Skip to main navigation Skip to search Skip to main content

IGCACS-IoD: An Improved Certificate-Enabled Generic Access Control Scheme for Internet of Drones Deployment

  • Ashok Kumar Das
  • , Basudeb Bera
  • , Mohammad Wazid
  • , Sajjad Shaukat Jamal
  • , Youngho Park
  • International Institute of Information Technology Hyderabad
  • Graphic Era
  • King Khalid University

Research output: Contribution to journalArticlepeer-review

37 Scopus citations

Abstract

Due to wide-spread use of the Information and Communications Technology (ICT) and Internet of Things (IoT) enabled smart devices, called unmanned aerial vehicles (UAVs) (popularly known as drones), a lot of potential applications of Internet of Drones (IoD) are available ranging from the military to civilian applications. Access control mechanism is an important potential security service that is needed to secure communication among the drones in their respective flying zones, and also among the drones and the Ground Service Station (GSS). In 2021, Chaudhry et al. proposed a certificate based generic access control scheme for IoD environment, called GCACS-IoD. Their claims about the possible security attacks resistant of GCACS-IoD is not justified. In fact, we first prove that GCACS-IoD is unable to protect the disclosure of the private key rCR of the trusted control room (CR) , which is extremely unfortunate careless design flaw and it leads to compromise the entire network. Using the disclosed private key rCR , we further show that GCACS-IoD is completely insecure against other serious attacks, such as malicious drones deployment attack, drone/GSS impersonation attacks and Ephemeral Secret Leakage (ESL) attack, which lead to compromise the session key between any two drones communicating in a particular flying zone. We thus feel that there is a strong need to remedy such serious weaknesses found in Chaudhry et al.'s GCACS-IoD. An improved certificate-enabled generic access control scheme for IoD deployment, called as i GCACS-IoD, has been suggested, which overcomes the weaknesses found in the previous GCACS-IoD. The practical demonstration of i GCACS-IoD has been done through formal security verification and also through NS2 simulation study.

Original languageEnglish
Article number9456867
Pages (from-to)87024-87048
Number of pages25
JournalIEEE Access
Volume9
DOIs
StatePublished - 2021

Keywords

  • access control
  • cryptanalysis
  • Internet of Drones (IoD)
  • key establishment
  • NS2 simulation
  • security

Fingerprint

Dive into the research topics of 'IGCACS-IoD: An Improved Certificate-Enabled Generic Access Control Scheme for Internet of Drones Deployment'. Together they form a unique fingerprint.

Cite this