JEDI: Many-to-Many End-to-End Encryption and Key Delegation for IoT
Sam Kumar, Yuncong Hu, Michael P. Andersen, Raluca Ada Popa, David E. Culler
摘要
As the Internet of Things (IoT) emerges over the next decade, developing secure communication for IoT devices is of paramount importance. Achieving end-to-end encryption for large-scale IoT systems, like smart buildings or smart cities, is challenging because multiple principals typically interact indirectly via intermediaries, meaning that the recipient of a message is not known in advance. This paper proposes JEDI (Joining Encryption and Delegation for IoT), a many-to-many end-to-end encryption protocol for IoT. JEDI encrypts and signs messages end-to-end, while conforming to the decoupled communication model typical of IoT systems. JEDI's keys support expiry and fine-grained access to data, common in IoT. Furthermore, JEDI allows principals to delegate their keys, restricted in expiry or scope, to other principals, thereby granting access to data and managing access control in a scalable, distributed way. Through careful protocol design and implementation, JEDI can run across the spectrum of IoT devices, including ultra low-power deeply embedded sensors severely constrained in CPU, memory, and energy consumption. We apply JEDI to an existing IoT messaging system and demonstrate that its overhead is modest.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
引用它的顶会 Paper9
- WAVE: A Decentralized Authorization Framework with Transitive DelegationMichael P. Andersen, Sam Kumar, Moustafa AbdelBaky, Gabe Fierro 等USENIX Security 2019 · 被引用 66 次
- OST: On-Demand TSCH Scheduling with Traffic-AwarenessSeungbeom Jeong, Hyung-Sin Kim, Jeongyeup Paek, Saewoong BahkINFOCOM 2020 · 被引用 51 次
- Merkle2: A Low-Latency Transparency Log SystemYuncong Hu, Kian Hooshmand, Harika Kalidhindi, Seung Jin Yang 等S&P 2021 · 被引用 51 次
- Ghostor: Toward a Secure Data-Sharing System from Decentralized TrustYuncong Hu, Sam Kumar, Raluca Ada PopaNSDI 2020 · 被引用 48 次
- SafetyPin: Encrypted Backups with Human-Memorable SecretsEmma Dauterman, Henry Corrigan-Gibbs, David MazièresOSDI 2020 · 被引用 22 次
它引用的顶会 Paper1
相关 Paper
- Don't Kick Over the Beehive: Attacks and Security Analysis on ZigbeeXian Wang, Shuang HaoCCS 2022 · 被引用 13 次
- Shattered Chain of Trust: Understanding Security Risks in Cross-Cloud IoT Access DelegationBin Yuan, Yan Jia, Luyi Xing, Dongfang Zhao 等USENIX Security 2020
- DroneKey: A Drone-Aided Group-Key Generation Scheme for Large-Scale IoT NetworksDianqi Han, Ang Li, Jiawei Li, Yan Zhang 等CCS 2021 · 被引用 13 次
- Cluster-Based Network Time Synchronization for Resilience with Energy EfficiencyNitin Shivaraman, Patrick Schuster, Saravanan Ramanathan, Arvind Easwaran 等RTSS 2021 · 被引用 7 次
- WBSLT: A Framework for White-Box Encryption Based on Substitution-Linear Transformation CiphersYang Shi, Tianchen Gao, Yimin Li, Jiayao Gao 等NDSS 2026 · 被引用 1 次
