Formal verification of security properties of the Lightweight Authentication and Key Exchange Protocol for Federated IoT devices

The federated nature of many crucial Internet of Things (IoT) applications introduces several challenges from a security perspective. To address critical challenges related to the authentication and secure communication of IoT devices operating in federated environments, we propose a new authenticat...

Full description

Saved in:
Bibliographic Details
Published in2022 17th Conference on Computer Science and Intelligence Systems (FedCSIS) Vol. 30; pp. 617 - 625
Main Authors Jarosz, Michal, Wrona, Konrad, Zielinski, Zbigniew
Format Conference Proceeding Journal Article
LanguageEnglish
Published Polish Information Processing Society 01.01.2022
Subjects
Online AccessGet full text
ISSN2300-5963
DOI10.15439/2022F169

Cover

Abstract The federated nature of many crucial Internet of Things (IoT) applications introduces several challenges from a security perspective. To address critical challenges related to the authentication and secure communication of IoT devices operating in federated environments, we propose a new authentication and key exchange protocol based on a distributed ledger. Our protocol uses the unique configuration fingerprint of an IoT device and does not require secure storage in participating IoT devices. To validate the correctness of our design, we have performed formal modeling and verification of the security properties, using two different verification tools: Verifpal and the Tamarin prover.
AbstractList The federated nature of many crucial Internet of Things (IoT) applications introduces several challenges from a security perspective. To address critical challenges related to the authentication and secure communication of IoT devices operating in federated environments, we propose a new authentication and key exchange protocol based on a distributed ledger. Our protocol uses the unique configuration fingerprint of an IoT device and does not require secure storage in participating IoT devices. To validate the correctness of our design, we have performed formal modeling and verification of the security properties, using two different verification tools: Verifpal and the Tamarin prover.
Author Wrona, Konrad
Zielinski, Zbigniew
Jarosz, Michal
Author_xml – sequence: 1
  givenname: Michal
  surname: Jarosz
  fullname: Jarosz, Michal
  email: michal.jarosz@wat.edu.pl
  organization: Cybernetics Faculty Military University of Technology,Warsaw,Poland
– sequence: 2
  givenname: Konrad
  surname: Wrona
  fullname: Wrona, Konrad
  email: konrad.wrona@ncia.nato.int
  organization: NATO Cyber Security Centre / Military University of Technology,The Hague,Netherlands
– sequence: 3
  givenname: Zbigniew
  surname: Zielinski
  fullname: Zielinski, Zbigniew
  email: zbigniew.zielinski@wat.edu.pl
  organization: Cybernetics Faculty Military University of Technology,Warsaw,Poland
