Formal Analysis of EDHOC Key Establishment for Constrained IoT Devices

07/22/2020
by   Karl Norrman, et al.
0

The IETF is standardizing an authenticated key establishment (AKE) protocol named EDHOC for constrained IoT devices. In contrast to more powerful devices like web cameras and cars, which receive a lot of media attention, such devices operate under severe energy consumption and message size restrictions. EDHOC was first formally analyzed in 2018 by Bruni et al. Since then, the protocol has been significantly extended and now has three new key establishment methods. In this paper, we formally analyze all methods of EDHOC in a symbolic Dolev-Yao model, using the Tamarin verification tool. We show that the different methods provide sensible, but also rather heterogeneous security properties, and discuss various consequences of this. Our work has also led to improvements in the design and the specification of EDHOC.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
02/04/2020

Public-Key Based Authentication Architecture for IoT Devices Using PUF

Nowadays, Internet of Things (IoT) is a trending topic in the computing ...
research
04/19/2021

The Impact of DoS Attacks onResource-constrained IoT Devices:A Study on the Mirai Attack

Mirai is a type of malware that creates a botnet of internet-connected d...
research
11/04/2020

VSDM: A Virtual Service Device Management Scheme for UPnP-Based IoT Networks

The ubiquitous nature of IoT devices has brought new and exciting applic...
research
11/01/2018

Formally Verified Hardware/Software Co-Design for Remote Attestation

In this work, we take the first step towards formal verification of RA b...
research
01/03/2021

Neural Networks for Keyword Spotting on IoT Devices

We explore Neural Networks (NNs) for keyword spotting (KWS) on IoT devic...
research
03/28/2022

Interoperability in the IoT – An Evaluation of the Semantic-Based Approach

While the management of heterogeneous network devices is usually solved ...

Please sign up or login with your details

Forgot password? Click here to reset