|
ABSTRACT
Security is critical to a wide range of current and future wireless data applications and services. This paper highlights the challenges posed by the need for security during system architecture design for wireless handsets, and provides an overview of emerging techniques to address them. We focus on the computational requirements for securing wireless data transactions, revealing a gap between these requirements and the trends in processing capabilities of embedded processors used in wireless handsets. We also demonstrate that the use of security protocols causes significant degradation in battery life, a problem that will worsen due to the slow growth in battery capacities. These trends point to a wireless security processing gap that, unless addressed, will impede the deployment of secure high-speed wireless data and multi-media applications. We discuss approaches that are currently being pursued to bridge this gap, including low-complexity cryptographic algorithms, security enhancements to embedded processors, and advanced system architectures for wireless handsets that are enabled by new system-level design methodologies.
REFERENCES
Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.
| |
1
|
U. S. Department of Commerce, The Emerging Digital Economy II. http://www.esa.doc.gov/508/esa/TheEmerging DigitalEconomyII.htm, 1999.
|
| |
2
|
World Wide Web Consortium, The World Wide Web Security FAQ. http://www.w3.org/Security/faq/www-security-faq.html, 1998.
|
| |
3
|
ePaynews - Mobile Commerce Statistics. http://www.epaynews.com/ statistics/mcommstats.html.
|
| |
4
|
|
| |
5
|
|
| |
6
|
|
| |
7
|
|
| |
8
|
Wireless Security Basics. Certicom (http://www.certicom.com/about/pr/wireless_basics.html).
|
 |
9
|
|
| |
10
|
Cellular Digital Packet Data System Specification, Release 1.1. CDPD Forum, Jan. 1995.
|
| |
11
|
European Telecommunication Standard GSM 02.09. Digital Cellular Telecommunications System (Phase 2+): Security Aspects.
|
| |
12
|
C. Brookson, "GSM security: A description of the reasons for security and the techniques," in Proc. IEE Colloqium on Security and Cryptography Applications to Radio Systems, pp. 2/1--2/4, June 1994.
|
| |
13
|
IEEE 802.11 Wireless LAN Standards. IEEE 802.11 Working Group (http://grouper.ieee.org/groups/802/11/).
|
| |
14
|
Bluetooth security white paper. Bluetooth SIG Security Expert Group http://www.bluetooth.com/), Apr. 2002.
|
| |
15
|
Y. Frankel, A. Herzberg, P. A. Karger, H. Krawczyk, C. A. Kunzinger, and M. Yung, "Security issues in a CDPD wireless network," IEEE Personal Communications, vol. 2, pp. 16--27, August 1995.
|
| |
16
|
S. Patel, "Weaknesses of North American wireless authentication protocol," IEEE Personal Communications, vol. 4, pp. 40--44, june 1997.
|
| |
17
|
J. R. Walker, Unsafe at any key size: An analysis of the WEP encapsulation. IEEE document 802.11-00/362 (http://grouper.ieee.org/groups/802/11/Documents/), Oct. 2000.
|
 |
18
|
|
| |
19
|
W. A. Arbaugh, An inductive chosen plaintext attack against WEP/WEP2. IEEE document 802.11-01/230 http://grouper.ieee.org/groups/802/11/Documents/), May 2001.
|
| |
20
|
A. Mehrotra and L. S. Golding, "Mobility and security management in the GSM system and some proposed future improvements," Proceedings of the IEEE, vol. 86, pp. 1480--1497, July 1998.
|
| |
21
|
ISAAC group, U. C. Berkeley, GSM cloning. http://www.isaac.cs.berkeley.edu/isaac/gsm.html.
|
| |
22
|
3GPP Draft Technical Specification 33.102. 3G Security Architecture.
|
| |
23
|
|
| |
24
|
Wireless Application Protocol 2.0 - Technical White Paper. WAP Forum (http://www.wapforum.org/), Jan. 2002.
|
| |
25
|
S. Okazaki, A. Takeshita, and Y. L. Lin, "New trends in mobile phone security," in Proc. RSA Conference http://www.rsasecurity.com/conference/), Apr. 2001.
|
| |
26
|
G. Apostolopoulos, V. Peris, P. Pradhan, and D. Saha, "Securing electronic commerce: Reducing SSL overhead," in IEEE Network, pp. 8--16, July 2000.
|
| |
27
|
|
| |
28
|
|
| |
29
|
D. W. Carman, P. S. Krus, and B. J. Matt, "Constraints and approaches for distributed sensor network security," Tech. Rep. \#00-010, NAI Labs, Network Associates, Inc., Glenwood, MD, Sept. 2000.
|
| |
30
|
|
| |
31
|
D. Boneh, R. DeMillo, and R. Lipton, "On the importance of checking cryptographic protocols for faults," Springer-Verlag Lecture Notes in Computer Science (Proceedings of Eurocrypt'97), vol. 1233, pp. 37--51, 1997
|
| |
32
|
|
| |
33
|
|
| |
34
|
O. Kommerling and M. G. Kuhn, "Design principles for tamper-resistant smartcard processors," in Proc. USENIX Wkshp. on Smartcard Technology(Smartcard '99), pp. 9--20, May 1999.
