FairAccess: a new Blockchain-based access control framework for the Internet of Things

被引:413
作者
Ouaddah, Aafaf [1 ]
Abou Elkalam, Anas [1 ]
Ouahman, Abdellah Ait [1 ]
机构
[1] Cadi Ayyad Univ, ENSA Marrakesh, Oscars Lab, BP 575, Marrakech 40000, Morocco
关键词
Internet of Things; security; privacy; access control; bitcoin; blockchain;
D O I
10.1002/sec.1748
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Security and privacy are huge challenges in Internet of Things (IoT) environments, but unfortunately, the harmonization of the IoT-related standards and protocols is hardly and slowly widespread. In this paper, we propose a new framework for access control in IoT based on the blockchain technology. Our first contribution consists in providing a reference model for our proposed framework within the Objectives, Models, Architecture and Mechanism specification in IoT. In addition, we introduce FairAccess as a fully decentralized pseudonymous and privacy preserving authorization management framework that enables users to own and control their data. To implement our model, we use and adapt the blockchain into a decentralized access control manager. Unlike financial bitcoin transactions, FairAccess introduces new types of transactions that are used to grant, get, delegate, and revoke access. As a proof of concept, we establish an initial implementation with a Raspberry PI device and local blockchain. Finally, we discuss some limitations and propose further opportunities. (C) 2017 John Wiley & Sons, Ltd.
引用
收藏
页码:5943 / 5964
页数:22
相关论文
共 36 条
[1]  
[Anonymous], 2001, LECT NOTECOMPUTER
[2]  
[Anonymous], 2010, 2010 INT C INF NETW
[3]  
[Anonymous], 2006, Tapping into the pulse of the market: essays on marketing implications of information flows
[4]  
[Anonymous], OAUTH 2 0 I IN PRESS
[5]  
[Anonymous], OAUTH 2 0 I IN PRESS
[6]  
[Anonymous], SECURE DATA MANAGEME
[7]  
[Anonymous], 15408 ISO IS
[8]  
[Anonymous], 2003, THESIS
[9]  
[Anonymous], ARCHITECTUR IN PRESS
[10]  
[Anonymous], THESIS