Skip to Main Content (Press Enter)

Logo UNIRC
  • ×
  • Home
  • Corsi
  • Insegnamenti
  • Professioni
  • Persone
  • Pubblicazioni
  • Strutture
  • Attività
  • Competenze

UNI-FIND
Logo UNIRC

|

UNI-FIND

unirc.it
  • ×
  • Home
  • Corsi
  • Insegnamenti
  • Professioni
  • Persone
  • Pubblicazioni
  • Strutture
  • Attività
  • Competenze
  1. Pubblicazioni

MQTT-I: Achieving End-to-End Data Flow Integrity in MQTT

Articolo
Data di Pubblicazione:
2024
Citazione:
MQTT-I: Achieving End-to-End Data Flow Integrity in MQTT / Buccafurri, F., De Angelis, V., Lazzaro, S.. - In: IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING. - ISSN 1545-5971. - 21:5(2024), pp. 4717-4734. [10.1109/TDSC.2024.3358630]
Abstract:
MQTT has become the de facto standard in the IoT. Although standard MQTT lacks built-in security features, several proposals have been made to address this gap. Unfortunately, no existing proposal aims to offer end-to-end data flow integrity in the threat model of untrusted broker. Consider that, the broker has a privileged role, since it is in the middle of communication between publishers and subscribers. Our paper attempts to bridge this gap by introducing a new protocol called MQTT-I, which achieves end-to-end data flow integrity. Our solution is inspired by approaches based on Merkle Hash Trees, commonly used in the context of outsourced data to guarantee data integrity. Our solution aligns with the specific nature of MQTT, in which: (1) publishers and subscribers dynamically join and leave the system, (2) the decoupling principle holds, meaning that publishers and subscribers do not establish any form of agreement, and (3) data, whose integrity should be protected, are multi-topic streams. Moreover, the proposed solution allows us to find the right balance between performance and security. We perform both theoretical and experimental analysis to demonstrate that the introduced security features come with an acceptable overhead in terms of computational and energy cost.
Tipologia CRIS:
1.1 Articolo in rivista
Elenco autori:
Buccafurri, Francesco; De Angelis, Vincenzo; Lazzaro, Sara
Autori di Ateneo:
BUCCAFURRI Francesco
LAZZARO SARA
Link alla scheda completa:
https://iris.unirc.it/handle/20.500.12318/142287
Link al Full Text:
https://iris.unirc.it//retrieve/handle/20.500.12318/142287/338113/Buccafurri_2024_TDSC_MQTT-I_Post.pdf
Pubblicato in:
IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING
Journal
  • Dati Generali

Dati Generali

URL

https://ieeexplore.ieee.org/document/10414186
  • Utilizzo dei cookie

Realizzato con VIVO | Designed by Cineca | 26.6.0.0