Sensors 2013, 13(11), 14888-14917; doi:10.3390/s131114888

PANATIKI: A Network Access Control Implementation Based on PANA for IoT Devices

* email, * email and * email
Received: 25 August 2013; in revised form: 17 October 2013 / Accepted: 21 October 2013 / Published: 1 November 2013
(This article belongs to the Section Sensor Networks)
This is an open access article distributed under the Creative Commons Attribution License which permits unrestricted use, distribution, and reproduction in any medium, provided the original work is properly cited.
Abstract: Internet of Things (IoT) networks are the pillar of recent novel scenarios, such as smart cities or e-healthcare applications. Among other challenges, these networks cover the deployment and interaction of small devices with constrained capabilities and Internet protocol (IP)-based networking connectivity. These constrained devices usually require connection to the Internet to exchange information (e.g., management or sensing data) or access network services. However, only authenticated and authorized devices can, in general, establish this connection. The so-called authentication, authorization and accounting (AAA) services are in charge of performing these tasks on the Internet. Thus, it is necessary to deploy protocols that allow constrained devices to verify their credentials against AAA infrastructures. The Protocol for Carrying Authentication for Network Access (PANA) has been standardized by the Internet engineering task force (IETF) to carry the Extensible Authentication Protocol (EAP), which provides flexible authentication upon the presence of AAA. To the best of our knowledge, this paper is the first deep study of the feasibility of EAP/PANA for network access control in constrained devices. We provide light-weight versions and implementations of these protocols to fit them into constrained devices. These versions have been designed to reduce the impact in standard specifications. The goal of this work is two-fold: (1) to demonstrate the feasibility of EAP/PANA in IoT devices; (2) to provide the scientific community with the first light-weight interoperable implementation of EAP/PANA for constrained devices in the Contiki operating system (Contiki OS), called PANATIKI. The paper also shows a testbed, simulations and experimental results obtained from real and simulated constrained devices.
Keywords: IoT; network access control; PANA; EAP; AAA; light-weight
PDF Full-text Download PDF Full-Text [1131 KB, uploaded 21 June 2014 10:01 CEST]

Export to BibTeX |

MDPI and ACS Style

Sanchez, P.M.; Lopez, R.M.; Skarmeta, A.F.G. PANATIKI: A Network Access Control Implementation Based on PANA for IoT Devices. Sensors 2013, 13, 14888-14917.

AMA Style

Sanchez PM, Lopez RM, Skarmeta AFG. PANATIKI: A Network Access Control Implementation Based on PANA for IoT Devices. Sensors. 2013; 13(11):14888-14917.

Chicago/Turabian Style

Sanchez, Pedro M.; Lopez, Rafa M.; Skarmeta, Antonio F.G. 2013. "PANATIKI: A Network Access Control Implementation Based on PANA for IoT Devices." Sensors 13, no. 11: 14888-14917.

Sensors EISSN 1424-8220 Published by MDPI AG, Basel, Switzerland RSS E-Mail Table of Contents Alert