Evaluating IP security on lightweight hardware
dc.contributor | Aalto-yliopisto | fi |
dc.contributor | Aalto University | en |
dc.contributor.advisor | Gurtov, Andrei | |
dc.contributor.author | Khurri, Andrey | |
dc.contributor.department | Tietotekniikan laitos | fi |
dc.contributor.department | Department of Computer Science and Engineering | en |
dc.contributor.school | Perustieteiden korkeakoulu | fi |
dc.contributor.supervisor | Ylä-Jääski, Antti | |
dc.date.accessioned | 2012-08-29T09:58:50Z | |
dc.date.available | 2012-08-29T09:58:50Z | |
dc.date.issued | 2011 | |
dc.description.abstract | TCP/IP communications stack is being increasingly used to interconnect mobile phones, PDAs, sensor motes and other wireless embedded devices. Although the core functionality of communications protocols has been successfully adopted to lightweight hardware from the traditional Internet and desktop computers, suitability of strong security mechanisms on such devices remains questionable. Insufficient processor, memory and battery resources, as well as constraints of wireless communications limit the applicability of many existing security protocols that involve computationally intensive operations. Varying capabilities of devices and application scenarios with different security and operational requirements complicate the situation further and call for agile and flexible security systems. This study does an empirical evaluation of applicability of selected existing IP security mechanisms to lightweight (resource-constrained) devices. In particular, we evaluate various components of the Host Identity Protocol (HIP), standardized by the Internet Engineering Task Force for achieving authentication, shared key negotiation, secure mobility and multihoming and, if used with IPsec, integrity and confidentiality of user data. Involving a set of cryptographic operations, HIP might easily stress a lightweight client, while affecting performance of applications running on it and shortening battery lifetime of the device. We present a background and related work on network-layer security, as well as a set of measurement results of various security components obtained on devices representing lightweight hardware: embedded Linux PDAs, Symbian-based smartphones, OpenWrt Wi-Fi access routers and wireless sensor platforms. To improve computational and energy efficiency of HIP, we evaluate several lightweight mechanisms that can substitute standard protocol components and provide a good trade-off between security and performance in particular application scenarios. We describe cases where existing HIP security mechanisms (i) can be used unmodified and (ii) should be tailored or replaced to suit resource-constrained environments. The combination of presented security components and empirical results on their applicability can serve as a reference framework for building adaptable and flexible security services for future lightweight communication systems. | en |
dc.format.extent | Verkkokirja (1566 KB, 150 s.) | |
dc.format.mimetype | application/pdf | |
dc.identifier.isbn | 978-952-60-4005-9 (PDF) | |
dc.identifier.isbn | 978-952-60-4004-2 (printed) | #8195; |
dc.identifier.issn | 1799-4942 | |
dc.identifier.uri | https://aaltodoc.aalto.fi/handle/123456789/4915 | |
dc.identifier.urn | URN:ISBN:978-952-60-4005-9 | |
dc.language.iso | en | en |
dc.publisher | Aalto University | en |
dc.relation.ispartofseries | Aalto University publication series DOCTORAL DISSERTATIONS , 2/2011 | en |
dc.subject.keyword | Host Identity Protocol | en |
dc.subject.keyword | IP security | en |
dc.subject.keyword | cryptography | en |
dc.subject.keyword | performance | en |
dc.subject.keyword | resource-constrained devices | en |
dc.subject.keyword | mobile Internet | en |
dc.subject.other | Computer science | |
dc.subject.other | Telecommunications engineering | |
dc.title | Evaluating IP security on lightweight hardware | en |
dc.type | G4 Monografiaväitöskirja | fi |
dc.type.dcmitype | text | en |
dc.type.ontasot | Väitöskirja (monografia) | fi |
dc.type.ontasot | Doctoral dissertation (monograph) | en |
local.aalto.digiauth | ask | |
local.aalto.digifolder | Aalto_66325 |
Files
Original bundle
1 - 1 of 1
No Thumbnail Available
- Name:
- isbn9789526040059.pdf
- Size:
- 1.49 MB
- Format:
- Adobe Portable Document Format