SecShield: An IoT access control framework with edge caching using software defined network

被引:1
作者
Zangaraki, Shahrbanoo [1 ]
Mirabi, Meghdad [2 ]
Erfani, Seyed Hossein [1 ]
Sahafi, Amir [1 ]
机构
[1] Islamic Azad Univ, Dept Comp Engn, South Tehran Branch, Tehran, Iran
[2] Tech Univ Darmstadt, Fac Comp Sci, Darmstadt, Germany
关键词
Access control; Caching; Internet of things; Software defined network; ACCESSIBILITY MAP; INTERNET; THINGS; SECURITY; ARCHITECTURE; CHALLENGES; MODEL;
D O I
10.1007/s12083-024-01825-5
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In the era of the Internet of Things (IoT), where technology has revolutionized our interaction with the world around us and bridged the gap between the physical and digital realms, providing an effective fine-grained access control system is paramount to safeguarding security of the IoT ecosystem. This paper introduces SecShield, a novel Software Defined Network (SDN)-based framework, particularly designed for IoT environments. SecShield operates by evaluating access requests and granting access to IoT services only when the set of defined access policies are satisfied. Utilizing the Attribute-Based Access Control (ABAC) model, SecShield specifies fine-grained access policies for IoT services and employs an algorithm for evaluating access requests. Additionally, the framework incorporates a local cache at the edge of the IoT network, enhanced with a Least Recently Used (LRU) algorithm, to optimize the process of access request evaluation. Experimental results validate the efficiency and feasibility of SecShield, positioning it as a viable solution for improving security of real-world IoT networks.
引用
收藏
页码:1 / 17
页数:17
相关论文
共 64 条
[31]   Controller placement in software defined networks using multi-objective antlion algorithm [J].
Kazemian, Mohammad Mahdi ;
Mirabi, Meghdad .
JOURNAL OF SUPERCOMPUTING, 2022, 78 (04) :5626-5649
[32]   SODA: A software-defined security framework for IoT environments [J].
Kim, Yeonkeun ;
Nam, Jaehyun ;
Park, Taejune ;
Scott-Hayward, Sandra ;
Shin, Seungwon .
COMPUTER NETWORKS, 2019, 163
[33]   Internet of things security: A top-down survey [J].
Kouicem, Djamel Eddine ;
Bouabdallah, Abdelmadjid ;
Lakhlef, Hicham .
COMPUTER NETWORKS, 2018, 141 :199-221
[34]   Network Innovation using OpenFlow: A Survey [J].
Lara, Adrian ;
Kolasani, Anisha ;
Ramamurthy, Byrav .
IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2014, 16 (01) :493-512
[35]   Fabric-iot: A Blockchain-Based Access Control System in IoT [J].
Liu, Han ;
Han, Dezhi ;
Li, Dun .
IEEE ACCESS, 2020, 8 :18207-18218
[36]   Software defined networks: A survey [J].
Masoudi, Rahim ;
Ghaffari, Ali .
JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2016, 67 :1-25
[37]  
Mirabi M, 2023, VLDB WORKSH
[38]  
Mirabi M., 2012, Int Rev Comput Soft, V7, P1518
[39]  
Mirabi M, 2015, J INF SCI ENG, V31, P59
[40]   A Compact Bit String Accessibility Map for Secure XML Query Processing [J].
Mirabi, Meghdad ;
Ibrahim, Hamidah ;
Udzir, Nur Izura ;
Mamat, Ali .
ANT 2012 AND MOBIWIS 2012, 2012, 10 :1172-1179