BIoAC: A blockchain-based secure access control management for the Internet of Things

被引:0
|
作者
Roy, Utsa [1 ]
Ghosh, Nirnay [1 ]
机构
[1] Indian Inst Engn Sci & Technol, Dept Comp Sci & Technol, Sibpur 711103, India
关键词
Blockchain; Hyperledger fabric; ABAC policy; Access control; Smart contract; Edge-to-edge communication; CONTROL FRAMEWORK; IOT; AUTHENTICATION; PROTOCOL;
D O I
10.1016/j.jisa.2024.103897
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The Internet of Things (IoT) paradigm has widespread applications across many fields in which private and sensitive user or environmental data are sensed and shared. Most present-day IoT applications depend on centralized cloud servers for authentication and access control. Validating the identity of a user and determining the legitimacy of his/her access requests require multiple rounds of data communications over the untrusted Internet, exposing sensitive data to potential attacks. Thus, protecting these data from security and privacy attacks and ensuring legitimate access is imperative. To address this challenge, we adopt an emerging technology called blockchain to propose a decentralized security framework called BloAC. It ensures secure access control in IoT networks without the intervention of the back-end cloud. We have used the Hyperledger Fabric, an open-source, permissioned blockchain platform, for implementing a prototype system using customized attribute-based access control (ABAC) policies. We have performed simulated and real test bed-based experiments to illustrate that BloAC outperforms the cloud-server-based access control in latency and scalability, significantly reducing latency by up to 42.45% compared to cloud-based solutions. Finally, we conduct a security analysis to formally verify the ABAC policies used in BloAC and establish its robustness against attacks theoretically and using the AVISPA tool.
引用
收藏
页数:14
相关论文
共 50 条
  • [21] Blockchain-Based Internet of Medical Things
    Taherdoost, Hamed
    APPLIED SCIENCES-BASEL, 2023, 13 (03):
  • [22] Blockchain-based secure data transmission for internet of underwater things
    Abdul Razzaq
    Cluster Computing, 2022, 25 : 4495 - 4514
  • [23] Blockchain-Based Secure Data Storage Protocol for Sensors in the Industrial Internet of Things
    Lu, Junqing
    Shen, Jian
    Vijayakumar, P.
    Gupta, B. B.
    IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2022, 18 (08) : 5422 - 5431
  • [24] Blockchain-based Trust Management in Social Internet of Things
    Amiri-Zarandi, Mohammad
    Dara, Rozita A.
    2020 IEEE INTL CONF ON DEPENDABLE, AUTONOMIC AND SECURE COMPUTING, INTL CONF ON PERVASIVE INTELLIGENCE AND COMPUTING, INTL CONF ON CLOUD AND BIG DATA COMPUTING, INTL CONF ON CYBER SCIENCE AND TECHNOLOGY CONGRESS (DASC/PICOM/CBDCOM/CYBERSCITECH), 2020, : 49 - 54
  • [25] LBAC: A lightweight blockchain-based access control scheme for the internet of things
    Qin, Xuanmei
    Huang, Yongfeng
    Yang, Zhen
    Li, Xing
    INFORMATION SCIENCES, 2021, 554 : 222 - 235
  • [26] Blockchain-Based Searchable Encryption Access Control Mechanism for the Internet of Things
    Li, Mengyuan
    Guo, Shaoyong
    Li, Wengjing
    Xiong, Ao
    Wang, Dong
    Li, Da
    Qi, Feng
    PROCEEDINGS OF THE 13TH INTERNATIONAL CONFERENCE ON COMPUTER ENGINEERING AND NETWORKS, VOL III, CENET 2023, 2024, 1127 : 258 - 268
  • [27] A Secure Access Scheme for Internet of Things Devices Based on Blockchain
    Li, Wenzheng
    Ying, JiYue
    PROCEEDINGS OF 2021 IEEE 12TH INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING AND SERVICE SCIENCE (ICSESS), 2021, : 65 - 71
  • [28] A blockchain-based Trust System for the Internet of Things
    Di Pietro, Roberto
    Salleras, Xavier
    Signorini, Matteo
    Waisbard, Erez
    SACMAT'18: PROCEEDINGS OF THE 23RD ACM SYMPOSIUM ON ACCESS CONTROL MODELS & TECHNOLOGIES, 2018, : 77 - 83
  • [29] Achieving fine-grained and flexible access control on blockchain-based data sharing for the Internet of Things
    Wang, Ruimiao
    Wang, Xiaodong
    Yang, Wenti
    Yuan, Shuai
    Guan, Zhitao
    CHINA COMMUNICATIONS, 2022, 19 (06) : 22 - 34
  • [30] BHE-AC: a blockchain-based high-efficiency access control framework for Internet of Things
    Chai B.
    Yan B.
    Yu J.
    Wang G.
    Personal and Ubiquitous Computing, 2022, 26 (04) : 971 - 982