IKEA Trådfri: IoT done right

A quick look at the Ikea Trådfri lighting platform

From a security perspective, this is pretty close to ideal. Having no remote APIs means that security is limited to what's exposed locally. The local traffic is all encrypted. You can only authenticate with the device if you have physical access to read the (decently long) key off the bottom.
Overall: as far as design goes, this is one of the most secure IoT-style devices I've looked at.

IKEA Trådfri: Internet of Things done right

After almost two weeks of research, we have come to the conclusion that this is going to be the perfect companion hardware to work with Home Assistant.
Conclusion

With Trådfri, IKEA has managed to put out an affordable and secure home automation system that does not compromise on functionality or design. There are still some downsides which I expect to get resolved in the future.
As it currently stands, this is going to be the perfect companion hardware to work with Home Assistant: local, affordable, secure. And as cherry on the pie, local push will make us aware of changes right away.

IKEA TRÅDFRI: A smart light in the darkness of IoT-Security

From the security point of view IKEA built a solid eco system with no real security issues at the technical side.

Hozzászólások

Annyira hatekony mint a trefli okosotthon vagy hogyatokombe hivjak.

Nem mukodik remote csak local Zsenialis: olyan nehez odamenni a kapcsolohoz es lekapcsolni a villanyt...
Ha okosotthonom van akkor tavolrol is akarom kapcsolgatni statuszt nezni beavatkozni akarmi. Ez a lenyege. Ez kb olyan mint a mercikben az elso generacios keyless inditas. Miutan bedugtad a keyless keyt (LOL B+) megnyomhatsz egy gombot hogy elindithasd...

Aztan 2013-ban feltalaltak ugyanezt ugy hogy ne kelljen a csodakulcsot dugdosni (hipp hipp hurra a 2003-as Meganomban mar volt ilyen)

Csak reszben. Pl az igaz marad, hogy nincs egy kulso "ikea cloud" ami nelkul a rendszer eletkeptelen, es ami minden adatot kiszipkaz az "okos" otthonodbol, es amin keresztul pl sebezheto lehet a rendszer.

En pl az otthoni LANon tartom az adatokat (mqtt, raspi) es VPN-en keresztul erem el tavolrol amit kell. Valamivel kevesbe hackelheto mint "barmi mas ami a neten log". Celzott, az adott platformot erinto tamadast tovabbra sem lehet ellene kivulrol elkovetni, elobb a VPN-t es aztan a homeassistantot kell kompromittalni valahogy (vagy barmi mast, amivel integralod otthon).