Shandong Provincial Key Laboratory of Computer Networks, Shandong Computer Science Center (National Supercomputer Center in Jinan), Qilu University of Technology (Shandong Academy of Sciences), Jinan 250014, China.
School of Safety Science and Engineering, Civil Aviation University of China, Tianjin 300300, China.
Sensors (Basel). 2022 Sep 29;22(19):7413. doi: 10.3390/s22197413.
With the development of the Industrial Internet of Things (IIoT), industrial wireless sensors need to upload the collected private data to the cloud servers, resulting in a large amount of private data being exposed on the Internet. Private data are vulnerable to hacking. Many complex wireless-sensor-authentication protocols have been proposed. In this paper, we proposed an efficient authentication protocol for IIoT-oriented wireless sensor networks. The protocol introduces the PUF chip, and uses the Bloom filter to save and query the challenge-response pairs generated by the PUF chip. It ensures the security of the physical layer of the device and reduces the computing cost and communication cost of the wireless sensor side. The protocol introduces a pre-authentication mechanism to achieve continuous authentication between the gateway and the cloud server. The overall computational cost of the protocol is reduced. Formal security analysis and informal security analysis proved that our proposed protocol has more security features. We implemented various security primitives using the MIRACL cryptographic library and GMP large number library. Our proposed protocol was compared in-depth with related work. Detailed experiments show that our proposed protocol significantly reduces the computational cost and communication cost on the wireless sensor side and the overall computational cost of the protocol.
随着工业物联网(IIoT)的发展,工业无线传感器需要将采集到的私有数据上传到云服务器,导致大量的私有数据在互联网上暴露。私有数据容易受到黑客攻击。已经提出了许多复杂的无线传感器认证协议。在本文中,我们提出了一种面向工业物联网的无线传感器网络的高效认证协议。该协议引入了 PUF 芯片,并使用 Bloom 过滤器来保存和查询由 PUF 芯片生成的挑战-响应对。它确保了设备物理层的安全性,并降低了无线传感器端的计算成本和通信成本。该协议引入了预认证机制,实现了网关和云服务器之间的连续认证。协议的整体计算成本降低。形式安全分析和非形式安全分析证明,我们提出的协议具有更多的安全特性。我们使用 MIRACL 密码库和 GMP 大数库实现了各种安全原语。我们深入比较了我们提出的协议与相关工作。详细的实验表明,我们提出的协议显著降低了无线传感器端的计算成本和通信成本,以及协议的整体计算成本。