A Comprehensive Assessment Framework for Evaluating Adaptive Security and Privacy Solutions for IoT e-Health Applications

被引:0
作者
Aman, Waqas [1 ]
Mohammed, Fatima Najla [1 ]
机构
[1] Sultan Qaboos Univ, Dept Informat Syst, Coll Econ & Polit Sci, Muscat, Oman
关键词
Internet of Things; Adaptive Security; IoT Architecture; e-Health; Effectiveness; Privacy; CONTEXT-AWARE; INTERNET; MODEL;
D O I
10.14569/IJACSA.2022.0131072
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
There exist numerous adaptive security and privacy (S&P) solutions to manage potential threats at runtime. However, there is a lack of a comprehensive assessment framework that can holistically validate their effectiveness. Existing Adaptive S&P assessment efforts either focus on privacy or security in general, or are focused on specific adaptive S&P attributes, e.g. authentication, and, at certain times, disregards the architecture in which they should be comprehended. In this paper, we propose a holistic assessment framework for evaluating adaptive S&P solutions for IoT e-health. The framework utilizes a proposed classification of essential attributes necessary to be recognized, evaluated, and incorporated for the effectiveness of adaptive S&P solutions for the most common IoT architectures, fog-based and cloud/server-based architectures. As opposed to the existing related work, the classification comprehensively covers all the major classes of essential attributes, such as S&P objectives, contextual factors, adaptation action aptitude, and the system's self-* properties. Using this classification, the framework assists to evaluate the existence of a given attribute with respect to the adaptation process and in the context of the architectural layers. Therefore, it stresses the importance of where an essential attribute should be realized in the adaptation phases and in the architecture for an adaptive S&P solution to be effective. We have also presented a comparison of the proposed assessment framework with existing related frameworks and have shown that it exhibits substantial completeness over the existing works to assess the feasibility of a given adaptive S&P solution.
引用
收藏
页码:613 / 623
页数:11
相关论文
共 28 条
[1]  
Abie H., 2012, P 7 INT C BOD AR NET, P269
[2]  
Aman W, 2019, INT J ADV COMPUT SC, V10, P280
[3]   Assessing the Feasibility of Adaptive Security Models for the Internet of Things [J].
Aman, Waqas .
HUMAN ASPECTS OF INFORMATION SECURITY, PRIVACY, AND TRUST, 2016, 9750 :201-211
[4]  
Aman W, 2015, INT CONF INTERNET, P362, DOI 10.1109/ICITST.2015.7412122
[5]  
[Anonymous], 2013, P INT WORKSHOP ADAPT
[6]  
Arfaoui A, 2018, IEEE GLOB COMM CONF
[7]  
Arfaoui A, 2018, CONSUM COMM NETWORK
[8]  
Bigham J., 2010, INT J ADV SECURITY, V3
[9]   Adaptive Cybersecurity Framework for Healthcare Internet of Things [J].
Boudko, Svetlana ;
Abie, Habtamu .
2019 13TH INTERNATIONAL SYMPOSIUM ON MEDICAL INFORMATION AND COMMUNICATION TECHNOLOGY (ISMICT), 2019, :210-215
[10]   Providing Context-Aware Security for IoT Environments Through Context Sharing Feature [J].
de Matos, Everton ;
Tiburski, Ramao Tiago ;
Amaral, Leonardo Albernaz ;
Hessel, Fabian .
2018 17TH IEEE INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS (IEEE TRUSTCOM) / 12TH IEEE INTERNATIONAL CONFERENCE ON BIG DATA SCIENCE AND ENGINEERING (IEEE BIGDATASE), 2018, :1711-1715