Overview
ISO/IEC 29180:2012 - "Security framework for ubiquitous sensor networks" defines a security architecture, threat models, and functional requirements for ubiquitous sensor networks (USNs). A USN typically comprises large numbers of sensor nodes, a base station/gateway, and an application server. The standard describes security threats across the sensor, IP and application domains, categorizes security technologies by function and location in the USN security model, and lists mandatory, recommended and optional security functions.
Key technical topics and requirements
ISO/IEC 29180 organizes security guidance around practical functions and threats:
- Threat models and security model: Threats in sensor networks and IP networks, plus a unified USN security model.
- Key management and key establishment: Secure procedures for pair-wise, group-wise and bootstrapped keys (Annex A).
- Authenticated broadcast: Mechanisms for trustworthy multicast/broadcast in constrained nodes (Annex B describes µTPC schemes).
- Secure data aggregation: Techniques to preserve integrity of aggregated sensor data and detect malicious aggregators (Annex D).
- Data freshness and replay protection: Requirements to prevent reuse of old sensor messages.
- Sensor node authentication and authorization: Methods for ensuring node identity and secure access control (Annex C covers several authentication mechanisms).
- Tamper-resistance and cryptographic module guidance: Use of tamper-resistant modules to protect keys and credentials.
- USN middleware and IP network security: Interfaces between sensor networks and application servers; interaction with IP-domain security.
- Privacy protection and intrusion detection: Requirements to protect personal and contextual information and detect anomalies.
- Functional requirements classification: Mandatory, recommended and optional security functions tailored to USN constraints.
Practical applications and users
ISO/IEC 29180 is intended for:
- IoT / USN architects and system designers building large-scale sensor deployments (smart cities, environmental monitoring, industrial sensing).
- Security engineers and integrators implementing key management, authentication, aggregation integrity and gateway security.
- Product developers of low-power sensor nodes, gateways and USN middleware seeking interoperable security baselines.
- Standards adopters and compliance teams mapping system security to international best practices.
Practical benefits include guidance to reduce threats like node compromise, data tampering, replay attacks and privacy leakage while respecting resource constraints of sensor hardware.
Related standards
- ITU‑T Rec. X.1311 (identical text)
- ITU‑T X.800 / ISO/IEC 7498‑2 (security architecture)
- ITU‑T X.805 / ISO/IEC 18028‑2 (network security architecture)
- ITU‑T Y.2221 (USN requirements), FIPS 140‑2 (cryptographic module requirements)
Use ISO/IEC 29180:2012 as a reference when designing secure, privacy-aware ubiquitous sensor networks that bridge constrained devices and IP-based services.