信息网络安全 ›› 2024, Vol. 24 ›› Issue (1): 133-142.doi: 10.3969/j.issn.1671-1122.2024.01.013

• 技术研究 • 上一篇    下一篇

智能家居网络下基于多因子的认证密钥协商方案

张敏1,2, 冯永强3,4, 许春香1, 张建华2()   

  1. 1.电子科技大学网络空间安全学院,成都 611731
    2.西南民族大学计算机科学与工程学院,成都 610041
    3.国家管网集团北方管道有限责任公司,廊坊 065000
    4.东北石油大学,大庆 163318
  • 收稿日期:2023-10-22 出版日期:2024-01-10 发布日期:2024-01-24
  • 通讯作者: 张建华 E-mail:xnmdzjh@swun.edu.cn
  • 作者简介:张敏(1983—),男,四川,高级实验师,博士,主要研究方向为信息安全与网络安全|冯永强(1980—),男,河北,高级工程师,硕士研究生,主要研究方向为网络安全|许春香(1965—),女,湖南,教授,博士,CCF会员,主要研究方向为信息安全、密码学|张建华(1971—),男,四川,教授,博士,CCF会员,主要研究方向为信息安全与网络安全
  • 基金资助:
    国家自然科学基金(61370203);国家重点研发计划(2017YFB0802000);西南民族大学2023年度人才培养质量提升改革项目(2023JGZL17)

Research on Multi-Factor Authenticated Key Agreement Protocol for Smart Home Networks

ZHANG Min1,2, FENG Yongqiang3,4, XU Chunxiang1, ZHANG Jianhua2()   

  1. 1. School of Cyberspace Security, University of Electronic Science and Technology of China, Chengdu 611731, China
    2. School of Computer Science and Engineer, Southwest Minzu University, Chengdu 610225, China
    3. PipeChina North Pipeline Company, Langfang 065000, China
    4. Northeast Petroleum University, Daqing 163318, China
  • Received:2023-10-22 Online:2024-01-10 Published:2024-01-24
  • Contact: ZHANG Jianhua E-mail:xnmdzjh@swun.edu.cn

摘要:

智能家居网络通过物联网技术将智能设备相连,用户可以远程查看和控制家居设备,但信息在不安全的公共网络上传输将面临各种网络威胁,因此研究和设计安全高效且符合智能家居网络的认证密钥协商协议非常必要。2020年,WAZID等人针对智能家居网络提出轻量级认证密钥协商方案(Wazid-Das方案),经过安全性分析和证明后发现,该方案过于依赖智能家居网关节点(Gateway Node,GWN),系统健壮性不高;该方案将用户和设备密钥存储在GWN中,但GWN面临特权攻击和各种外部网络攻击,并不绝对安全,且没有考虑用户的访问控制。文章在Wazid-Das方案的基础上针对智能家居网络提出一种基于切比雪夫映射(Chebyshev Chaotic Map)和安全略图(Secure Sketch)的多因子认证密钥协商方案。安全性证明和仿真实验结果表明,该方案虽然计算开销有所增加,但安全性显著提高,且通信开销大幅降低。

关键词: 智能家居, 安全略图, 多因子认证, 切比雪夫映射, 密钥协商

Abstract:

Smart home networks connect smart devices at home through IoT technology, allowing users to remotely view and control their devices. However, information transmission on insecure public networks will face various network threats. Therefore, it is necessary to research and design secure, efficient, and compliant authentication key negotiation protocols for smart home networks. In 2020, WAZID et al. proposed a lightweight authentication key agreement protocol for smart home networks. After security analysis and verification, this paper found that the protocol has the following problems: the scheme overly relies on the gateway node(GWN) of the smart home gateway node, resulting in low system robustness; this scheme stores user and device keys in GWN, but GWN faces privilege attacks and various external network attacks, making it not absolutely secure; this scheme did not consider user access control. This article proposed a new multi-factor authentication key agreement scheme based on Chebyshev chaotic map and Secure Sketch for smart home networks. From the security proof and simulation experiments, although the computational cost of the proposed scheme has increased, the security has been improved and the communication cost has been reduced.

Key words: smart home, secure sketch, multi-factor authentication, Chebyshev chaotic map, key agreement

中图分类号: