Packet header support using hybrid security approach for securing trivial file transfer protocol in machine to machine applications / Nur Nabila Mohamed

Mohamed, Nur Nabila (2019) Packet header support using hybrid security approach for securing trivial file transfer protocol in machine to machine applications / Nur Nabila Mohamed. PhD thesis, Universiti Teknologi MARA (UiTM).

Abstract

Trivial File Transfer Protocol (TFTP) is noted as one of the well-known protocols for managing data transfer in Machine to Machine (M2M) constrained embedded system due to its lightweight features and compatibility. However, the protocol provides zero support for data authentication or encryption method, also lacks of access control mechanism and no protection from Man In The Middle (MITM) attack. The security flaw should not be ignored as the attackers can easily access, modify private information and install malicious codes to interrupt the communication especially during data collection and transmission. Here in this thesis study, a feasible hybrid security extension has been incorporated into the protocol combining the Hash-based Message Authentication Code and Diffie Hellman Key Exchange (HMAC-DHKE) to enable key agreement and Advanced Encryption Standard (AES) algorithm to perform data encryption/decryption. Upon achieving the first objective, a reasonable hybrid security mechanism has been identified and ratified to perform the shared secret and data encryption/decryption in TFTP. The proof of concept of the proposed scheme and analysis study are presented to demonstrate that the proposed work can mitigate at least MITM and impersonation attacks.

Metadata

Item Type: Thesis (PhD)
Creators:
Creators
Email / ID Num.
Mohamed, Nur Nabila
2015655648
Contributors:
Contribution
Name
Email / ID Num.
Thesis advisor
Hashim, Habibah
UNSPECIFIED
Subjects: T Technology > TK Electrical engineering. Electronics. Nuclear engineering > Telecommunication > Computer networks. General works. Traffic monitoring > Computer network protocols > TCP/IP (Computer network protocol)
Divisions: Universiti Teknologi MARA, Shah Alam > Faculty of Electrical Engineering
Programme: Doctor of Philosophy (Computer Engineering) – EE950
Keywords: Hybrid security, machine applications, data authentication
Date: 2019
URI: https://ir.uitm.edu.my/id/eprint/82967
Edit Item
Edit Item

Download

[thumbnail of 82967.pdf] Text
82967.pdf

Download (205kB)

Digital Copy

Digital (fulltext) is available at:

Physical Copy

Physical status and holdings:
Item Status:

ID Number

82967

Indexing

Statistic

Statistic details