Browse > Article
http://dx.doi.org/10.33778/kcsa.2021.21.1.055

Security Improvement of User Authentication Protocol for Heterogeneous Wireless Sensor Networks for the Internet of Things Environment  

Lee, Young sook (호원대학교 IT소프트웨어보안학과)
Publication Information
Abstract
Recently, the use of sensor devices is gradually increasing. As various sensor device emerge and the related technologies advance, there has been a dramatic increase in the interest in heterogeneous wireless sensor networks (WSNs). While sensor device provide us many valuable benefits, automatically and remotely supported services offered and accessed remotely through WSNs also exposes us to many different types of security threats. Most security threats were just related to information leakage and the loss of authentication among the involved parties: users, sensors and gateways. An user authentication protocol for wireless sensor networks is designed to restrict access to the sensor data only to user. In 2019, Chen et al. proposed an efficient user authentication protocol. However, Ryu et al. show that it's scheme still unstable and inefficient. It cannot resist offline password guessing attack and session key attack. In this paper, we propose an improved protocol to overcome these security weaknesses by storing secret data in device. In addition, security properties like session-key security, perfect forward secrecy, known-key security and resistance against offline password attacks are implied by our protocol.
Keywords
User Authentication Protocol; Heterogeneous; Off-line Password guessing attack; Session Key;
Citations & Related Records
연도 인용수 순위
  • Reference
1 J. Ryu, H. kim, Y. Lee, D. Won, "Cryptanalysis of protocol for Heterogenous of the Internet of Thihs Environment", IMCOM 2020, Taichung, Taiwan, pp. 1-4, 2020.
2 Y. Lee, "Security Enhancement to an Biometric Authentication Protocol for WSN Environment", Convergence Security Journal, 16(6), 83-88, 2016.
3 Das, M. Two-factor user authentication in wireless sensor networks. IEEE Trans. Wirel. Commun. 2009, 8, 1086-1090, 2009.
4 B. Vaidya, M. Chen, J. J. Rodrigues, "Improved robust user authentication scheme for wireless sensor networks," In 2009 Fifth International Conference on Wireless Communication and Sensor Networks (WCSN), pp. 1-6, IEEE, 2009.
5 J. Nam, M. Kim, J. Paik, Y. Lee, D. Won, "A Provably-Secure ECC-Based Authentication Scheme for Wireless Sensor Networks", Sensors, 14, pp. 21023-21044, 2014.   DOI
6 Y. Lee, "Security Improvement to a Remote User Authentication Scheme for Multi-Server Environment", The Korea-Society of Digital Industry& Information Management, 7(4), 23-30, 2011.
7 Y. Chen, J. S. Chou, H. S. Wu, "Improved on an efficient user authentication scheme for heterogeneous wireless sensor network tailored for the Internet of Things environment," Journal of Engineering Technology, 8(1), pp. 143-157, 2019.
8 K. H. Wong, Y. Zheng, J. Cao, S. Wang, "A dynamic user authentication scheme for wireless sensor networks," In IEEE International Conference on Sensor Networks, Ubiquitous, and Trustworthy Computing (SUTC'06), 1(8), 2006.
9 Rawat, P.; Singh, K.; Chaouchi, H.; Bonnin, J. Wireless sensor networks: A survey on recent developments and potential synergies. J. Supercomput. 68, 1-48, 2014.   DOI
10 Y. Faye, I. Niang, H. Guyennet, "A user authentication-based probabilistic risk approach for Wireless Sensor Networks," In 2012 International Conference on Selected Topics in Mobile and Wireless Networking, IEEE, pp. 124-129, 2012.
11 J. Ryu, H. Lee, H. Kim, D. Won, "Secure and Efficient Three-Factor Protocol for Wireless Sensor Networks," Sensors, 18(12), 4481, 2018.   DOI
12 B. Vaidya, J. S Silva, J. J. Rodrigues, "Robust dynamic user authentication scheme for wireless sensor networks," In Proceedings of the 5th ACM symposium on QoS and security for wireless and mobile networks, pp. 88-91, 2009.
13 Kumar, P.; Choudhury, A.; Sain, M.; Lee, S.; Lee, H. RUASN: A robust user authentication framework for wireless sensor networks. Sensors, 11, 5020-5046, 2011.   DOI
14 Khan, M.; Kumari, S. An improved user authentication protocol for healthcare services via wireless medical sensor networks. Int. J. Distrib. Sens. Netw. 2014, 2014, No. 347169, 2014.