GOLPMA: GROUP ORIENTED LIGHTWEIGHT PAYLOAD-BASED MUTUAL AUTHENTICATION FOR SECURED IoT COMMUNICATION
Golpma for Secured IoT Communication
DOI:
https://doi.org/10.55766/sujst-2023-05-e01597Keywords:
Internet of Things (IoT), DTLS, CoAP, AES, Payload Encryption, SecurityAbstract
The rise of the Internet of Things (IoT) has increased the emphasis on protecting device communication. The Constrained Application Protocol (CoAP) extensively utilizes Datagram Transport Layer Security (DTLS) to provide end-to-end security; however, DTLS has a high connection overhead. This work presents a new Group Oriented Lightweight Payload-based Mutual Authentication (GOLPMA) mechanism that authenticates clients and servers before permitting communication using the Advanced Encryption Standard (AES). GOLPMA combines and improves essential parts of the CoAP architecture, resulting in a low-overhead, dependable, and computationally efficient alternative to DTLS. The payload-based mutual authentication technique only requires two round-trip message exchanges and restricts the payload of each message to 256 bits. GOLPMA surpasses typical DTLS/CoAP techniques based on throughput, latency, packet delivery ratio, average response time, mean jitter, authentication time and energy consumption in two separate network topologies with 15 and 30 nodes when examined using the Cooja simulator on Contiki OS. The results suggest that GOLPMA could be a safe, low-power replacement for DTLS in IoT applications
References
Abosata, Nasr, Saba Al-Rubaye, and Gokhan Inalhan. (2022). Lightweight Payload Encryption-Based Authentication Scheme for Advanced Metering Infrastructure Sensor Networks. Sensors, 22(2):26.
Alam, T. (2022). Opportunistic Manet And Its Role In Next-Generation Android Iot Networking. Suranaree Journal of Science and Technology, 29(4):16.
Alfandi, Omar, Salam Khanji, Liza Ahmad, and Asad Khattak. (2021). Survey on boosting IoT security and privacy through blockchain: Exploration, requirements, and open issues. Cluster Computing, 24(1):18
Almeghlef, S.M., AL-Ghamdi, A.A.M., Ramzan, M.S., and Ragab, M. (2023). Application Layer-Based Denial-of-Service Attacks Detection against IoT-CoAP. Electronics, 12(12):29
Behal, A., Sandhu, J.K., and Gupta, G. (2023). Using The Cooja Simulator, Analysing The Routing Protocol (RPL) For Low Power And Lossy Networks In IoT. Proceedings of IEEE International Students' Conference on Electrical, Electronics and Computer Science (SCEECS); Feb 18-19, 2023. Bhopal, India. p. 1-4
Bhattacharjya, Aniruddha, Xiaofeng Zhong, Jing-Wang, and Xing Li. (2019). CoAP-application layer connection-less lightweight protocol for the Internet of Things (IoT) and CoAP-IPSEC Security with DTLS Supporting CoAP. Digital twin technologies and smart cities. Maryam, Farsi (EDs). Springer, Switzerland, p.151-175.
Ferreira, A.M.A., Azevedo, L.J.D. M.D., Estrella, J.C., and Delbem, A.C.B. (2023). Case Studies with the Contiki-NG Simulator to Design Strategies for Sensors’ Communication Optimization in an IoT-Fog Ecosystem. Sensors, 23(4):18.
Gunnarsson, Martin, Krzysztof Mateusz Malarski, Rikard Höglund, and Marco Tiloca. (2022). Performance evaluation of group OSCORE for secure group communication in the Internet of Things. ACM Transactions on Internet of Things, 3(3):31.
Helbig, C., Otoum, S., and Jararweh, Y. (2023). Modeling and Evaluation of the Internet of Things Communication Protocols in Security Constrained Systems. Proceedings of IEEE 20th Consumer Communications & Networking Conference (CCNC); Jan 8-11, 2023. Las Vegas, NV, USA. p. 1-6.
Jan, M. A., Khan, F., Alam, M., and Usman, M. (2019). A payload-based mutual authentication scheme for Internet of Things. Future Generation Computer Systems, 92(1):12.
Khan, A.A., Kumar, V., Ahmad, M., and Rana, S. (2021). LAKAF: Lightweight authentication and key agreement framework for smart grid network. Journal of Systems Architecture, 116(c):11.
Kumar, Priyan Malarvizhi, and Usha Devi Gandhi. (2020). Enhanced DTLS with CoAP-based authentication scheme for the internet of things in healthcare application. The Journal of Supercomputing, 76(6):21.
Masadeh, R., Almomani, O., Masadeh, E., and Masa’deh, R.E. (2023). Secure CoAP Application Layer Protocol for the Internet of Things Using Hermitian Curves. In The Effect of Information Technology on Business and Marketing Intelligence Systems. M, Alshurideh (Eds). Springer, Switzerland, p.1,869-1,884.
Masadeh, Raja, Omar Almomani, Esra Masadeh, and Ra’ed Masa’deh. (2023). Secure CoAP Application Layer Protocol for the Internet of Things Using Hermitian Curves. In The Effect of Information Technology on Business and Marketing Intelligence Systems. M, Alshurideh (Eds). Springer, Switzerland, 1,869-1,884.
Naik, Kanchana P., and U. Rakesh Joshi. (2017). Performance analysis of constrained application protocol using Cooja simulator in Contiki OS. Proceedings of 2017 IEEE International Conference on Intelligent Computing, Instrumentation and Control Technologies (ICICICT); Jul 6-7, 2017. Kerala, India. p. 547-550.
Nathi, R.A., and Sutar, D.S. (2019). Embedded payload security scheme using CoAP for IoT device. Proceedings of IEEE International Conference on Vision Towards Emerging Trends in Communication and Networking (ViTECoN); Mar 30-31st; Vellore, India. p. 1-6.
Park, Chang-Seop, and Wang-Seok Park. (2018). A group-oriented DTLS handshake for secure IoT applications. IEEE Transactions on Automation Science and Engineering, 15(4):10.
Park, Chang-Seop. (2020). Security architecture for secure multicast coap applications. IEEE Internet of Things Journal, 7(4):12.
Park, Jiye and Namhi Kang. (2014). Lightweight secure communication for CoAP-enabled internet of things using delegated DTLS handshake. Proceedings of IEEE International conference on information and communication technology convergence (ICTC); Oct 22-24, 2014; Busan. Korea (South). p. 28-33.
PS, Akshatha, Dilip Kumar, S.M., KR, Venugopal. (2022) MQTT Implementations, Open Issues, and Challenges: A Detailed Comparison and Survey. International Journal of Sensors Wireless Communications and Control, 12(8):23.
Raza, S., Seitz, L., Sitenkov, D., and Selander, G. (2016). S3K: Scalable security with symmetric keys-DTLS key establishment for the Internet of Things. IEEE Transactions on Automation Science and Engineering, 13(3):11.
Vorakulpipat, Chalee, Ekkachan Rattanalerdnusorn, Phithak Thaenkaew, and Hoang-Dang -Hai. (2018). Recent challenges, trends, and concerns related to IoT security: An evolutionary study. Proceedings of 20th IEEE International Conference on Advanced Communication Technology (ICACT); Feb 11-14, 2018; Elysian gangchon, Korea (South), 405-410.
Yilmaz, Yildiran, Leonardo Aniello, and Basel Halak. (2021). ASSURE: A hardware-based security protocol for resource-constrained IoT systems.. Journal of Hardware and Systems Security, 5(1):19.








