Lightweight and Decentralized Access Control for Cloud-Assisted Industrial Control Systems

被引:0
|
作者
Routray, Kasturi [1 ]
Bera, Padmalochan [1 ]
机构
[1] Indian Inst Technol Bhubaneswar, Sch Elect & Comp Sci, Bhubaneswar, India
关键词
CP-ABE; Decentralized; Outsourced Decryption; Revocation; ECC; CP-ABE SCHEME; EFFICIENT; DEVICES; KEYS;
D O I
10.1145/3689930.3695207
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cloud-assisted industrial control systems (CA-ICS) are increasingly adopted for their ability to enhance efficiency, scalability, and remote access to resources. These systems integrate IoT devices for real-time monitoring and automated control, with the cloud supporting improved functionality and operational effectiveness. While CA-ICS provide several benefits, they face various data security challenges, such as unauthorized access, tampering, and leakage of sensitive data in an untrusted and dynamic cloud environment. In this work, we propose a ciphertext-policy attribute-based encryption (CP-ABE) framework to ensure secure and fine-grained access control on industrial data stored in the cloud. Our approach improves efficiency by replacing computationally intensive bilinear pairing operations with lightweight elliptic curve cryptography (ECC) based scalar multiplication operations. Our scheme utilizes decentralized attribute authorities to independently generate and distribute user private keys, avoiding coordination and preventing key escrow attacks. It uses unique global identifiers to combine key components which are linked to their specific attribute set. and facilitates efficient attribute revocation. Furthermore, our scheme employs fog nodes for partial decryption of ciphertext, which reduces computational overhead and latency for resource-constrained devices, thereby enhancing overall performance and response time. Theoretical analysis validates our proposed CP-ABE scheme's effectiveness and usability in CA-ICS, enhancing both security and the efficiency of remote monitoring and data-driven decision-making.
引用
收藏
页码:71 / 78
页数:8
相关论文
共 50 条
  • [31] Privacy-preserving Multi-user Encrypted Access Control Scheme for Cloud-assisted IoT applications
    Kaaniche, Nesrine
    Laurent, Maryline
    PROCEEDINGS 2018 IEEE 11TH INTERNATIONAL CONFERENCE ON CLOUD COMPUTING (CLOUD), 2018, : 590 - 597
  • [32] Decentralized access control in distributed file systems
    Miltchev, Stefan
    Smith, Jonathan M.
    Prevelakis, Vassilis
    Keromytis, Angelos
    Ioannidis, Sotiris
    ACM COMPUTING SURVEYS, 2008, 40 (03)
  • [33] Are industrial control systems ready for the cloud?
    Piggin, Richard
    INTERNATIONAL JOURNAL OF CRITICAL INFRASTRUCTURE PROTECTION, 2015, 9 : 38 - 40
  • [34] Survey of Centralized and Decentralized Access Control Models in Cloud Computing
    Almutairi, Suzan
    Alghanmi, Nusaybah
    Monowar, Muhammad Mostafa
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2021, 12 (02) : 339 - 346
  • [35] Revocable, dynamic and decentralized data access control in cloud storage
    Wang, Chong
    Jin, Hao
    Wei, Ronglei
    Zhou, Ke
    JOURNAL OF SUPERCOMPUTING, 2022, 78 (07): : 10063 - 10087
  • [36] Revocable, dynamic and decentralized data access control in cloud storage
    Chong Wang
    Hao Jin
    Ronglei Wei
    Ke Zhou
    The Journal of Supercomputing, 2022, 78 : 10063 - 10087
  • [37] Quality of Protection in Cloud-Assisted Cognitive Machine-to-Machine Communications for Industrial Systems
    Li Jiang
    Hui Tian
    Jian Shen
    Sabita Maharjan
    Yan Zhang
    Mobile Networks and Applications, 2016, 21 : 1032 - 1042
  • [38] Quality of Protection in Cloud-Assisted Cognitive Machine-to-Machine Communications for Industrial Systems
    Jiang, Li
    Tian, Hui
    Shen, Jian
    Maharjan, Sabita
    Zhang, Yan
    MOBILE NETWORKS & APPLICATIONS, 2016, 21 (06): : 1032 - 1042
  • [39] Cadros: the Cloud-Assisted Data Replication in Decentralized Online Social Networks
    Fu, Songling
    He, Ligang
    Liao, Xiangke
    Huang, Chenlin
    Chang, Cheng
    Gao, Bo
    2014 IEEE INTERNATIONAL CONFERENCE ON SERVICES COMPUTING (SCC 2014), 2014, : 43 - 50
  • [40] Distributed Event-triggered Output Feedback Control with Cloud-assisted Observer
    Fujita, Kohei
    Ushio, Toshimitsu
    PROCEEDINGS OF FIRST INTERNATIONAL CONFERENCE ON EVENT-BASED CONTROL, COMMUNICATION AND SIGNAL PROCESSING EBCCSP 2015, 2015,