JSON Web Token (JWT) based client authentication in Message Queuing Telemetry Transport (MQTT)

03/07/2019
by   Krishna Shingala, et al.
0

This paper is an overview of JSON Web Token (JWT) and Transport Layer Security (TLS) as two primary approaches for authentication of the things on the Internet. JSON Web Token (JWT) is used extensively today for authorization and authentication within the OAuth and the OpenId framework. Recently, the Google Cloud IoT has mandated the use of JWT for both HTTP and Message Queuing Telemetry Transport (MQTT) protocol based clients connecting to the cloud service securely over TLS. MQTT is the protocol of choice in IoT devices and is the primary focus of this paper as the application protocol. Another popular cloud platform Amazon Web Service (AWS) uses the TLS mutual authentication for client authentication. Any comparison provided here between the two approaches is primarily from a constrained device client perspective.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
08/20/2019

Memory Forensic Analysis of MQTT Devices

Internet of Things is revolutionizing the current era with its vast usag...
research
05/12/2022

Zero-Knowledge Authentication

In the thesis we focus on designing an authentication system to authenti...
research
07/14/2023

TUSH-Key: Transferable User Secrets on Hardware Key

Passwordless authentication was first tested for seamless and secure mer...
research
08/26/2019

Integration of the Captive Portal paradigm with the 802.1X architecture

In a scenario where hotspot wireless networks are increasingly being use...
research
03/22/2019

Surfing the Web quicker than QUIC via a shared Address Validation

QUIC is a performance-optimized secure transport protocol and a building...
research
10/23/2017

A JSON Token-Based Authentication and Access Management Schema for Cloud SaaS Applications

Cloud computing is significantly reshaping the computing industry built ...
research
12/11/2022

mRpostman: An IMAP Client for R

Internet Message Access Protocol (IMAP) clients are a common feature in ...

Please sign up or login with your details

Forgot password? Click here to reset