PUFSec: Device fingerprint-based security architecture for Internet of Things

So Yeon Park, Sunil Lim, Dahee Jeong, Jungjin Lee, Joon Sung Yang, Hyungjune Lee

Research output: Chapter in Book/Report/Conference proceedingConference contribution

13 Citations (Scopus)


A low-end embedded platform for Internet of Things (IoT) often suffers from a critical trade-off dilemma between security enhancement and computation overhead. We propose PUFSec, a new device fingerprint-based security architecture for IoT devices. By leveraging intrinsic hardware characteristics, we aim to design a computationally lightweight security software system architecture so that complex cryptography computation can dramatically be prohibited. We exploit the innovative idea of Public Physical Unclonable Functions (PPUFs) that fundamentally protects attackers from recovering the secret key from public gate delay information. We implement its hardware logic in a real-world FPGA board. On top of the PPUF fingerprint hardware, we present an adaptive security control mechanism consisting of adaptive key generation and key exchange protocol, which adjusts security strength depending on system load dynamics. We demonstrate that our PPUF FPGA implementation embeds distinctive variability enough to distinguish between two different PPUFs with high fidelity. We validate our PUFSec architecture by implementing necessary algorithms and protocols in a real-world IoT platform, and performing empirical evaluation in terms of computation and memory usages, proving its practical feasibility.

Original languageEnglish
Title of host publicationINFOCOM 2017 - IEEE Conference on Computer Communications
PublisherInstitute of Electrical and Electronics Engineers Inc.
ISBN (Electronic)9781509053360
Publication statusPublished - 2017 Oct 2
Event2017 IEEE Conference on Computer Communications, INFOCOM 2017 - Atlanta, United States
Duration: 2017 May 12017 May 4

Publication series

NameProceedings - IEEE INFOCOM
ISSN (Print)0743-166X


Conference2017 IEEE Conference on Computer Communications, INFOCOM 2017
Country/TerritoryUnited States

Bibliographical note

Funding Information:
ACKNOWLEDGMENT This work was supported by Basic Science Research Program through the National Research Foundation of Korea(NRF) funded by the Ministry of Education (NRF-2015R1D1A1A01057902 and NRF-2015R1D1A1A01058856).

Publisher Copyright:
© 2017 IEEE.

All Science Journal Classification (ASJC) codes

  • Computer Science(all)
  • Electrical and Electronic Engineering


Dive into the research topics of 'PUFSec: Device fingerprint-based security architecture for Internet of Things'. Together they form a unique fingerprint.

Cite this