Identifying, authenticating and authorizing smart objects and end users to cloud services in Internet of Things

被引:10
作者
Beltran, Marta [1 ]
机构
[1] Univ Rey Juan Carlos, ETSII, Dept Comp, Madrid 28933, Spain
关键词
Identification; Authentication; Authorization; Federated access control; Identity and access management; Internet of Things; IOT; PRIVACY; DEVICES;
D O I
10.1016/j.cose.2018.05.011
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Smart objects connected within the Internet of Things (loT) are often poorly physically protected, low-cost and simple embedded systems connected using Machine to Machine (M2M) and Machine to Cloud (M2C) lightweight communication protocols. These protocols guarantee basic data confidentiality and integrity, securing communication channels using cryptography, but there are still important challenges related to access control in loT. This work proposes SmartObjectConnect, a new Identity and Access Management mechanism for smart objects based on current Internet federated specifications but adapted, and redefined in certain aspects, to the specific requirements of this kind of environment. The proposed mechanism allows IoT services deployed locally or in the cloud to identify, to authenticate and to authorize smart objects using HTTP and CoAP. It also allows end users to be identified, authenticated and authorized via these smart objects if possible and/or required. Furthermore, the proposed mechanism is validated and its usability, efficiency and security are evaluated using a real healthcare case study. (C) 2018 Elsevier Ltd. All rights reserved.
引用
收藏
页码:595 / 611
页数:17
相关论文
共 32 条
  • [1] Al-Karkhi A, 2014, P 12 ACM INT S MOB M, P83
  • [2] Anonymous authentication for privacy-preserving IoT target-driven applications
    Alcaide, Almudena
    Palomar, Esther
    Montero-Castillo, Jose
    Ribagorda, Arturo
    [J]. COMPUTERS & SECURITY, 2013, 37 : 111 - 123
  • [3] [Anonymous], 8021512002 IEEE
  • [4] [Anonymous], 4944 RFC
  • [5] [Anonymous], 2017, 2017 12 INT S REC CO
  • [6] Baid A, 2012, IEEE CONF COMPUT, P298, DOI 10.1109/INFCOMW.2012.6193509
  • [7] Barreto L, 2015, IEEE CONF COMM NETW, P680, DOI 10.1109/CNS.2015.7346887
  • [8] Bonomi F., 2012, P MCCWORKSHOP MOB CL, P13, DOI 10.1145/2342509.2342513
  • [9] Integration of Cloud computing and Internet of Things: A survey
    Botta, Alessio
    de Donato, Walter
    Persico, Valerio
    Pescape, Antonio
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2016, 56 : 684 - 700
  • [10] An overview of the Internet of Things for people with disabilities
    Carmen Domingo, Mari
    [J]. JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2012, 35 (02) : 584 - 596