Using smartphones to enable low-cost secure consumer IoT devices
McPherson, Ross and Irvine, James (2020) Using smartphones to enable low-cost secure consumer IoT devices. IEEE Access, 8. pp. 28607-28613. ISSN 2169-3536 (https://doi.org/10.1109/ACCESS.2020.2968627)
Preview |
Text.
Filename: McPherson_Irvine_IEEE_Access_2020_Using_smartphones_to_enable_low_cost_secure_consumer_IoT_devices.pdf
Final Published Version License: Download (1MB)| Preview |
Abstract
This paper proposes a solution for low-cost consumer IoT devices to employ end-to-end security without requiring additional hardware. Manufacturers of consumer IoT devices often sacrifice security in favour of features, user-friendliness, time to market or cost, in order to stay ahead of their competitors. However, this is unwise, as demonstrated by recent hacks on consumer IoT devices. Low-cost embedded devices struggle to create suitable entropy for key generation; on the other hand, smartphones are both abundant and have multiple sources of entropy for strong key generation. The proposed architecture takes advantage of these properties and offloads key generation and transfer to the user's smartphone, removing the need for constrained IoT devices to perform public key infrastructure and generate symmetric keys. The authors implemented the design on a \$1 general-purpose microcontroller and then analysed the performance. The design allows all communication to and from the device to be encrypted while being simple to setup, low-cost and responsive without any additional manufacturing cost. The architecture presents a general solution, which could be implemented on any microcontroller. Since the architecture does not require any additional hardware, it can be retroactively applied to deployed devices through a firmware update.
ORCID iDs
McPherson, Ross and Irvine, James ORCID: https://orcid.org/0000-0003-2078-6517;-
-
Item type: Article ID code: 71531 Dates: DateEvent27 January 2020Published4 January 2020AcceptedSubjects: Technology > Electrical engineering. Electronics Nuclear engineering Department: Faculty of Engineering > Electronic and Electrical Engineering
Strategic Research Themes > Society and PolicyDepositing user: Pure Administrator Date deposited: 24 Feb 2020 09:10 Last modified: 11 Nov 2024 12:35 URI: https://strathprints.strath.ac.uk/id/eprint/71531