Baseline functionality for security and control of commodity IoT devices and domain-controlled device lifecycle management
Markus Miettinen, Paul C. van Oorschot, Ahmad-Reza Sadeghi

TL;DR
This paper proposes a foundational framework and protocols for secure device management and key control in commodity IoT environments, addressing onboarding, ongoing management, and decommissioning.
Contribution
It introduces a baseline architecture and illustrative protocols for secure IoT device management, emphasizing the importance of unified key management support.
Findings
Framework architecture for secure IoT device management
Illustrative protocols demonstrating baseline functionality
Highlights the need for efficient key management in IoT
Abstract
The emerging Internet of Things (IoT) drastically increases the number of connected devices in homes, workplaces and smart city infrastructures. This drives a need for means to not only ensure confidentiality of device-related communications, but for device configuration and management---ensuring that only legitimate devices are granted privileges to a local domain, that only authorized agents have access to the device and data it holds, and that software updates are authentic. The need to support device on-boarding, ongoing device management and control, and secure decommissioning dictates a suite of key management services for both access control to devices, and access by devices to wireless infrastructure and networked resources. We identify this core functionality, and argue for the recognition of efficient and reliable key management support---both within IoT devices, and by a…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsAdvanced Malware Detection Techniques · IoT and Edge/Fog Computing · Access Control and Trust