|
| |
35
|
Intel StrongARM SA-1110 Microprocessor Brief DataSheet. http://www.intel.com/design/strong/datashts/278241.htm.
|
| |
36
|
V. Gupta and S. Gupta, "Experiments in Wireless Internet Security," in Proc. Wireless Communications and Networking Conference, pp. 860--864, Mar. 2002.
|
| |
37
|
N. Potlapally, S. Ravi, A. Raghunathan, and G. Lakshminarayana, "Optimizing Public-Key Encryption for Wireless Clients," in Proc. IEEE Int. Conf. Communications, pp. 1050--1056, May 2002.
|
| |
38
|
|
| |
39
|
J. Wen, M. Severa, W. Zheng, M. Luttrell, and W. Jin, "A Format-Compliant Configurable Encryption Framework for Acess Control of Multimedia," in Proc. Intl. Wkshp. on Multimedia Signal Proc., pp. 435--440, Oct. 2001.
|
| |
40
|
|
| |
41
|
NTRU Communications and Content Security. http://www.ntru.com.
|
| |
42
|
AES Algorithm (Rijndael) Information. http://csrc.nist.gov/encryption/aes/rijndael.
|
| |
43
|
|
| |
44
|
Intel Corp., Enhancing Security Performance through IA-64 Architecture. http://developer.intel.com/design/security/rsa2000/itanium.pdf, 2000.
|
| |
45
|
|
 |
46
|
|
| |
47
|
SmartMIPS. http://www.mips.com.
|
| |
48
|
ARM SecurCore. http://www.arm.com.
|
| |
49
|
OMAP Platform - Overview. Texas Instruments Inc. (http://www.ti.com/sc/omap|).
|
| |
50
|
Reducing the Security Threats to 2.5G and 3G Wireless Applications. Texas Instruments Inc. http://focus.ti.com/pdfs/vf/wireless/securitywhitepaper.pdf).
|
| |
51
|
N. Potlapally, S. Ravi, A. Raghunathan, and G. Lakshminarayana, "Algorithm exploration for efficient public-key security processing on wireless handsets," in Proc. Design, Automation, and Test in Europe (DATE) Designers Forum, pp. 42--46, Mar. 2002.
|
 |
52
|
Srivaths Ravi , Anand Raghunathan , Nachiketh Potlapally , Murugan Sankaradass, System design methodologies for a wireless security processing platform, Proceedings of the 39th conference on Design automation, June 10-14, 2002, New Orleans, Louisiana, USA
[doi> 10.1145/513918.514113]
|
| |
53
|
Xtensa application specific microprocessor solutions - Overview handbook. Tensilica Inc. (http://www.tensilica.com), 2001.
|
| |
54
|
Open SSL Project. http://www.openssl.org.
|
| |
55
|
iPAQ 3870 PDA. Compaq Corp. http://www.compaq.com/products/handhelds/.
|
CITED BY 15
|
|
|
|
|
|
|
|
|
|
|
Srivaths Ravi , Paul Kocher , Ruby Lee , Gary McGraw , Anand Raghunathan, Security as a new dimension in embedded system design, Proceedings of the 41st annual conference on Design automation, June 07-11, 2004, San Diego, CA, USA
|
|
|
|
|
|
Domenico Cotroneo , Almerindo Graziano , Stefano Russo, Security requirements in service oriented architectures for ubiquitous computing, Proceedings of the 2nd workshop on Middleware for pervasive and ad-hoc computing, p.172-177, October 18-22, 2004, Toronto, Ontario, Canada
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
INDEX TERMS
Primary Classification:
C.
Computer Systems Organization
C.2
COMPUTER-COMMUNICATION NETWORKS
C.2.0
General
Subjects:
Security and protection (e.g., firewalls)
Additional Classification:
C.
Computer Systems Organization
C.0
GENERAL
Subjects:
System architectures
C.2
COMPUTER-COMMUNICATION NETWORKS
C.2.1
Network Architecture and Design
Subjects:
Wireless communication
C.5
COMPUTER SYSTEM IMPLEMENTATION
C.5.3
Microcomputers
Subjects:
Portable devices (e.g., laptops, personal digital assistants)
D.
Software
D.4
OPERATING SYSTEMS
D.4.6
Security and Protection
E.
Data
E.3
DATA ENCRYPTION
K.
Computing Milieux
K.6
MANAGEMENT OF COMPUTING AND INFORMATION SYSTEMS
K.6.5
Security and Protection (D.4.6, K.4.2)
General Terms:
Algorithms,
Design,
Performance,
Security
Keywords:
3DES,
AES,
DES,
IPSec,
RSA,
SSL,
WTLS,
decryption,
design methodology,
embedded system,
encryption,
handset,
mobile computing,
performance,
platform,
security,
security processing,
system architecture,
wireless communications
|