Netinfo Security ›› 2018, Vol. 18 ›› Issue (5): 32-40.doi: 10.3969/j.issn.1671-1122.2018.05.004

• Orginal Article • Previous Articles     Next Articles

Protection Technology of Network Camera Based on SM2 Digital Signature

Liming ZUO1,2(), Pingping XIA1,2, Zuosong CHEN1,2   

  1. 1. School of Science, East China Jiaotong University, Nanchang Jiangxi 330013, China
    2. Institute of Systems Engineering and Cryptograph, East China Jiaotong University, Nanchang Jiangxi 330013, China
  • Received:2018-02-26 Online:2018-05-15 Published:2020-05-11

Abstract:

With the rapid development of Internet of things (IOT) technology, smart home network is gradually popularizing. However, security problems such as privacy leaks and malicious tampering of data are emerging constantly. The typical vulnerabilities of recent network camera are analyzed, including weak default credential vulnerabilities, authentication bypass vulnerabilities, use of built-in WebShell and proprietary protocol remote control vulnerabilities, and the intrusion access control for a network camera is implemented. Aiming at the security logins problems for current network camera system, the login authentication protocol of camera management system based on SM2 digital signature is proposed. According to the different key processing methods in the protocol implementation, two schemes of electronic key and no electronic key are proposed. In the case of an electronic key, the electronic key is used as a security key container. When there is no electronic key, a password-based key scheme is provided to solve the key management problem. Finally, an experimental simulation platform is constructed by using Raspberry Pi 3B development board. The authentication protocol is implemented under the framework of C/S, B/S and APP/S. Simulation results show that this scheme can effectively prevent sniffing attacks against login passwords.

Key words: network camera, electronic key, SM2, digital signature, sniffer

CLC Number: