal and formal security analyses, using the real or random (ROR) model, Burrows–Abadi–Needham (BAN) logic, and the Automated Validation of Internet Security Protocols and Applications (AVISPA) tool. Moreover, we provide a comparison of performance and security properties between the proposed protocol and related existing protocols. We demonstrate that the proposed protocol ensures better security and lower computational costs than related protocols, and is suitable for practical IoT-based smart home environments. MDPI 2021-02-21 /pmc/articles/PMC7924604/ /pubmed/33669920 http://dx.doi.org/10.3390/s21041488 Text en © 2021 by the authors. Licensee MDPI, Basel, Switzerland. This article is an open access article distributed under the terms and conditions of the Creative Commons Attribution (CC BY) license (http://creativecommons.org/licenses/by/4.0/).
spellingShingle Article
Oh, JiHyeon
Yu, SungJin
Lee, JoonYoung
Son, SeungHwan
Kim, MyeongHyun
Park, YoungHo
A Secure and Lightweight Authentication Protocol for IoT-Based Smart Homes
title A Secure and Lightweight Authentication Protocol for IoT-Based Smart Homes
title_full A Secure and Lightweight Authentication Protocol for IoT-Based Smart Homes
title_fullStr A Secure and Lightweight Authentication Protocol for IoT-Based Smart Homes
title_full_unstemmed A Secure and Lightweight Authentication Protocol for IoT-Based Smart Homes
title_short A Secure and Lightweight Authentication Protocol for IoT-Based Smart Homes
title_sort secure and lightweight authentication protocol for iot-based smart homes
topic Article
url https://www.ncbi.nlm.nih.gov/pmc/articles/PMC7924604/
https://www.ncbi.nlm.nih.gov/pubmed/33669920
http://dx.doi.org/10.3390/s21041488
work_keys_str_mv AT ohjihyeon asecureandlightweightauthenticationprotocolforiotbasedsmarthomes
AT yusungjin asecureandlightweightauthenticationprotocolforiotbasedsmarthomes
AT leejoonyoung asecureandlightweightauthenticationprotocolforiotbasedsmarthomes
AT sonseunghwan asecureandlightweightauthenticationprotocolforiotbasedsmarthomes
AT kimmyeonghyun asecureandlightweightauthenticationprotocolforiotbasedsmarthomes
AT parkyoungho asecureandlightweightauthenticationprotocolforiotbasedsmarthomes
AT ohjihyeon secureandlightweightauthenticationprotocolforiotbasedsmarthomes
AT yusungjin secureandlightweightauthenticationprotocolforiotbasedsmarthomes
AT leejoonyoung secureandlightweightauthenticationprotocolforiotbasedsmarthomes
AT sonseunghwan secureandlightweightauthenticationprotocolforiotbasedsmarthomes
AT kimmyeonghyun secureandlightweightauthenticationprotocolforiotbasedsmarthomes
AT parkyoungho secureandlightweightauthenticationprotocolforiotbasedsmarthomes