<?xml-stylesheet type="text/xsl" href="https://community.element14.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>The Basics of IoT Embedded Device Security</title><link>/technologies/internet-of-things/b/blog/posts/the-basics-of-iot-embedded-device-security</link><description>At this week&amp;#39;s Chicago IoT Meetup , Roman Budek of NXP gave a talk on understanding and implementing embedded system security. What follows are the high points of the talk: 1. What makes IoT security unique? The IoT will consists of billion...</description><dc:language>en-US</dc:language><generator>Telligent Community 12</generator><item><title>RE: The Basics of IoT Embedded Device Security</title><link>https://community.element14.com/technologies/internet-of-things/b/blog/posts/the-basics-of-iot-embedded-device-security</link><pubDate>Mon, 30 May 2016 19:02:32 GMT</pubDate><guid isPermaLink="false">93d5dcb4-84c2-446f-b2cb-99731719e767:25347c5e-7e86-4f87-b8a1-bffb060914d3</guid><dc:creator>DAB</dc:creator><slash:comments>0</slash:comments><description>&lt;p&gt;Nice overview of the issues around IOT security.&lt;/p&gt;&lt;p&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;I look at it as an issue where you feel that the raw data is important enough to protect and making your analysis software robust enough to identify when a sensor has been compromised.&lt;/p&gt;&lt;p&gt;You also have the issue of cost to effect.&amp;nbsp; Hackers will go after the big payoff devices, but will probably ignore the run of the mill implementation.&lt;/p&gt;&lt;p&gt;It&amp;#39;s an issue of what do you get for your effort.&amp;nbsp; So you can cause a house to over heat, so what, it annoys people, but what did it get YOU?&lt;/p&gt;&lt;p&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;So I understand the encryption angle for sensitive applications, but there will be a lot of IOT that is just not worth hacking.&lt;/p&gt;&lt;p&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;DAB&lt;/p&gt;&lt;img src="https://community.element14.com/aggbug?PostID=1519&amp;AppID=27&amp;AppType=Weblog&amp;ContentType=0" width="1" height="1"&gt;</description></item><item><title>RE: The Basics of IoT Embedded Device Security</title><link>https://community.element14.com/technologies/internet-of-things/b/blog/posts/the-basics-of-iot-embedded-device-security</link><pubDate>Mon, 30 May 2016 18:24:31 GMT</pubDate><guid isPermaLink="false">93d5dcb4-84c2-446f-b2cb-99731719e767:25347c5e-7e86-4f87-b8a1-bffb060914d3</guid><dc:creator>e14 Contributor</dc:creator><slash:comments>0</slash:comments><description>&lt;p&gt;Agree with &lt;span&gt;[mention:9096439d3a464e28836f5e90621862d3:e9ed411860ed4f2ba0265705b8793d05]&lt;/span&gt; that we typically use the public/private key pair for periodic key exchange of a symmetric working key set; the payload data is subsequently protected with the working key.&amp;nbsp; Using a public/private key for an extensive conversation between two end points is too slow and resource-hungry.&lt;/p&gt;&lt;p&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Regarding #11, B) Encrypted messages:&lt;/p&gt;&lt;p&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;&amp;quot;Cons: Enabling encryption reduces payload size&amp;quot;&lt;/p&gt;&lt;p&gt;This is not necessarily true.&amp;nbsp; Assuming that a symmetric key-set was used for encryption, it might cause an increased message size to hold the encrypted payload compared to a clear-text equivalent.&amp;nbsp; Perhaps this just needs a bit more explanation.&lt;/p&gt;&lt;p&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;&amp;quot;Cons: Takes time to decrypt the message before it can be used&amp;quot;&lt;/p&gt;&lt;p&gt;It takes time and resources on both sides (transmitter and receiver) to process data cryptographically.&lt;/p&gt;&lt;img src="https://community.element14.com/aggbug?PostID=1519&amp;AppID=27&amp;AppType=Weblog&amp;ContentType=0" width="1" height="1"&gt;</description></item><item><title>RE: The Basics of IoT Embedded Device Security</title><link>https://community.element14.com/technologies/internet-of-things/b/blog/posts/the-basics-of-iot-embedded-device-security</link><pubDate>Sun, 29 May 2016 23:10:47 GMT</pubDate><guid isPermaLink="false">93d5dcb4-84c2-446f-b2cb-99731719e767:25347c5e-7e86-4f87-b8a1-bffb060914d3</guid><dc:creator>clem57</dc:creator><slash:comments>0</slash:comments><description>&lt;p&gt;Just a point here: usually a string is encoded with a symmetric key which in turn is encrypted with a public-private key asymmetrically which would be a hybrid system.&lt;/p&gt;&lt;p&gt;Clem &lt;/p&gt;&lt;img src="https://community.element14.com/aggbug?PostID=1519&amp;AppID=27&amp;AppType=Weblog&amp;ContentType=0" width="1" height="1"&gt;</description></item></channel></rss>