A Blockchain-Based Cross-Domain Authentication Management System for IoT Devices

被引:7
|
作者
Liu, Yizhong [1 ,2 ]
Liu, Andi [1 ]
Xia, Yu [3 ]
Hu, Bin [1 ]
Liu, Jianwei [1 ]
Wu, Qianhong [1 ]
Tiwari, Prayag [4 ]
机构
[1] Beihang Univ, Sch Cyber Sci & Technol, Beijing 100191, Peoples R China
[2] State Key Lab Cryptol, Beijing 100878, Peoples R China
[3] Beihang Univ, Sch Elect & Informat Engn, Beijing 100191, Peoples R China
[4] Halmstad Univ, Sch Informat Technol, S-30118 Halmstad, Sweden
来源
IEEE TRANSACTIONS ON NETWORK SCIENCE AND ENGINEERING | 2024年 / 11卷 / 01期
关键词
Blockchains; Authentication; Internet of Things; Smart contracts; Organizations; Peer-to-peer computing; Scalability; Cross-domain authentication; IoT device management; smart contract; Merkle tree; ACCESS-CONTROL FRAMEWORK; INDUSTRIAL INTERNET; RESEARCH ISSUES; THINGS; TECHNOLOGY;
D O I
10.1109/TNSE.2023.3292624
中图分类号
T [工业技术];
学科分类号
08 ;
摘要
With the emergence of the resource and equipment sharing concept, many enterprises and organizations begin to implement cross-domain sharing of devices, especially in the field of the Internet of Things (IoT). However, there are many problems in the cross-domain usage process of devices, such as access control, authentication, and privacy protection. In this paper, we make the following contributions. First, we propose a blockchain-based cross-domain authentication management system for IoT devices. The sensitive device information is stored in a Merkle tree structure where only the Merkle root is uploaded to the smart contract. Second, a detailed security and performance analysis is given. We prove that our system is secure against several potential security threats and satisfies validity and liveness. Compared to existing schemes, our schemes realize decentralization, privacy, scalability, fast off-chain authentication, and low on-chain storage. Third, we implement the system on Ethereum with varying parameters known as domain number, concurrent authentication request number, and Merkle tree leaf number. Experimental results show that our solution supports the management of millions of devices in a domain and can process more than 10,000 concurrent cross-domain authentication requests, consuming only 5531 ms. Meanwhile, the gas costs are shown to be acceptable.
引用
收藏
页码:115 / 127
页数:13
相关论文
共 50 条
  • [1] Blockchain-Based Cross-Domain Authentication With Dynamic Domain Participation in IoT
    Luo, Deyu
    Sun, Gang
    Yu, Hongfang
    Guizani, Mohsen
    IEEE INTERNET OF THINGS JOURNAL, 2025, 12 (05): : 5385 - 5395
  • [2] Blockchain-based cross-domain authentication strategy for trusted access to mobile devices in the IoT
    Dong, Shuai
    Yang, Hui
    Yuan, Jiaqi
    Jiao, Libin
    Yu, Ao
    Zhang, Jie
    2020 16TH INTERNATIONAL WIRELESS COMMUNICATIONS & MOBILE COMPUTING CONFERENCE, IWCMC, 2020, : 1610 - 1612
  • [3] Blockchain-Based Cross-Domain Authentication for Intelligent 5G-Enabled Internet of Drones
    Feng, Chaosheng
    Liu, Bin
    Guo, Zhen
    Yu, Keping
    Qin, Zhiguang
    Choo, Kim-Kwang Raymond
    IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (08) : 6224 - 6238
  • [4] A Blockchain-Based Multi-CA Cross-Domain Authentication Scheme in Decentralized Autonomous Network
    Wang, Miaomiao
    Rui, Lanlan
    Yang, Yang
    Gao, Zhipeng
    Chen, Xingyu
    IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2022, 19 (03): : 2664 - 2676
  • [5] An Efficient Consensus Algorithm for Blockchain-Based Cross-Domain Authentication in Bandwidth-Constrained Wide-Area IoT Networks
    Luo, Deyu
    Zhang, Youchi
    Sun, Gang
    Yu, Hongfang
    Niyato, Dusit
    IEEE INTERNET OF THINGS JOURNAL, 2024, 11 (19): : 31917 - 31931
  • [6] Split-Chain-Based Efficient Blockchain-Assisted Cross-Domain Authentication for IoT
    Luo, Deyu
    Cai, Qingqing
    Sun, Gang
    Yu, Hongfang
    Niyato, Dusit
    IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2024, 21 (03): : 3209 - 3223
  • [7] A method for improving the security of blockchain-based cross-domain authentication
    Kong, Lingrui
    Wang, Jizhi
    Zhao, Yue
    Sui, Tongtong
    PROCEEDINGS OF 2024 3RD INTERNATIONAL CONFERENCE ON CRYPTOGRAPHY, NETWORK SECURITY AND COMMUNICATION TECHNOLOGY, CNSCT 2024, 2024, : 177 - 183
  • [8] BTCAS: A Blockchain-Based Thoroughly Cross-Domain Authentication Scheme
    Zhang, Hongxia
    Chen, Xingshu
    Lan, Xiao
    Jin, Hongjian
    Cao, Qi
    JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2020, 55
  • [9] BCAE: A Blockchain-Based Cross Domain Authentication Scheme for Edge Computing
    Zhang, Shiwen
    Yan, Ziwei
    Liang, Wei
    Li, Kuan-Ching
    Di Martino, Beniamino
    IEEE INTERNET OF THINGS JOURNAL, 2024, 11 (13): : 24035 - 24048
  • [10] A Blockchain-based Privacy-Preserving Scheme for Cross-domain Authentication
    Jiang, Junfeng
    Zhang, Yujian
    Li, Junhao
    2022 IEEE INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS, TRUSTCOM, 2022, : 992 - 999