Blockchain-enabled device command operation security for Industrial Internet of Things

被引:6
作者
Fu, Luxia [1 ,3 ]
Zhang, Zhuang [1 ]
Tan, Liang [1 ,2 ,5 ]
Yao, Zhengyi [1 ]
Tan, Hongxin [1 ]
Xie, Jingxue [1 ]
She, Kun [4 ]
机构
[1] Sichuan Normal Univ, Coll Comp Sci, Chengdu 610101, Peoples R China
[2] Chinese Acad Sci, Inst Comp Technol, Beijing 100190, Peoples R China
[3] Xichang Univ, Coll Informat Technol, Xichang 615013, Peoples R China
[4] Univ Elect Sci & Technol China, Coll Informat & Software Engn, Chengdu 610054, Peoples R China
[5] Univ Elect Sci & Technol China, Inst Cyberspace Secur, Chengdu 610054, Peoples R China
来源
FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE | 2023年 / 148卷
基金
中国国家自然科学基金;
关键词
Access control; Device commands; Blockchain; Commands assert quota;
D O I
10.1016/j.future.2023.06.004
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
For the convenience and automation of industrial manufacturing and production management, users usually issues commands to control and manage all devices based on the Industrial Internet of Thing(IIoT) cloud platform. This distributed management mode has two disadvantages: (1) The gateway control is adopted by the IIoT cloud platform for the device command operation. Once having the command rights on the IIoT cloud platform, users can operate the devices without restrictions; (2) The IIoT cloud platform records the log of the user's device command operation behavior through a database or file, which is vulnerable to tampering. Therefore, a blockchain-enabled device command operation security scheme for the IIoT cloud platform is proposed, which adds a flexible control factor - command asset quota - to control the number of command operations, and added the allocation and recycling of the command asset quotas based on blockchain transactions, as well as the storage and recording of the command operation behavior logs. In the paper, the classification, value calculation, asset model and quota allocation and recycling mechanism of device commands are descripted in detail, and the reference implementation project is carried out. Finally, this scheme prototype is implemented based on the IIoT platform Jetlinks, OceanConnect and the alliance chain Fisco Bcos. Experiments show that this scheme not only solves the above two problems, but also is feasible, security, efficient and resilient.
引用
收藏
页码:280 / 297
页数:18
相关论文
共 48 条
[1]   Deploying Fog Computing in Industrial Internet of Things and Industry 4.0 [J].
Aazam, Mohammad ;
Zeadally, Sherali ;
Harras, Khaled A. .
IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2018, 14 (10) :4674-4682
[2]  
Admin T., 2016, BROADLINK RM MINI 3
[3]  
[Anonymous], 2019, FCCONTROL 4
[4]  
[Anonymous], 2015, DRAFT COPY ADV REV
[5]   BPIIoT: A Light-Weighted Blockchain-Based Platform for Industrial IoT [J].
Bai, Li ;
Hu, Mi ;
Liu, Min ;
Wang, Jingwei .
IEEE ACCESS, 2019, 7 :58381-58393
[6]   Private blockchain-envisioned multi-authority CP-ABE-based user access control scheme in IIoT [J].
Banerjee, Soumya ;
Bera, Basudeb ;
Das, Ashok Kumar ;
Chattopadhyay, Samiran ;
Khan, Muhammad Khurram ;
Rodrigues, Joel J. P. C. .
COMPUTER COMMUNICATIONS, 2021, 169 :99-113
[7]   On the Adoption of Physically Unclonable Functions to Secure IIoT Devices [J].
Barbareschi, Mario ;
Casola, Valentina ;
De Benedictis, Alessandra ;
Montagna, Erasmo La ;
Mazzocca, Nicola .
IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2021, 17 (11) :7781-7790
[8]   The industrial internet of things (IIoT): An analysis framework [J].
Boyes, Hugh ;
Hallaq, Bit ;
Cunningham, Joe ;
Watson, Tim .
COMPUTERS IN INDUSTRY, 2018, 101 :1-12
[9]   FASTEN IIoT: An Open Real-Time Platform for Vertical, Horizontal and End-To-End Integration [J].
Costa, Felipe S. ;
Nassar, Silvia M. ;
Gusmeroli, Sergio ;
Schultz, Ralph ;
Conceicao, Andre G. S. ;
Xavier, Miguel ;
Hessel, Fabiano ;
Dantas, Mario A. R. .
SENSORS, 2020, 20 (19) :1-25
[10]   IIoT Cybersecurity Risk Modeling for SCADA Systems [J].
Falco, Gregory ;
Caldera, Carlos ;
Shrobe, Howard .
IEEE INTERNET OF THINGS JOURNAL, 2018, 5 (06) :4486-4495