Remote attestation is a two-party security protocol that aims to detect the presence of malware in a remote untrusted IoT device. In order to perform the attestation, an IoT device typically has to stop the regular operation and perform expensive computations that will consume the battery life of the device. In this paper, we use cloud/fog computing to attest an IoT device in an efficient way. We propose Remote Attestation as a Service (RAaS) which allows even a low-end IoT device to securely offload the attestation process to the cloud. We argue that RAaS allows the clone of the device, securely created in the cloud, to perform the most expensive attestation computations. Our proposed approach could reduce the number of attestation operations running on the real IoT device, saving energy consumption, and reducing the downtime of the usual operation of an IoT device during the execution of remote attestation.

Remote Attestation as a Service for IoT / Conti, M.; Dushku, E.; Mancini, L. V.; Rabbani, M. M.; Ranise, S.. - (2019), pp. 320-325. (Intervento presentato al convegno 6th International Conference on Internet of Things: Systems, Management and Security, IOTSMS 2019 tenutosi a esp nel 2019) [10.1109/IOTSMS48152.2019.8939224].

Remote Attestation as a Service for IoT

Ranise S.
2019-01-01

Abstract

Remote attestation is a two-party security protocol that aims to detect the presence of malware in a remote untrusted IoT device. In order to perform the attestation, an IoT device typically has to stop the regular operation and perform expensive computations that will consume the battery life of the device. In this paper, we use cloud/fog computing to attest an IoT device in an efficient way. We propose Remote Attestation as a Service (RAaS) which allows even a low-end IoT device to securely offload the attestation process to the cloud. We argue that RAaS allows the clone of the device, securely created in the cloud, to perform the most expensive attestation computations. Our proposed approach could reduce the number of attestation operations running on the real IoT device, saving energy consumption, and reducing the downtime of the usual operation of an IoT device during the execution of remote attestation.
2019
2019 6th International Conference on Internet of Things: Systems, Management and Security, IOTSMS 2019
United States
Institute of Electrical and Electronics Engineers Inc.
978-1-7281-2949-5
Conti, M.; Dushku, E.; Mancini, L. V.; Rabbani, M. M.; Ranise, S.
Remote Attestation as a Service for IoT / Conti, M.; Dushku, E.; Mancini, L. V.; Rabbani, M. M.; Ranise, S.. - (2019), pp. 320-325. (Intervento presentato al convegno 6th International Conference on Internet of Things: Systems, Management and Security, IOTSMS 2019 tenutosi a esp nel 2019) [10.1109/IOTSMS48152.2019.8939224].
File in questo prodotto:
Non ci sono file associati a questo prodotto.

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/11572/333144
 Attenzione

Attenzione! I dati visualizzati non sono stati sottoposti a validazione da parte dell'ateneo

Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 4
  • ???jsp.display-item.citation.isi??? 4
social impact