An extended Attribute-based access control with controlled delegation in IoT

被引:4
作者
Tegane, Saher [1 ]
Semchedine, Fouzi [2 ]
Boudries, Abdelmalek [3 ]
机构
[1] Bejaia Univ, Fac Exact Sci, Bejaia, Algeria
[2] Ferhat Abbas Univ, Inst Opt & Precis Mech, Setif, Algeria
[3] Bejaia Univ, Fac Econ Business & Management, Commercial Sci Dept, Lab LMA, Bejaia, Algeria
关键词
Internet of things (IoTs); Access control; Capability based access control (CapBAC); Attribute-based signatures; Delegation; BLOCKCHAIN; SECURE;
D O I
10.1016/j.jisa.2023.103473
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Access control is one of the main concerns for securing the Internet of Things (IoT) due to its inherent features. It is particularly challenging to manage access policies and authorization (rights) propagation in a highly dynamic and scalable environment with a potentially unbound number of connected objects. This paper proposes an Attribute-Capability-Based Access Control (ACapBAC) system for the IoT. ACapBAC enables flexible and dynamic access control with fine-grained controlled delegation. The reliability of the proposed solution is highlighted through both efficiency and security analysis.
引用
收藏
页数:11
相关论文
共 48 条
  • [1] Ameer S., 2022, IEEE Transactions on Dependable and Secure Computing
  • [2] BlueSky: Towards Convergence of Zero Trust Principles and Score-Based Authorization for IoT Enabled Smart Systems
    Ameer, Safwa
    Gupta, Maanak
    Bhatt, Smriti
    Sandhu, Ravi
    [J]. PROCEEDINGS OF THE 27TH ACM SYMPOSIUM ON ACCESS CONTROL MODELS AND TECHNOLOGIES, SACMAT 2022, 2022, : 235 - 244
  • [3] An Attribute-Based Approach toward a Secured Smart-Home IoT Access Control and a Comparison with a Role-Based Approach
    Ameer, Safwa
    Benson, James
    Sandhu, Ravi
    [J]. INFORMATION, 2022, 13 (02)
  • [4] Anggorojati B., 2012, 2012 15th International Symposium on Wireless Personal Multimedia Communications (WPMC 2012), P604
  • [5] Anggorojati B, 2013, J CYBER SECUR MOBIL, V2, P221
  • [6] Anggorojati B, 2013, RIV PUB S INFORM SCI, P135
  • [7] [Anonymous], 2013, J INTERNET SERVICES
  • [8] ABAC-CC: Attribute-Based Access Control and Communication Control for Internet of Things
    Bhatt, Smriti
    Sandhu, Ravi
    [J]. SACMAT'20: PROCEEDINGS OF THE 25TH ACM SYMPOSIUM ON ACCESS CONTROL MODELS AND TECHNOLOGIES, 2020, : 203 - 212
  • [9] Access Control Enforcement within MQTT-based Internet of Things Ecosystems
    Colombo, Pietro
    Ferrari, Elena
    [J]. SACMAT'18: PROCEEDINGS OF THE 23RD ACM SYMPOSIUM ON ACCESS CONTROL MODELS & TECHNOLOGIES, 2018, : 223 - 234
  • [10] Crockford D, 2006, APPLICATIONJSON MEDI