Towards Activity-Centric Access Control for Smart Collaborative Ecosystems

被引:26
作者
Gupta, Maanak [1 ]
Sandhu, Ravi [2 ,3 ]
机构
[1] Tennessee Technol Univ, Dept Comp Sci, Cookeville, TN 38505 USA
[2] Univ Texas San Antonio, Inst Cyber Secur, San Antonio, TX USA
[3] Univ Texas San Antonio, NSF C SPECC Ctr, Dept Comp Sci, San Antonio, TX USA
来源
PROCEEDINGS OF THE 26TH ACM SYMPOSIUM ON ACCESS CONTROL MODELS AND TECHNOLOGIES, SACMAT 2021 | 2021年
关键词
Smart Connected Ecosystems; Security and Privacy; Activity-Centric Access Control; IoT; Collaborative Systems; CHALLENGES; INTERNET;
D O I
10.1145/3450569.3463559
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The ubiquitous presence of smart devices along with advancements in connectivity coupled with the elastic capabilities of cloud and edge systems have nurtured and revolutionized smart ecosystems. Intelligent, integrated cyber-physical systems offer increased productivity, safety, efficiency, speed and support for data driven applications beyond imagination just a decade ago. Since several connected devices work together as a coordinated unit to ensure efficiency and automation, the individual operations they perform are often reliant on each other. Therefore, it is important to control what functions or activities different devices can perform at a particular moment of time, and how they are related to each other. It is also important to consider additional factors such as conditions, obligation or mutability of activities, which are critical in deciding whether or not a device can perform a requested activity. In this paper, we take an initial step to propose and discuss the concept of Activity-Centric Access Control (ACAC) for smart and connected ecosystem. We discuss the notion of activity with respect to the collaborative and distributed yet integrated systems and identify the different entities involved along with the important factors to make an activity control decision. We outline a preliminary approach for defining activity control expressions which can be applied to different smart objects in the system. The main goal of this paper is to present the vision and need for the activity-centric approach for access control in connected smart systems, and foster discussion on the identified future research agenda.
引用
收藏
页码:155 / 164
页数:10
相关论文
共 41 条
  • [1] Polisma - A Framework for Learning Attribute-Based Access Control Policies
    Abu Jabal, Amani
    Bertino, Elisa
    Lobo, Jorge
    Law, Mark
    Russo, Alessandra
    Calo, Seraphin
    Verma, Dinesh
    [J]. COMPUTER SECURITY - ESORICS 2020, PT I, 2020, 12308 : 523 - 544
  • [2] Alshehri A, 2016, 2016 IEEE 2ND INTERNATIONAL CONFERENCE ON COLLABORATION AND INTERNET COMPUTING (IEEE CIC), P530, DOI [10.1109/CIC.2016.081, 10.1109/CIC.2016.79]
  • [3] IoT Security A Comprehensive Life Cycle Framework
    Bertino, Elisa
    [J]. 2019 IEEE 5TH INTERNATIONAL CONFERENCE ON COLLABORATION AND INTERNET COMPUTING (CIC 2019), 2019, : 196 - 203
  • [4] Convergent Access Control to Enable Secure Smart Communities
    Bhatt, Smriti
    Sandhu, Ravi
    [J]. 2020 SECOND IEEE INTERNATIONAL CONFERENCE ON TRUST, PRIVACY AND SECURITY IN INTELLIGENT SYSTEMS AND APPLICATIONS (TPS-ISA 2020), 2020, : 148 - 156
  • [5] Bouij-Pasquier I, 2015, I C COMP SYST APPLIC
  • [6] IoTGUARD: Dynamic Enforcement of Security and Safety Policy in Commodity IoT
    Celik, Z. Berkay
    Tan, Gang
    McDaniel, Patrick
    [J]. 26TH ANNUAL NETWORK AND DISTRIBUTED SYSTEM SECURITY SYMPOSIUM (NDSS 2019), 2019,
  • [7] Data Access Model for Privacy-Preserving Cloud-IoT Architectures
    Fernandez, Maribel
    Tapia, Alex Franch
    Jaimunk, Jenjira
    Chamorro, Manuel Martinez
    Thuraisingham, Bhavani
    [J]. SACMAT'20: PROCEEDINGS OF THE 25TH ACM SYMPOSIUM ON ACCESS CONTROL MODELS AND TECHNOLOGIES, 2020, : 191 - 202
  • [8] Access Control Model for Google Cloud IoT
    Gupta, Deepti
    Bhatt, Smriti
    Gupta, Maanak
    Kayode, Olumide
    Tosun, Ali Saman
    [J]. 2020 IEEE 6TH INT CONFERENCE ON BIG DATA SECURITY ON CLOUD (BIGDATASECURITY) / 6TH IEEE INT CONFERENCE ON HIGH PERFORMANCE AND SMART COMPUTING, (HPSC) / 5TH IEEE INT CONFERENCE ON INTELLIGENT DATA AND SECURITY (IDS), 2020, : 198 - 208
  • [9] Gupta M, 2021, Arxiv, DOI arXiv:2101.03736
  • [10] Secure V2V and V2I Communication in Intelligent Transportation Using Cloudlets
    Gupta, Maanak
    Benson, James
    Patwa, Farhan
    Sandhu, Ravi
    [J]. IEEE TRANSACTIONS ON SERVICES COMPUTING, 2022, 15 (04) : 1912 - 1925