A Toolkit for Construction of Authorization Service Infrastructure for the Internet of Things

Hokeun Kim, Eunsuk Kang, Edward A. Lee, David Broman
2017 Proceedings of the Second International Conference on Internet-of-Things Design and Implementation - IoTDI '17  
The challenges posed by the Internet of Things (IoT) render existing security measures ineffective against emerging networks and devices. These challenges include heterogeneity, operation in open environments, and scalability. In this paper, we propose SST (Secure Swarm Toolkit), an open-source toolkit for construction and deployment of an authorization service infrastructure for the IoT. The infrastructure uses distributed local authorization entities, which provide authorization services that
more » ... can address heterogeneous security requirements and resource constraints in the IoT. The authorization services can be accessed by network entities through software interfaces provided by SST, called accessors. The accessors enable IoT developers to readily integrate their devices with authorization services without needing to manage cryptographic keys and operations. To rigorously show that SST provides necessary security guarantees, we have performed a formal security analysis using an automated verification tool. In addition, we demonstrate the scalability of our approach with a mathematical analysis, as well as experiments to evaluate security overhead of network entities under different security profiles supported by SST.
doi:10.1145/3054977.3054980 dblp:conf/iotdi/KimKLB17 fatcat:4yrg53ibnzbgvha6ugeqgs6cku