Skip to main content

NOTICE: Due to a lapse in annual appropriations, most of this website is not being updated. Learn more.

Form submissions will still be accepted but will not receive responses at this time. Sections of this site for programs using non-appropriated funds (such as NVLAP) or those that are excepted from the shutdown (such as CHIPS and NVD) will continue to be updated.

U.S. flag

An official website of the United States government

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

PION: Password-based IoT Onboarding Over Named Data Networking

Published

Author(s)

Davide Pesavento, Junxiao Shi, Kerry McKay, Lotfi Benmohamed

Abstract

While the IoT market continues to grow, securing IoT systems remains a challenge as successful cyberattacks keep escalating. Named Data Networking (NDN) offers a number of advantages over traditional IP-based communications and is considered a promising candidate to revolutionize the IoT space, thanks to its improved scalability and built-in security features. A cornerstone of any NDN IoT network is the onboarding protocol, whose main goal is to bootstrap the cryptographic keys and trust relationships necessary for a newly joining device to securely communicate with the rest of the network. Though several such protocols have been proposed, none so far combines strong security guarantees with ease of use on IoT devices that have highly constrained input/output interfaces. In this paper we introduce a novel password-based onboarding protocol to address this need. In addition to discussing its design, we produce a formalization of the protocol and verify its security properties using an automated analyzer. Finally, we present the results of benchmarking carried out on a proof-of-concept implementation that demonstrates the feasibility of our approach.
Proceedings Title
ICC 2022 - IEEE International Conference on Communications
Conference Dates
May 16-20, 2022
Conference Location
Seoul, KR

Citation

Pesavento, D. , Shi, J. , McKay, K. and Benmohamed, L. (2022), PION: Password-based IoT Onboarding Over Named Data Networking, ICC 2022 - IEEE International Conference on Communications, Seoul, KR, [online], https://doi.org/10.1109/ICC45855.2022.9839088, https://tsapps.nist.gov/publication/get_pdf.cfm?pub_id=932909 (Accessed October 21, 2025)

Issues

If you have any questions about this publication or are having problems accessing it, please contact [email protected].

Created August 11, 2022, Updated November 29, 2022
Was this page helpful?