About | Contact Us | Register | Login
ProceedingsSeriesJournalsSearchEAI
Security and Privacy in Communication Networks. 16th EAI International Conference, SecureComm 2020, Washington, DC, USA, October 21-23, 2020, Proceedings, Part II

Research Article

COOB: Hybrid Secure Device Pairing Scheme in a Hostile Environment

Download(Requires a free EAI acccount)
2 downloads
Cite
BibTeX Plain Text
  • @INPROCEEDINGS{10.1007/978-3-030-63095-9_27,
        author={Sameh Khalfaoui and Jean Leneutre and Arthur Villard and Jingxuan Ma and Pascal Urien},
        title={COOB: Hybrid Secure Device Pairing Scheme in a Hostile Environment},
        proceedings={Security and Privacy in Communication Networks. 16th EAI International Conference, SecureComm 2020, Washington, DC, USA, October 21-23, 2020, Proceedings, Part II},
        proceedings_a={SECURECOMM PART 2},
        year={2020},
        month={12},
        keywords={Internet of Things Security Secure device pairing Out-of-band channel Context-based pairing Formal methods},
        doi={10.1007/978-3-030-63095-9_27}
    }
    
  • Sameh Khalfaoui
    Jean Leneutre
    Arthur Villard
    Jingxuan Ma
    Pascal Urien
    Year: 2020
    COOB: Hybrid Secure Device Pairing Scheme in a Hostile Environment
    SECURECOMM PART 2
    Springer
    DOI: 10.1007/978-3-030-63095-9_27
Sameh Khalfaoui1,*, Jean Leneutre2, Arthur Villard1, Jingxuan Ma1, Pascal Urien2
  • 1: EDF R&D, 7 Boulevard Gaspard Monge
  • 2: LTCI, Télécom Paris
*Contact email: sameh.khalfaoui@edf.fr

Abstract

Due to the scalability limitations, the secure device pairing of Internet of Things objects cannot be efficiently conducted based on traditional cryptographic techniques using a pre-shared security knowledge. The use of Out-of-Band (OoB) channels has been proposed as a way to authenticate the key establishment process but they require a relatively long time and an extensive user involvement to transfer the authentication bits. However, the context-based schemes exploit the randomness of the ambient environment to extract a common secret without an extensive user intervention under the requirement of having a secure perimeter during the extraction phase, which is considered as a strong security assumption.

In this paper, we introduce a novel hybrid scheme, called COOB, that efficiently combines a state-of-the-art fast context-based encoder with our Out-of-Band based scheme. This protocol exploits a nonce exponentiation to achieve the temporary secrecy goal needed for the authentication. Our method provides security against an attacker that can violate the secure perimeter requirement, which is not supported by the existing contextual schemes. This security improvement has been formally validated in the symbolic model using the TAMARIN prover. Based on our implementation of the Out-of-Band channel, COOB enhances the usability by reducing the pairing time up to(39\%)for an 80-bit OoB exchange while keeping an optimal protocol cost.

Keywords
Internet of Things Security Secure device pairing Out-of-band channel Context-based pairing Formal methods
Published
2020-12-12
Appears in
SpringerLink
http://dx.doi.org/10.1007/978-3-030-63095-9_27
Copyright © 2020–2025 ICST
EBSCOProQuestDBLPDOAJPortico
EAI Logo

About EAI

  • Who We Are
  • Leadership
  • Research Areas
  • Partners
  • Media Center

Community

  • Membership
  • Conference
  • Recognition
  • Sponsor Us

Publish with EAI

  • Publishing
  • Journals
  • Proceedings
  • Books
  • EUDL