BookMark eNo9kD1PwzAURQ0CiVI6MLP4DwQc23HisapaqKgEQ5mjF-e5ddXGleMWuvHTSfha7pOOdI_07jW5aHyDhNym7D7NpNAPnHE-S5U-IyOdF4XQikve5TkZcMFYkmklrsiobTeMMZ5KxqUakM-ZDzvY0iMGZ52B6HxDvaUtmkNw8UT3we8xRIdtj-Ma6cKt1vEd-6TjQ0ea-FeEpqbPeKLTD7OGZoX0Nfjojd9S6wOdYY0BItZ07pe0xqMz2N6QSwvbFke_d0jeZtPl5ClZvDzOJ-NFUnMhY5KDLri1MpVVBblWVoIqMlMIWWDOag1WYIZZpvJ-jbSnihmwFWOVyTWKIZn_eGsPm3If3A7CqfTgym_gw6qE7k2zxZJXad6N140IhTQ56t7IjYIiVZAx0bnuflwOEf9dWjMtGBdfuLB5wQ
ContentType Conference Proceeding
Journal Article
DBID 6IE
6IL
CBEJK
RIE
RIL
DOA
DOI 10.15439/2022F169
DatabaseName IEEE Electronic Library (IEL) Conference Proceedings
IEEE Xplore POP ALL
IEEE Xplore All Conference Proceedings
IEEE/IET Electronic Library
IEEE Proceedings Order Plans (POP All) 1998-Present
DOAJ Directory of Open Access Journals
DatabaseTitleList
Database_xml – sequence: 1
  dbid: DOA
  name: DOAJ Directory of Open Access Journals
  url: https://www.doaj.org/
  sourceTypes: Open Website
– sequence: 2
  dbid: RIE
  name: IEEE Xplore
  url: https://proxy.k.utb.cz/login?url=https://ieeexplore.ieee.org/
  sourceTypes: Publisher
DeliveryMethod fulltext_linktorsrc
Discipline Computer Science
EISBN 9788396242396
8396242399
EISSN 2300-5963
EndPage 625
ExternalDocumentID oai_doaj_org_article_2b17624788a84c7e954312c6a816a503
9909302
Genre orig-research
GrantInformation_xml – fundername: Ministry of Defense
  funderid: 10.13039/501100008121
GroupedDBID 6IE
6IL
CBEJK
RIE
RIL
6IF
6IN
AAJGR
AAWTH
ABLEC
ADBBV
ADZIZ
ALMA_UNASSIGNED_HOLDINGS
BCNDV
BEFXN
BFFAM
BGNUA
BKEBE
BPEOZ
CHZPO
GROUPED_DOAJ
IEGSK
M~E
OCL
OK1
Y2W
ID FETCH-LOGICAL-d234t-7a982ff414bba796f4a685c8348e70d9af3e5e55671543148e760cafb00bc79e3
IEDL.DBID DOA
IngestDate Wed Aug 27 01:09:35 EDT 2025
Thu Jan 18 11:14:33 EST 2024
IsDoiOpenAccess true
IsOpenAccess true
IsPeerReviewed true
IsScholarly true
Language English
LinkModel DirectLink
MergedId FETCHMERGED-LOGICAL-d234t-7a982ff414bba796f4a685c8348e70d9af3e5e55671543148e760cafb00bc79e3
OpenAccessLink https://doaj.org/article/2b17624788a84c7e954312c6a816a503
PageCount 9
ParticipantIDs ieee_primary_9909302
doaj_primary_oai_doaj_org_article_2b17624788a84c7e954312c6a816a503
PublicationCentury 2000
PublicationDate 2022-01-01
PublicationDateYYYYMMDD 2022-01-01
PublicationDate_xml – month: 01
  year: 2022
  text: 2022-01-01
  day: 01
PublicationDecade 2020
PublicationTitle 2022 17th Conference on Computer Science and Intelligence Systems (FedCSIS)
PublicationTitleAbbrev FedCSIS
PublicationYear 2022
Publisher Polish Information Processing Society
Publisher_xml – name: Polish Information Processing Society
SSID ssj0002140246
Score 2.1830747
Snippet The federated nature of many crucial Internet of Things (IoT) applications introduces several challenges from a security perspective. To address critical...
SourceID doaj
ieee
SourceType Open Website
Publisher
StartPage 617
SubjectTerms Authentication
Computer science
Distributed ledger
Fingerprint recognition
Internet of Things
Performance evaluation
Protocols
SummonAdditionalLinks – databaseName: IEEE/IET Electronic Library
