SAAC: Secure Access Control Management Framework for Multi-User Smart Home Systems

被引:0
|
作者
Hashmi, Iram Fatima [1 ]
Iqbal, Zafar [1 ]
Munir, Eman [1 ]
Kryvinska, Natalia [2 ]
Ivanochko, Iryna [2 ]
Sampedro, Gabriel Avelino [3 ]
机构
[1] Air Univ, Dept Cyber Secur, Islamabad 44000, Pakistan
[2] Comenius Univ, Fac Management, Bratislava 82005, Slovakia
[3] De La Salle Coll St Benilde, Sch Management & Informat Technol, Manila 1004, Philippines
来源
IEEE ACCESS | 2024年 / 12卷
关键词
Access control; Smart homes; Smart devices; Internet of Things; Environmental factors; Servers; Dynamic scheduling; Smart home; access control; authorization; multi-user; attribute-based access control; role-based access control; IOT; SDN; SCHEME;
D O I
10.1109/ACCESS.2024.3446180
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In a smart home environment, multiple users can access a single smart device simultaneously. Moreover, these multiple users may have conflicting demands at a time; that is, one user's demands differ from another for the same device based on the role of users and environmental factors. Therefore, existing single-user access control systems cannot handle such conflicting and dynamically changing demands, considering both roles and environmental factors in the multi-user smart home environment. Considering this issue, we proposed a Smart Access Control and Authorization framework (SAAC). It is a multi-user access control solution that has four modules, namely, a user interaction module, a backend server module, a policy manager module, and a policy execution module. The user interaction module collects user data and resource policies, which are processed by the backend server and forwarded to the policy manager. The policy manager resolves conflicts and generates final policies, which are stored in the backend server for enforcement by the policy execution module. The finalized policies are shared with the backend server module and saved there till needed for execution by the policy execution module to enforce the access control decision. We have implemented a proof of concept of the proposed framework on VS Code using the Casbin library. The performance evaluation results show our framework's effectiveness and efficiency with lower computational complexity requirements than existing methods. Finally, we performed a security analysis of the proposed model based on the STRIDE model that confirms its robustness against access control attacks.
引用
收藏
页码:133339 / 133355
页数:17
相关论文
共 50 条
  • [1] Service Conflict Management Framework for Multi-user Inhabited Smart Home
    Shin, Choonsung
    Woo, Woontack
    JOURNAL OF UNIVERSAL COMPUTER SCIENCE, 2009, 15 (12) : 2330 - 2352
  • [2] Towards Secure Smart Home IoT: Manufacturer and User Network Access Control Framework
    Al-Shaboti, Mohammed
    Welch, Ian
    Chen, Aaron
    Mahmood, Muhammad Adeel
    PROCEEDINGS 2018 IEEE 32ND INTERNATIONAL CONFERENCE ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS (AINA), 2018, : 892 - 899
  • [3] Multi-user low-cost Smart Home Control
    Spale, Jiri
    2018 IEEE INTERNATIONAL CONFERENCE AND WORKSHOP IN OBUDA ON ELECTRICAL AND POWER ENGINEERING (CANDO-EPE), 2018, : 121 - 126
  • [4] Access control for adaptive reservations on multi-user systems
    Cucinotta, Tommaso
    PROCEEDINGS OF THE 14TH IEEE REAL-TIME AND EMBEDDED TECHNOLOGY AND APPLICATIONS SYMPOSIUM, 2008, : 387 - 396
  • [5] Context-Aware Reasoning Framework for Multi-user Recommendations in Smart Home
    Pahal, Nisha
    Jain, Parul
    Saxena, Ruchika
    Srivastava, Abhinesh
    Chaudhury, Santanu
    Lall, Brejesh
    PATTERN RECOGNITION AND MACHINE INTELLIGENCE, PREMI 2019, PT II, 2019, 11942 : 302 - 310
  • [6] A Closer Look at Access Control in Multi-User Voice Systems
    Shafei, Hassan A.
    Tan, Chiu C.
    IEEE ACCESS, 2024, 12 : 40933 - 40946
  • [7] WSN Management in a multi-user secure context
    Dragomir, Dan
    Voinescu, Andrei
    Draghici, Adriana
    Tapus, Nicolae
    2013 ROEDUNET INTERNATIONAL CONFERENCE (ROEDUNET): NETWORKING IN EDUCATION, 11TH EDITION, 2013,
  • [8] Enabling Multi-user Controls in Smart Home Devices
    Jang, William
    Chhabra, Adil
    Prasad, Aarathi
    PROCEEDINGS OF THE 2017 WORKSHOP ON INTERNET OF THINGS SECURITY AND PRIVACY (IOT S&P'17), 2017, : 49 - 54
  • [9] Multi-user human tracking agent for the smart home
    Lee, Juyeon
    Choi, Jonghwa
    Shin, Dongkyoo
    Shin, Dongil
    AGENT COMPUTING AND MULTI-AGENT SYSTEMS, 2006, 4088 : 502 - 507
  • [10] Index Generation and Secure Multi-User Access Control over an Encrypted Cloud Data
    Raghavendra, S.
    Meghana, K.
    Doddabasappa, P. A.
    Geeta, C. M.
    Buyya, Rajkumar
    Venugopal, K. R.
    Iyengar, S. S.
    Patnaik, L. M.
    TWELFTH INTERNATIONAL CONFERENCE ON COMMUNICATION NETWORKS, ICCN 2016 / TWELFTH INTERNATIONAL CONFERENCE ON DATA MINING AND WAREHOUSING, ICDMW 2016 / TWELFTH INTERNATIONAL CONFERENCE ON IMAGE AND SIGNAL PROCESSING, ICISP 2016, 2016, 89 : 293 - 300