Passer à la navigation principale Passer à la recherche Passer au contenu principal

Revisiting Multi-Factor Authentication Token Cybersecurity: A TLS Identity Module Use Case

  • Pascal Urien

Résultats de recherche: Le chapitre dans un livre, un rapport, une anthologie ou une collectionContribution à une conférenceRevue par des pairs

Résumé

Multi-factor authentication (MFA) procedures are widely used by digital systems. There are usually performed by hardware tokens comprising a microcontroller and an USB interface. The security level is increased by computing cryptographic procedures in secure elements such as smartcards. Authenticity of MFA token is a critical topic since hardware or software components may be cloned or modified, for example through supply chain. Due to industrial competition cyber security aspects of MFA token are not generally in the public domain, and therefore somewhat relies on security by obscurity (SbO). In this paper we present an original MFA token built with open hardware (Arduino) and javacard, which realizes a TLS pre-shared-key identity module (TLS-IM). The microcontroller is authenticated by SRAM dynamic PUF features, its software is checked by attestation procedure based on the bijective MAC time stamped algorithm. The javacard application is authenticated by PKI means, and manages a TLS-PSK channel for remote administration.

langue originaleAnglais
titre2024 International Conference on Computing, Networking and Communications, ICNC 2024
EditeurInstitute of Electrical and Electronics Engineers Inc.
Pages33-38
Nombre de pages6
ISBN (Electronique)9798350370997
Les DOIs
étatPublié - 1 janv. 2024
Modification externeOui
Evénement2024 International Conference on Computing, Networking and Communications, ICNC 2024 - Big Island, États-Unis
Durée: 19 févr. 202422 févr. 2024

Série de publications

Nom2024 International Conference on Computing, Networking and Communications, ICNC 2024

Une conférence

Une conférence2024 International Conference on Computing, Networking and Communications, ICNC 2024
Pays/TerritoireÉtats-Unis
La villeBig Island
période19/02/2422/02/24

Empreinte digitale

Examiner les sujets de recherche de « Revisiting Multi-Factor Authentication Token Cybersecurity: A TLS Identity Module Use Case ». Ensemble, ils forment une empreinte digitale unique.

Contient cette citation