论文标题
IoT-Rex:来自集中式多指定验证的IoT设备的安全遥控系统
IoT-REX: A Secure Remote-Control System for IoT Devices from Centralized Multi-Designated Verifier Signatures
论文作者
论文摘要
物联网技术一直在迅速发展,而与Mirai这样的臭名昭著的物联网恶意软件是严重而固有的威胁。我们认为,必须考虑使我们能够远程控制感染设备以防止或限制受感染设备的恶意行为的系统。在本文中,我们设计了此类遥控系统的有前途的候选人,称为IoT-Rex(用于IoT设备的遥控系统)。 IoT-Rex允许系统管理器指定系统中所有物联网设备的任意子集,并且每个设备都可以确认该设备本身是否已指定;如果是这样,该设备将执行系统管理器给出的命令。为了实现IoT-Rex,我们引入了一种新型的加密原始原始,称为集中式多指定验证符(CMDV)。尽管与常规MDV相比,CMDV在限制条件下工作,但足以实现IoT-Rex。我们从任何近似会员查询结构和数字签名中提供有效的CMDVS构建,从而为IoT-Rex提供紧凑的通信大小和有效的验证程序。然后,我们通过在Raspberry Pi上的CMDVS构造的加密实施来讨论IoT-Rex的可行性。我们有希望的结果表明,与琐碎的结构相比,CMDVS构造可以将通信大小压缩至约30%,因此,与典型的具有IoT设备的典型的低功率大区域网络相比,其最终的IoT Rex比琐碎的结构快三倍。
IoT technology has been developing rapidly, while at the same time, notorious IoT malware such as Mirai is a severe and inherent threat. We believe it is essential to consider systems that enable us to remotely control infected devices in order to prevent or limit malicious behaviors of infected devices. In this paper, we design a promising candidate for such remote-control systems, called IoT-REX (REmote-Control System for IoT devices). IoT-REX allows a systems manager to designate an arbitrary subset of all IoT devices in the system, and every device can confirm whether or not the device itself was designated; if so, the device executes a command given by the systems manager. Towards realizing IoT-REX, we introduce a novel cryptographic primitive called centralized multi-designated verifier signatures (CMDVS). Although CMDVS works under a restricted condition compared to conventional MDVS, it is sufficient for realizing IoT-REX. We provide an efficient CMDVS construction from any approximate membership query structures and digital signatures, yielding compact communication sizes and efficient verification procedures for IoT-REX. We then discuss the feasibility of IoT-REX through the cryptographic implementation of the CMDVS construction on a Raspberry Pi. Our promising results demonstrate that the CMDVS construction can compress communication size to about 30% compared to a trivial construction, and thus its resulting IoT-REX becomes three times faster than a trivial construction over typical low-power wide area networks with an IoT device.