BIoAC: A blockchain-based secure access control management for the Internet of Things

被引:0
|
作者
Roy, Utsa [1 ]
Ghosh, Nirnay [1 ]
机构
[1] Indian Inst Engn Sci & Technol, Dept Comp Sci & Technol, Sibpur 711103, India
关键词
Blockchain; Hyperledger fabric; ABAC policy; Access control; Smart contract; Edge-to-edge communication; CONTROL FRAMEWORK; IOT; AUTHENTICATION; PROTOCOL;
D O I
10.1016/j.jisa.2024.103897
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The Internet of Things (IoT) paradigm has widespread applications across many fields in which private and sensitive user or environmental data are sensed and shared. Most present-day IoT applications depend on centralized cloud servers for authentication and access control. Validating the identity of a user and determining the legitimacy of his/her access requests require multiple rounds of data communications over the untrusted Internet, exposing sensitive data to potential attacks. Thus, protecting these data from security and privacy attacks and ensuring legitimate access is imperative. To address this challenge, we adopt an emerging technology called blockchain to propose a decentralized security framework called BloAC. It ensures secure access control in IoT networks without the intervention of the back-end cloud. We have used the Hyperledger Fabric, an open-source, permissioned blockchain platform, for implementing a prototype system using customized attribute-based access control (ABAC) policies. We have performed simulated and real test bed-based experiments to illustrate that BloAC outperforms the cloud-server-based access control in latency and scalability, significantly reducing latency by up to 42.45% compared to cloud-based solutions. Finally, we conduct a security analysis to formally verify the ABAC policies used in BloAC and establish its robustness against attacks theoretically and using the AVISPA tool.
引用
收藏
页数:14
相关论文
共 50 条
  • [1] SDACS: Blockchain-Based Secure and Dynamic Access Control Scheme for Internet of Things
    Gong, Qinghua
    Zhang, Jinnan
    Wei, Zheng
    Wang, Xinmin
    Zhang, Xia
    Yan, Xin
    Liu, Yang
    Dong, Liming
    SENSORS, 2024, 24 (07)
  • [2] Blockchain-Based Secure and Lightweight Authentication for Internet of Things
    Yang, Xu
    Yang, Xuechao
    Yi, Xun
    Khalil, Ibrahim
    Zhou, Xiaotong
    He, Debiao
    Huang, Xinyi
    Nepal, Surya
    IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (05) : 3321 - 3332
  • [3] BorderChain: Blockchain-Based Access Control Framework for the Internet of Things Endpoint
    Oktian, Yustus Eko
    Lee, Sang-Gon
    IEEE ACCESS, 2021, 9 : 3592 - 3615
  • [4] Blockchain-Based Access Control for the Internet of Things: A Survey
    Abdulrahman, Ebtihal
    Alshehri, Suhair
    Cherif, Asma
    2021 IEEE ASIA-PACIFIC CONFERENCE ON COMPUTER SCIENCE AND DATA ENGINEERING (CSDE), 2021,
  • [5] Enhanced authentication and access control in Internet of Things: a potential blockchain-based method
    Muzammal, Syeda Mariam
    Murugesan, Raja Kumar
    INTERNATIONAL JOURNAL OF GRID AND UTILITY COMPUTING, 2021, 12 (5-6) : 469 - 485
  • [6] A Blockchain-Based Access Control Scheme for Reputation Value Attributes of the Internet of Things
    Tian, Hongliang
    Tian, Junyuan
    CMC-COMPUTERS MATERIALS & CONTINUA, 2024, 78 (01): : 1297 - 1310
  • [7] Blockchain-Based Internet of Things Access Control Technology in Intelligent Manufacturing
    Zhai, Peng
    He, Jingsha
    Zhu, Nafei
    APPLIED SCIENCES-BASEL, 2022, 12 (07):
  • [8] Cost-Efficient Blockchain-Based Access Control for the Internet of Things
    Wiraatmaja, Christopher
    Zhang, Yuanyu
    Sasabe, Masahiro
    Kasahara, Shoji
    2021 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2021,
  • [9] Blockchain-Based Access Control Model for Security Attributes in the Internet of Things
    Yan, Xincheng
    Wu, Jianhua
    Zhou, Na
    Jiang, Zhihong
    Wu, Juqin
    Yin, Jianhui
    Liu, Ying
    2023 IEEE INTERNATIONAL CONFERENCES ON INTERNET OF THINGS, ITHINGS IEEE GREEN COMPUTING AND COMMUNICATIONS, GREENCOM IEEE CYBER, PHYSICAL AND SOCIAL COMPUTING, CPSCOM IEEE SMART DATA, SMARTDATA AND IEEE CONGRESS ON CYBERMATICS,CYBERMATICS, 2024, : 95 - 101
  • [10] Blockchain-based secure data transmission for internet of underwater things
    Razzaq, Abdul
    CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS, 2022, 25 (06): : 4495 - 4514