|
ABSTRACT
In this paper we describe the protection goals and mechanisms in HomePlug AV, a next-generation power-line communications standard. This is a fascinating case-history in security usability. There are also novel protocol issues; interactions with mechanisms at other layers; and opportunities for both researchers and third-party vendors to build on the mechanisms provided. The central problem -- being sure whether a device being enrolled in the network is the device you think, not a similar one nearby -- is not well solved by conventional mechanisms such as public-key infrastructures, but appears to require either very old-fashioned or very novel approaches.
REFERENCES
Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.
| |
1
|
Brown, P. A., "Power line communications -- past, present, and future", Proceedings of International Symposium on Power-line Communications and its Applications, Sept 1999, pp. 1--8
|
| |
2
|
Lee, M. K., R. Newman, H. A. Latchman, S. Katar, and L. Yonge, "HomePlug 1.0 Powerline Communication LANs -- Protocol Description and Comparative Performance Results", International Journal on Communication Systems on Powerline Communications, May 2003, pp 447--473
|
| |
3
|
HomePlug Powerline Alliance, "HomePlug AV 1.0 Specification," December 16, 2005 (visit http://www.homeplug.org)
|
| |
4
|
HomePlug Powerline Alliance, "HomePlug AV White Paper," August 18, 2005 (last read May 25, 2006, at http://www.homeplug.org/en/docs/HPAV-White-Paper_050818.pdf)
|
| |
5
|
Afkhamie, K. H., S. Katar, L. Yonge, and R. Newman, "An Overview of the upcoming HomePlug AV Standard," proceedings of International Symposium on Powerline Communications (ISPLC 2005), Vancouver, BC, 2005, pp. 400--404..
|
| |
6
|
Katar, S., R. Newman, H. Latchman, and L. Yonge, 'Efficient Framing and ARQ for High-Speed PLC Systems', proceedings of International Symposium on Powerline Communications (ISPLC 2005), Vancouver, BC, 2005, pp. 27--31.
|
| |
7
|
W. David Gardner, "Wireless Survey: Many Nets Open To Security Breaches", Information Week, Mar 10, 2005, see http://www.informationweek.com/story/showArticle.jhtml?articleID=159400875.
|
| |
8
|
Prasad, R., van New, R., 'OFDM Wireless Multimedia Communications', Artech House, Norwood, MA, 2000.
|
| |
9
|
X.509, The Directory -- Authentication Framework. CCITT, ITU-T, 1988; the IETF version is available as 'Internet X.509 Public Key Infrastructure Certificate and Certificate Revocation List (CRL) Profile' at http://www.ietf.org/rfc/rfc3280.txt
|
| |
10
|
|
| |
11
|
D. Richardson, 'Techniques and Equipment of Electronic Warfare', Salamander Books, ISBN 0-8601-265-8.
|
| |
12
|
|
| |
13
|
RSA Labs, PKCS #5 v2.0 standard, Password-based Cryptography Standard.
|
| |
14
|
FIPS 180--2, NIST, "Secure Hash Standard," August 26, 2002, (including the change notice dated February 25, 2004. concerning truncation)
|
| |
15
|
|
| |
16
|
J. Barros, MRD Rodrigues, "Secrecy Capacity of Wireless Channels", IEEE Symposium on Information Theory 2006
|
| |
17
|
Buffalo Technology, "AirStation OneTouch Secure System (AOSS)," white paper, Oct. 2004, (last read May 24, 2006 at http://www.buffalotech.com/documents/pdf/AOSS_WP_Final.pdf)
|
| |
18
|
Broadcom, Securing Home Wi-Fi Networks: A Simple Solution Can Save Your Identity," white paper Wireless-WP200-x, May 21, 2005, (last read May 25, 2006, at http://www.54g.org/pdf/Wireless-WP200-RDS.pdf)
|
| |
19
|
Moran, Joseph, "Push-Button Wireless Security," Small Business Computing.com Web Management ezine, December 2, 2005 (last read May 24, 2006 at http:smallbusinesscomputing.com/webmaster/article.php/356 7981).
|
| |
20
|
|
| |
21
|
Bowman, Barb, "Set up a secure wireless network using Windows Connect Now," Microsoft XP ezine, June 13, 2005, (last read May 25, 2006, at http://www.microsoft.com/windowsxp/using/networking/learnmore/bowman 05june13.mspx)
|
| |
22
|
Alladin, "Make Your Token Authentication Solution a Reality with a Token Management System," white paper WP_eToken_TMS, March 1, 2006, (last read May 25, 2006, at ftp://ftp.aladdin.com/pub/marketing/eToken/White_Papers/WP_eTo ken_TMS.pdf)
|
| |
23
|
Harold, Peter, "Close up and in the Comfort Zone," Philips Password, issue 24, Sept. 2005, (last read May 25, 2006, at http://www.research.philips.com/password/archive/24/downloads/password24.pdf)
|
| |
24
|
Sony, Felica product site, (May 25, 2006) http:/www.sony.net/Products/felica/index.html.
|
| |
25
|
ISO, ISO/IEC 21092 Standard -- Near Field Communication -- Interface and Protocol (NFCIP-1) http://www.iso.org/iso/en/CatalogueDetailPage.CatalogueDetail?CS NUMBER=38578&ICSI=35&ICS2=100&ICS3=10 or download at http://isotc.iso.org/livelink/livelink/fetch/2000/2489/Ittf_Home/PubliclyAvailableStandards.htm.
|
| |
26
|
RFID Journal FAQ, "Privacy and Data Collection," http://www.rfidjournal.com/faq/28/138
|
|