BIoAC: A blockchain-based secure access control management for the Internet of Things

被引:0
|
作者
Roy, Utsa [1 ]
Ghosh, Nirnay [1 ]
机构
[1] Indian Inst Engn Sci & Technol, Dept Comp Sci & Technol, Sibpur 711103, India
关键词
Blockchain; Hyperledger fabric; ABAC policy; Access control; Smart contract; Edge-to-edge communication; CONTROL FRAMEWORK; IOT; AUTHENTICATION; PROTOCOL;
D O I
10.1016/j.jisa.2024.103897
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The Internet of Things (IoT) paradigm has widespread applications across many fields in which private and sensitive user or environmental data are sensed and shared. Most present-day IoT applications depend on centralized cloud servers for authentication and access control. Validating the identity of a user and determining the legitimacy of his/her access requests require multiple rounds of data communications over the untrusted Internet, exposing sensitive data to potential attacks. Thus, protecting these data from security and privacy attacks and ensuring legitimate access is imperative. To address this challenge, we adopt an emerging technology called blockchain to propose a decentralized security framework called BloAC. It ensures secure access control in IoT networks without the intervention of the back-end cloud. We have used the Hyperledger Fabric, an open-source, permissioned blockchain platform, for implementing a prototype system using customized attribute-based access control (ABAC) policies. We have performed simulated and real test bed-based experiments to illustrate that BloAC outperforms the cloud-server-based access control in latency and scalability, significantly reducing latency by up to 42.45% compared to cloud-based solutions. Finally, we conduct a security analysis to formally verify the ABAC policies used in BloAC and establish its robustness against attacks theoretically and using the AVISPA tool.
引用
收藏
页数:14
相关论文
共 50 条
  • [31] N-Accesses: A Blockchain-Based Access Control Framework for Secure IoT Data Management
    Hu, Teng
    Yang, Siqi
    Wang, Yanping
    Li, Gongliang
    Wang, Yulong
    Wang, Gang
    Yin, Mingyong
    SENSORS, 2023, 23 (20)
  • [32] Blockchain-Based Data Storage With Privacy and Authentication in Internet of Things
    Goyat, Rekha
    Kumar, Gulshan
    Alazab, Mamoun
    Conti, Mauro
    Rai, Mritunjay Kumar
    Thomas, Reji
    Saha, Rahul
    Kim, Tai-Hoon
    IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (16): : 14203 - 14215
  • [33] Survey of Blockchain Access Control in Internet of Things
    Shi J.-S.
    Li R.
    Ruan Jian Xue Bao/Journal of Software, 2019, 30 (06): : 1632 - 1648
  • [34] Blockchain-based Internet of Musical Things
    Turchet, Luca
    Ngo, Chan Nam
    BLOCKCHAIN-RESEARCH AND APPLICATIONS, 2022, 3 (03):
  • [35] A Blockchain Based Scalable Domain Access Control Framework for Industrial Internet of Things
    Usman, Muhammad
    Sarfraz, Muhammad Shahzad
    Aftab, Muhammad Umar
    Habib, Usman
    Javed, Saleha
    IEEE ACCESS, 2024, 12 : 56554 - 56570
  • [36] A Survey on Blockchain-based Identity Management Systems for the Internet of Things
    Zhu, Xiaoyang
    Badr, Youakim
    IEEE 2018 INTERNATIONAL CONGRESS ON CYBERMATICS / 2018 IEEE CONFERENCES ON INTERNET OF THINGS, GREEN COMPUTING AND COMMUNICATIONS, CYBER, PHYSICAL AND SOCIAL COMPUTING, SMART DATA, BLOCKCHAIN, COMPUTER AND INFORMATION TECHNOLOGY, 2018, : 1568 - 1573
  • [37] Decentralized Blockchain-Based Trust Management Protocol for the Internet of Things
    Kouicem, Djamel Eddine
    Imine, Youcef
    Bouabdallah, Abdelmadjid
    Lakhlef, Hicham
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2022, 19 (02) : 1292 - 1306
  • [38] An Incentive Mechanism for Building a Secure Blockchain-Based Internet of Things
    Ding, Xingjian
    Guo, Jianxiong
    Li, Deying
    Wu, Weili
    IEEE TRANSACTIONS ON NETWORK SCIENCE AND ENGINEERING, 2021, 8 (01): : 477 - 487
  • [39] Blockchain-Based Secure Device Management Framework for an Internet of Things Network in a Smart City
    Gong, Seonghyeon
    Tcydenova, Erzhena
    Jo, Jeonghoon
    Lee, Younghun
    Park, Jong Hyuk
    SUSTAINABILITY, 2019, 11 (14)
  • [40] CD-BISHAC: Cross-Domain Scheme for Blockchain-Based Industrial Internet of Things Security Hybrid Access Control
    He, Buzhen
    Feng, Tao
    Liu, Chunyan
    Su, Chunhua
    IEEE INTERNET OF THINGS JOURNAL, 2025, 12 (06): : 7164 - 7179