SecShield: An IoT access control framework with edge caching using software defined network

被引:1
作者
Zangaraki, Shahrbanoo [1 ]
Mirabi, Meghdad [2 ]
Erfani, Seyed Hossein [1 ]
Sahafi, Amir [1 ]
机构
[1] Islamic Azad Univ, Dept Comp Engn, South Tehran Branch, Tehran, Iran
[2] Tech Univ Darmstadt, Fac Comp Sci, Darmstadt, Germany
关键词
Access control; Caching; Internet of things; Software defined network; ACCESSIBILITY MAP; INTERNET; THINGS; SECURITY; ARCHITECTURE; CHALLENGES; MODEL;
D O I
10.1007/s12083-024-01825-5
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In the era of the Internet of Things (IoT), where technology has revolutionized our interaction with the world around us and bridged the gap between the physical and digital realms, providing an effective fine-grained access control system is paramount to safeguarding security of the IoT ecosystem. This paper introduces SecShield, a novel Software Defined Network (SDN)-based framework, particularly designed for IoT environments. SecShield operates by evaluating access requests and granting access to IoT services only when the set of defined access policies are satisfied. Utilizing the Attribute-Based Access Control (ABAC) model, SecShield specifies fine-grained access policies for IoT services and employs an algorithm for evaluating access requests. Additionally, the framework incorporates a local cache at the edge of the IoT network, enhanced with a Least Recently Used (LRU) algorithm, to optimize the process of access request evaluation. Experimental results validate the efficiency and feasibility of SecShield, positioning it as a viable solution for improving security of real-world IoT networks.
引用
收藏
页码:1 / 17
页数:17
相关论文
共 64 条
  • [1] A distributed reliable collusion-free algorithm for selecting multiple coordinators in IOTA using fog computing
    Alavizadeh, Alavieh Sadat
    Erfani, Seyed Hossein
    Mirabi, Meghdad
    Sahafi, Amir
    [J]. CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2024, 36 (11)
  • [2] An efficient distributed and secure algorithm for transaction confirmation in IOTA using cloud computing
    Alavizadeh, Alavieh Sadat
    Erfani, Seyed Hossein
    Mirabi, Meghdad
    Sahafi, Amir
    [J]. JOURNAL OF SUPERCOMPUTING, 2024, 80 (02) : 1491 - 1521
  • [3] Toward Adaptive and Scalable OpenFlow-SDN Flow Control: A Survey
    Alsaeedi, Mohammed
    Mohamad, Mohd Murtadha
    Al-Roubaiey, Anas A.
    [J]. IEEE ACCESS, 2019, 7 : 107346 - 107379
  • [4] Enhancing Internet of Things Security using Software-Defined Networking
    Alzahrani, Bander
    Fotiou, Nikos
    [J]. JOURNAL OF SYSTEMS ARCHITECTURE, 2020, 110 (110)
  • [5] An Attribute-Based Approach toward a Secured Smart-Home IoT Access Control and a Comparison with a Role-Based Approach
    Ameer, Safwa
    Benson, James
    Sandhu, Ravi
    [J]. INFORMATION, 2022, 13 (02)
  • [6] Combo-Chain: Towards a hierarchical attribute-based access control system for IoT with smart contract and sharding technique
    Bakhtiary, Vahid
    Mirabi, Meghdad
    Salajegheh, Afshin
    Erfani, Seyed Hossein
    [J]. INTERNET OF THINGS, 2024, 25
  • [7] IoT Technology, Applications and Challenges: A Contemporary Survey
    Balaji, S.
    Nathani, Karan
    Santhakumar, R.
    [J]. WIRELESS PERSONAL COMMUNICATIONS, 2019, 108 (01) : 363 - 388
  • [8] Internet of Things Management Based on Software Defined Networking: A Survey
    Bekri, Wiem
    Jmal, Rihab
    Fourati, Lamia Chaari
    [J]. INTERNATIONAL JOURNAL OF WIRELESS INFORMATION NETWORKS, 2020, 27 (03) : 385 - 410
  • [9] Bell ED, 1973, Technical Report MTR-2547, V1
  • [10] Software-Defined Networking for Internet of Things: A Survey
    Bera, Samaresh
    Misra, Sudip
    Vasilakos, Athanasios V.
    [J]. IEEE INTERNET OF THINGS JOURNAL, 2017, 4 (06): : 1994 - 2008