Department of Information Technology, Jadavpur University, Salt Lake City, Kolkata 700 098, India.
Department of Computer Science and Information Systems, Birla Institute of Technology & Science, Pilani Hyderabad Campus, Hyderabad 500 078, India.
Sensors (Basel). 2020 Feb 22;20(4):1215. doi: 10.3390/s20041215.
In recent years, the Internet of Things (IoT) has exploded in popularity. The smart home, as an important facet of IoT, has gained its focus for smart intelligent systems. As users communicate with smart devices over an insecure communication medium, the sensitive information exchanged among them becomes vulnerable to an adversary. Thus, there is a great thrust in developing an anonymous authentication scheme to provide secure communication for smart home environments. Most recently, an anonymous authentication scheme for smart home environments with provable security has been proposed in the literature. In this paper, we analyze the recent scheme to highlight its several vulnerabilities. We then address the security drawbacks and present a more secure and robust authentication scheme that overcomes the drawbacks found in the analyzed scheme, while incorporating its advantages too. Finally, through a detailed comparative study, we demonstrate that the proposed scheme provides significantly better security and more functionality features with comparable communication and computational overheads with similar schemes.
近年来,物联网(IoT)得到了广泛的普及。智能家居作为物联网的一个重要方面,因其智能系统而受到关注。由于用户通过不安全的通信媒介与智能设备进行通信,因此它们之间交换的敏感信息容易受到攻击者的攻击。因此,开发一种匿名认证方案以提供智能家居环境的安全通信具有重要意义。最近,文献中提出了一种具有可证明安全性的智能家居环境匿名认证方案。在本文中,我们分析了该方案,指出了其存在的一些漏洞。然后,我们针对安全缺陷提出了一种更安全、更健壮的认证方案,该方案克服了所分析方案的缺陷,同时也保留了其优势。最后,通过详细的比较研究,我们证明了所提出的方案在具有可比通信和计算开销的情况下,提供了更好的安全性和更多的功能特性。