  dbid: RIE
  link: http://utb.summon.serialssolutions.com/2.0.0/link/0/eLvHCXMwjV25TsQwELWAiopb3HJBSRbHsR2nBbHiFgVIdCvbGTegDYKsOCo-nRknLAJR0EUjJbbsZ8-RmTeM7Zmoo4gIXhlrnakcfIZQNuilSGcdqhyZ2nReXpmTW3V2p-9m2P60FgYAUvIZDOgx_cuvmzChUNkB3pxVQcyRswizrlarJwvSqFfJj0c3NKUuU2rZj34pSV0MF9jl10Bdlsj9YNL6QXj_xcH435ksstXvwjx-PVU5S2wGxsts4aszA-8P6gr7GJIp-sARp5QKlFafN5E_993q-CPF4J-ITJXEaATyC_LSX1KglFPcjLKI-hfduObn8MaPX7syYZpC2yCCOFq8fEh0FGix1vy0ueE1pKtnld0Oj2-OTrK-10JWy0K1WekqK2NUufLelZWJyhmrgy2UhVLUlYsFaNDalLTWOUmNCC7iqfWhrKBYY3PjZgzrjEvhRBSl8wBeyZBXVlQWYilUDB603GCHtD2jx45OY0QE10mAKzzqz8tI-hyvaeL2d1aFEioaVQbjbG6cFsUGW6FdmX6k35DNv8VbbJ7A0YVOttlc-zSBHTQmWr-bUPQJgVDNgw
  priority: 102
  providerName: IEEE
Title Formal verification of security properties of the Lightweight Authentication and Key Exchange Protocol for Federated IoT devices
URI https://ieeexplore.ieee.org/document/9909302
https://doaj.org/article/2b17624788a84c7e954312c6a816a503
Volume 30
hasFullText 1
inHoldings 1
isFullTextHit
isPrint
link http://utb.summon.serialssolutions.com/2.0.0/link/0/eLvHCXMwrV07T8MwELZQJxZeBVEelQfWCMexHXsE1Kg8xdBK3SI7sSeUVKUI2Pjp3DkBwcTCepJt6R6-h-6-I-RMBRlYAOXloZaJSL1LQJUVZCncagsuh8c1nfcPajoXNwu5-LHqC3vCOnjgjnHn3KVgrwjybrWocm9weJtXyupUWdnhfDLDfiRT-AdzyBu4UD2UEBwxmOVDkhobm_GRX9tUojMpdshWHwXSi-71XbLhmz2y_bVhgfYGNyQfBYaUTxT0DVt6IhdpG-hzv3WOLrGWvkJQVCRDMEfvMNt-jQVPivUv7AbqD9qmprf-nU7eunFf-rhq1y1oAoXIlRYIKwGRZ02v2xmtffxC9sm8mMyupkm_MyGpeSbWSW6N5iGIVDhnc6OCsErLSmdC-5zVxobMSy-lypErKVIVq2wA63NVbnx2QAZN2_hDQjmzLLDcOu-d4FVqNDPah5yJUDkv-YhcIiPLZQeLUSJQdSSA-MpefOVf4huRIYrh-xJwjiZj_Og_7j4mmyj0rmByQgbr1Ys_hRBi7cZRW8Zx2u8TTmbEOQ
linkProvider Directory of Open Access Journals
linkToHtml http://utb.summon.serialssolutions.com/2.0.0/link/0/eLvHCXMwjV1LT9wwELYQPbQnoFCV8qgPPZLFcWzHuYJYLWUX9bBI3CLbGV9AGwRZFTjx05lxwlatOPQWjZTY8sx4Hpn5hrEfJuooIgqvjI3OVA4-Q1E2GKVIZx2aHJnGdM4uzeRK_bzW12vsaNULAwCp-AxG9Jj-5TdtWFKq7Bhvzqog5MgPaPeV7ru1BrggjZaVInkMRFPxMhWX_TUxJRmM8QabvS3V14ncjJadH4Xnf1AY_3cvm2znT2se_7UyOltsDRaf2cbbbAY-qOo2exmTM3rLUVKpGCidP28jfxjm1fE7ysLfE5wqkdEN5FOK03-nVCmnzBnVEQ0vukXDL-CJnz32jcK0ha5FGeLo8_IxAVKgz9rw83bOG0iXzw67Gp_NTyfZMG0ha2Shuqx0lZUxqlx578rKROWM1cEWykIpmsrFAjRobUo665yoRgQXUW99KCsovrD1RbuAr4xL4UQUpfMAXsmQV1ZUFmIpVAwetNxlJ8Se-q4H1KgJ4joR8ITrQWNq6XO8qAnd31kVSqhoVRmMs7lxWhS7bJu4svrIwJBv75O_s4-T-WxaT88vL_bYJxKUPpGyz9a7-yUcoGvR-cMkUa9mDtDQ
openUrl ctx_ver=Z39.88-2004&ctx_enc=info%3Aofi%2Fenc%3AUTF-8&rfr_id=info%3Asid%2Fsummon.serialssolutions.com&rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Abook&rft.genre=proceeding&rft.title=2022+17th+Conference+on+Computer+Science+and+Intelligence+Systems+%28FedCSIS%29&rft.atitle=Formal+verification+of+security+properties+of+the+Lightweight+Authentication+and+Key+Exchange+Protocol+for+Federated+IoT+devices&rft.au=Jarosz%2C+Michal&rft.au=Wrona%2C+Konrad&rft.au=Zielinski%2C+Zbigniew&rft.date=2022-01-01&rft.pub=Polish+Information+Processing+Society&rft.spage=617&rft.epage=625&rft_id=info:doi/10.15439%2F2022F169&rft.externalDocID=9909302