Sensors | |
A Secure and Lightweight Authentication Protocol for IoT-Based Smart Homes | |
MyeongHyun Kim1  SeungHwan Son1  JoonYoung Lee1  YoungHo Park1  SungJin Yu1  JiHyeon Oh1  | |
[1] School of Electronic and Electrical Engineering, Kyungpook National University, Daegu 41566, Korea; | |
关键词: smart homes; IoT; authentication; BAN logic; ROR model; AVISPA; | |
DOI : 10.3390/s21041488 | |
来源: DOAJ |
【 摘 要 】
With the information and communication technologies (ICT) and Internet of Things (IoT) gradually advancing, smart homes have been able to provide home services to users. The user can enjoy a high level of comfort and improve his quality of life by using home services provided by smart devices. However, the smart home has security and privacy problems, since the user and smart devices communicate through an insecure channel. Therefore, a secure authentication protocol should be established between the user and smart devices. In 2020, Xiang and Zheng presented a situation-aware protocol for device authentication in smart grid-enabled smart home environments. However, we demonstrate that their protocol can suffer from stolen smart device, impersonation, and session key disclosure attacks and fails to provide secure mutual authentication. Therefore, we propose a secure and lightweight authentication protocol for IoT-based smart homes to resolve the security flaws of Xiang and Zheng’s protocol. We proved the security of the proposed protocol by performing informal and formal security analyses, using the real or random (ROR) model, Burrows–Abadi–Needham (BAN) logic, and the Automated Validation of Internet Security Protocols and Applications (AVISPA) tool. Moreover, we provide a comparison of performance and security properties between the proposed protocol and related existing protocols. We demonstrate that the proposed protocol ensures better security and lower computational costs than related protocols, and is suitable for practical IoT-based smart home environments.
【 授权许可】
Unknown