家电科技 ›› 2021, Vol. 0 ›› Issue (zk): 483-485.doi: 10.19784/j.cnki.issn1672-0172.2021.99.114

• 第五部分 健康适老与智能 • 上一篇    下一篇

智能家用电器网络安全框架及安全问题解析分析

赵燕伟, 李红伟, 冯长卿, 马晓玉, 时雨, 张欣露   

  1. 中家院(北京)检测认证有限公司 北京 100176
  • 发布日期:2021-12-22
  • 作者简介:赵燕伟,硕士。研究方向:网络安全方向。地址:北京市经济技术开发区博兴八路3号。E-mail:zhaoyw@cheari.com。

Intelligent household appliances network security framework and security issues analysis

ZHAOYanwei, LI Hongwei, FENG Changqing, MA Xiaoyu, SHI Yu, ZHANG Xinlu   

  1. CHEARI (Beijing) Certification & Testing Co., Ltd. Beijing 100176
  • Published:2021-12-22

摘要: 随着智能家用电器联网智能化成为主流,智能家电数据接入互联网,并引入了一系列的网络安全问题,例如数据窃听、恶意控制操作、隐私泄漏等,威胁用户的使用安全及个人信息安全。首先介绍智能家用电器的网络通信框架,在此框架下通信分为三端,其中包含云平台服务端、家电设备端、移动控制端(应用程序),针对其绑定场景、身份鉴别、通信保护、we接口安全、权限管理、固件安全及代码安全等存在问题进行分析。其中主要的问题包含通信安全、授权鉴别及密钥分发等。为防止出现安全隐患,信道应保证保密性、完整性、可用性的基本要求,对于用户的访问控制权限做到合理分配,并且整个系统应该有一定的容错性。

关键词: 智能家电, 网络安全, 安全框架, 保密性

Abstract: As the intelligent networking of smart home appliances becomes the mainstream, the data of smart home appliances is connected to the Internet, and a series of network security issues have been introduced, such as data eavesdropping, malicious control operations, and privacy leakage, which threaten user safety and personal information security. First introduce the network communication framework of smart home appliances. Under this framework, communication is divided into three ends, including cloud platform server, home appliance equipment, and mobile control end (application), targeting its binding scenarios, identity authentication scenarios, and communication Analysis of existing problems such as protection, we interface security, rights management, firmware security and code security. The main problems include communication security, authorization authentication, and key distribution. In order to prevent potential safety hazards, the channel should ensure the basic requirements of confidentiality, integrity, and availability, and reasonably allocate user access control permissions, and the entire system should have a certain degree of fault tolerance.

Key words: Intelligent household appliances, Network security, Security framework, Confidentiality

中图分类号: