Lightweight and Decentralized Access Control for Cloud-Assisted Industrial Control Systems

被引:0
|
作者
Routray, Kasturi [1 ]
Bera, Padmalochan [1 ]
机构
[1] Indian Inst Technol Bhubaneswar, Sch Elect & Comp Sci, Bhubaneswar, India
关键词
CP-ABE; Decentralized; Outsourced Decryption; Revocation; ECC; CP-ABE SCHEME; EFFICIENT; DEVICES; KEYS;
D O I
10.1145/3689930.3695207
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cloud-assisted industrial control systems (CA-ICS) are increasingly adopted for their ability to enhance efficiency, scalability, and remote access to resources. These systems integrate IoT devices for real-time monitoring and automated control, with the cloud supporting improved functionality and operational effectiveness. While CA-ICS provide several benefits, they face various data security challenges, such as unauthorized access, tampering, and leakage of sensitive data in an untrusted and dynamic cloud environment. In this work, we propose a ciphertext-policy attribute-based encryption (CP-ABE) framework to ensure secure and fine-grained access control on industrial data stored in the cloud. Our approach improves efficiency by replacing computationally intensive bilinear pairing operations with lightweight elliptic curve cryptography (ECC) based scalar multiplication operations. Our scheme utilizes decentralized attribute authorities to independently generate and distribute user private keys, avoiding coordination and preventing key escrow attacks. It uses unique global identifiers to combine key components which are linked to their specific attribute set. and facilitates efficient attribute revocation. Furthermore, our scheme employs fog nodes for partial decryption of ciphertext, which reduces computational overhead and latency for resource-constrained devices, thereby enhancing overall performance and response time. Theoretical analysis validates our proposed CP-ABE scheme's effectiveness and usability in CA-ICS, enhancing both security and the efficiency of remote monitoring and data-driven decision-making.
引用
收藏
页码:71 / 78
页数:8
相关论文
共 50 条
  • [1] Anonymous decentralized attribute-based access control for cloud-assisted IoT
    Nasiraee, Hassan
    Ashouri-Talouki, Maede
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2020, 110 : 45 - 56
  • [2] Secure, Efficient, and Weighted Access Control for Cloud-Assisted Industrial IoT
    Li, Qi
    Zhang, Qianqian
    Huang, Haiping
    Zhang, Wei
    Chen, Wei
    Wang, Huaqun
    IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (18) : 16917 - 16927
  • [3] On the Design of a Decentralized and Multiauthority Access Control Scheme in Federated and Cloud-Assisted Cyber-Physical Systems
    Sciancalepore, Savio
    Piro, Giuseppe
    Caldarola, Daniele
    Boggia, Gennaro
    Bianchi, Giuseppe
    IEEE INTERNET OF THINGS JOURNAL, 2018, 5 (06): : 5190 - 5204
  • [4] Using Risk in Access Control for Cloud-Assisted eHealth
    Sharma, Meeta
    Bai, Yan
    Chung, Sam
    Dai, Lirong
    2012 IEEE 14TH INTERNATIONAL CONFERENCE ON HIGH PERFORMANCE COMPUTING AND COMMUNICATIONS & 2012 IEEE 9TH INTERNATIONAL CONFERENCE ON EMBEDDED SOFTWARE AND SYSTEMS (HPCC-ICESS), 2012, : 1047 - 1052
  • [5] CHARIOT: Cloud-Assisted Access Control for the Internet of Things
    Gritti, Clementine
    Onen, Melek
    Molva, Refik
    2018 16TH ANNUAL CONFERENCE ON PRIVACY, SECURITY AND TRUST (PST), 2018, : 117 - +
  • [6] A Security Scheme for Cloud-assisted Industrial Control System
    Tu Y.-F.
    Yang G.
    Zhang C.-Z.
    Zidonghua Xuebao/Acta Automatica Sinica, 2021, 47 (02): : 432 - 441
  • [7] Cloud-assisted Industrial Systems and Applications
    Wan, Jiafu
    Khan, Muhammad K.
    Qiu, Meikang
    Zhang, Daqiang
    MOBILE NETWORKS & APPLICATIONS, 2016, 21 (05): : 822 - 824
  • [8] Cloud-assisted Industrial Systems and Applications
    Jiafu Wan
    Muhammad K. Khan
    Meikang Qiu
    Daqiang Zhang
    Mobile Networks and Applications, 2016, 21 : 822 - 824
  • [9] A Lightweight Trust-based Access Control Model in Cloud-Assisted Wireless Body Area Networks
    Wu, Xu
    INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2014, 8 (05): : 131 - 137
  • [10] Risk-Aware Lightweight Data Access Control for Cloud-Assisted IIoT: A Zero-Trust Approach
    Routray, Kasturi
    Bera, Padmalochan
    PROCEEDINGS OF THE2024 SIGCOMM WORKSHOP ON ZERO TRUST ARCHITECTURE FOR NEXT GENERATION COMMUNICATIONS, ZTA-NEXTGEN 2024, 2024, : 40 - 42