Enhancing Digital Certificate Usability in Long Lifespan IoT Devices by Utilizing Private CA
Enhancing Digital Certificate Usability in Long Lifespan IoT Devices by Utilizing Private CA
复制标题
通过利用私有 CA 增强长寿命物联网设备中的数字证书可用性
DOI:
10.1155/2021/6610863
复制
发表时间:
2021
影响因子:
--
通讯作者:
Uehara Tetsutaro
中科院分区:
文献类型:
--
作者:
Yamakawa Daiki;Okimoto Takashi;Teerakanok Songpon;Inomata Atsuo;Uehara Tetsutaro
Today, smart devices and services have become a part of our daily life. These devices and services offer a richer user experience with a much higher quality of services than before. Many of them utilize sensing functions via cloud architecture to perform remote device controls and monitoring. Generally, the security of the communication between these devices and the service provider (e.g., cloud server) is achieved by using the TLS protocol via PKI standard. In this study, we investigate the risk associating with the use of public certificate authorities (CAs) in a PKI‐based IoT system. An experiment is conducted to demonstrate existing vulnerabilities in real IoT devices available in the market. Next, the use of a private CA in the cloud‐centric IoT architecture is proposed to achieve better control over the certificate issuing process and the validity period of the certificate. Lastly, the security analysis pointing out the strengths and drawbacks of the proposed method is discussed in detail.
影响因子:
--
作者:
Horst Mehl
通讯作者:
Horst Mehl