End-to-End Encrypted Message Distribution System for the Internet of Things Based on Conditional Proxy Re-Encryption.

HiveMQ conditional proxy re-encryption end-to-end encryption internet of things message broker

Journal

Sensors (Basel, Switzerland)
ISSN: 1424-8220
Titre abrégé: Sensors (Basel)
Pays: Switzerland
ID NLM: 101204366

Informations de publication

Date de publication:
10 Jan 2024
Historique:
received: 29 11 2023
revised: 01 01 2024
accepted: 02 01 2024
medline: 23 1 2024
pubmed: 23 1 2024
entrez: 23 1 2024
Statut: epublish

Résumé

In light of the existing security vulnerabilities within IoT publish-subscribe systems, our study introduces an improved end-to-end encryption approach using conditional proxy re-encryption. This method not only overcomes limitations associated with the reliance on a trusted authority and the challenge of reliably revoking users in previous proxy re-encryption frameworks, but also strengthens data privacy against potential collusion between the broker and subscribers. Through our innovative encryption protocol, unauthorized re-encryption by brokers is effectively prevented, enhancing secure communication between publisher and subscriber. Implemented on HiveMQ, an open-source MQTT platform, our prototype system demonstrates significant enhancements. Comparison to the state-of-the-art end-to-end encryption work, encryption overhead of our scheme is comparable to it, and the decryption cost is approximately half of it. Moreover, our solution significantly improves overall security without compromising the asynchronous communication and decentralized authorization foundational to the publish-subscribe model.

Identifiants

pubmed: 38257530
pii: s24020438
doi: 10.3390/s24020438
pii:
doi:

Types de publication

Journal Article

Langues

eng

Sous-ensembles de citation

IM

Auteurs

Shi Lin (S)

School of Cryptographic Engineering, Engineering University of PAP, Xi'an 710000, China.

Li Cui (L)

School of Information and Communication, National University of Defense Technology, Wuhan 430000, China.

Niu Ke (N)

School of Cryptographic Engineering, Engineering University of PAP, Xi'an 710000, China.

Classifications MeSH