With the rapid development of Cloud-Edge-End(CEE)computing,the demand for secure and lightweight communication protocols is increasingly critical,particularly for latency-sensitive applications such as smart manufactu...With the rapid development of Cloud-Edge-End(CEE)computing,the demand for secure and lightweight communication protocols is increasingly critical,particularly for latency-sensitive applications such as smart manufacturing,healthcare,and real-time monitoring.While traditional cryptographic schemes offer robust protection,they often impose excessive computational and energy overhead,rendering them unsuitable for use in resource-constrained edge and end devices.To address these challenges,in this paper,we propose a novel lightweight encryption framework,namely Dynamic Session Key Allocation with Time-Indexed Ascon(DSKA-TIA).Built upon the NIST-endorsed Ascon algorithm,the DSKA-TIA introduces a time-indexed session key generation mechanism that derives unique,ephemeral keys for each communication round.The scheme supports bidirectional key separation to isolate uplink and downlink data,thereby minimizing the risk of key reuse and compromise.Additionally,mutual authentication is integrated through nonce-based validation and one-time token exchanges,ensuring entity legitimacy and protection against impersonation and replay attacks.We validate the performance of DSKA-TIA through implementation on a resource-constrained microcontroller platform.Results show that our scheme achieves significantly lower latency and computational cost compared to baseline schemes such as AES and standard Ascon.Security analysis demonstrates high entropy in key generation,resistance to brute-force and replay attacks,and robustness against eavesdropping and key compromise.The protocol also exhibits resilience to quantum computing threats by relying on symmetric encryption principles and randomized key selection.Given its efficiency,scalability,and temporal security enhancements,DSKA-TIA is well-suited for real-time,secure communication in heterogeneous CEE environments.Future work will explore post-quantum extensions and deployment in domains such as smart agriculture and edge-based healthcare.展开更多
ASCON是2021年在NIST轻量级认证加密征集方案中最有希望成为国际标准的算法,该算法旨在物联网资源受限环境中获得最佳性能,在公开文献中还未见基于该算法的硬件IP核实现。提出了一种ASCON的软硬件协同实现方法,该方法通过S盒优化、先验...ASCON是2021年在NIST轻量级认证加密征集方案中最有希望成为国际标准的算法,该算法旨在物联网资源受限环境中获得最佳性能,在公开文献中还未见基于该算法的硬件IP核实现。提出了一种ASCON的软硬件协同实现方法,该方法通过S盒优化、先验计算和先进的流水线设计等硬件手段提升了ASCON在物联网安全认证应用中的速度,同时降低了内存占用。作为对比,在常见的物联网嵌入式处理器平台上软件移植了ASCON,结果显示所述方法的速度提升了7.9倍以上,而存储器的占用则降低了至少90%。所述方法可用于物联网安全专用集成电路或片上系统(SoC,system on a chip)的设计和实现。展开更多
文摘With the rapid development of Cloud-Edge-End(CEE)computing,the demand for secure and lightweight communication protocols is increasingly critical,particularly for latency-sensitive applications such as smart manufacturing,healthcare,and real-time monitoring.While traditional cryptographic schemes offer robust protection,they often impose excessive computational and energy overhead,rendering them unsuitable for use in resource-constrained edge and end devices.To address these challenges,in this paper,we propose a novel lightweight encryption framework,namely Dynamic Session Key Allocation with Time-Indexed Ascon(DSKA-TIA).Built upon the NIST-endorsed Ascon algorithm,the DSKA-TIA introduces a time-indexed session key generation mechanism that derives unique,ephemeral keys for each communication round.The scheme supports bidirectional key separation to isolate uplink and downlink data,thereby minimizing the risk of key reuse and compromise.Additionally,mutual authentication is integrated through nonce-based validation and one-time token exchanges,ensuring entity legitimacy and protection against impersonation and replay attacks.We validate the performance of DSKA-TIA through implementation on a resource-constrained microcontroller platform.Results show that our scheme achieves significantly lower latency and computational cost compared to baseline schemes such as AES and standard Ascon.Security analysis demonstrates high entropy in key generation,resistance to brute-force and replay attacks,and robustness against eavesdropping and key compromise.The protocol also exhibits resilience to quantum computing threats by relying on symmetric encryption principles and randomized key selection.Given its efficiency,scalability,and temporal security enhancements,DSKA-TIA is well-suited for real-time,secure communication in heterogeneous CEE environments.Future work will explore post-quantum extensions and deployment in domains such as smart agriculture and edge-based healthcare.
文摘ASCON是2021年在NIST轻量级认证加密征集方案中最有希望成为国际标准的算法,该算法旨在物联网资源受限环境中获得最佳性能,在公开文献中还未见基于该算法的硬件IP核实现。提出了一种ASCON的软硬件协同实现方法,该方法通过S盒优化、先验计算和先进的流水线设计等硬件手段提升了ASCON在物联网安全认证应用中的速度,同时降低了内存占用。作为对比,在常见的物联网嵌入式处理器平台上软件移植了ASCON,结果显示所述方法的速度提升了7.9倍以上,而存储器的占用则降低了至少90%。所述方法可用于物联网安全专用集成电路或片上系统(SoC,system on a chip)的设计和实现。