On the security of the ZigBee Light Link touchlink commissioning procedure
نویسندگان
چکیده
Abstract: Specifications of security mechanisms often lack explicit descriptions of the envisioned security goals and the underlying assumptions. This makes it difficult for developers and customers to understand the level of security provided by the systems. Moreover, this omission has repeatedly resulted in practical attacks that violate the implicit security assumptions of the specifications. In this work, we illustrate this effect on the example of the ZigBee Light Link (ZLL) profile, currently one of the most popular standards for smart lighting in domestic environments. We first provide a concise description of ZLL commissioning procedure for initiating and extending a network of smart bulbs, extracted directly from the specification. We then discuss how the commissioning protocol can be transformed into a formal security model, but also highlight where this is subject to interpretations because of the unclear implicit security assumptions. The proposed security model is flexible, i.e., it can be extended to capture further security requirements or attacker classes, and hence provides a solid foundation for rigorous security analyses of ZLL and other ZigBee profiles.
منابع مشابه
The Effect of Radio Waves on the Quality and Safety of Wearable Sensors in Healthcare
The industrial Internet of Things (IoT) is aiming to interconnect humans, machines, materials, processes and services in a network. Wireless Sensor Network (WSN) comprises the less power consuming, light weight and effective Sensor Nodes (SNs) for higher network performance. Radio Frequency Identification (RFID) and sensor networks are both wireless technologies that provide limitless future po...
متن کاملOnm-6: Seeking Security in Surrogacy Motherhood:A Grounded Theory
s:2087:"Background: Surrogacy is one of the scientific revolutions in infertility domain in recent decades. Despite the widespread use of this technique especially surrogacy in Iran, studies about experiences of its clients are rare. Optimal care of commissioning mothers in surrogacy, requires proper understanding the process of motherhood. The aim of this study was exploration of the motherhoo...
متن کاملCommissioning the First Mobile Dedicated Accelerator for Intraoperative Electron Radiotherapy in Iran
Introduction: Intraoperative radiotherapy is a radiotherapy technique in which a high single fraction of radiation dose is delivered to the patient after surgery and Concurrent with anesthesia time. The most frequent method for IORT implementation is Intraoperative electron radiotherapy (IOERT), in which, some dedicated and high dose per pulse electron accelerators are employe...
متن کاملIran and Security Complex in the Persian Gulf
This article enters into the debate on the link between security and identity by looking at the security context in the states surrounding the Persian Gulf, particularly Iran. Earlier scholarly works have approached security and identity separately, but lack a framework that connects them in a single account. The process tracing method offers a scientific approach to connect various notions in ...
متن کاملNetwork Investigation and Performance Analysis of ZigBee Technology using OPNET
Abstract- Communication has become inevitably part of our day to day activities, in academic, business, banking, and other sectors. It has therefore become so important to implement good and efficient communication system. A reference point according to this research is the wireless sensor networking (WSN) system, and most important thing in communication is to be free from interference, attenu...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2016