Securing Home IoT Environments with Attribute-Based Access Control

被引:38
|
作者
Bezawada, Bruhadeshwar [1 ]
Haefner, Kyle [1 ]
Ray, Indrakshi [1 ]
机构
[1] Colorado State Univ, Dept Comp Sci, Ft Collins, CO 80523 USA
来源
PROCEEDINGS OF THE THIRD ACM WORKSHOP ON ATTRIBUTE-BASED ACCESS CONTROL (ABAC'18) | 2018年
关键词
NIST NGAC; Attribute-Based Access Control; Internet-of-Things; Home IoT environment; IoT networks; PHYSICAL DEVICE; INTERNET;
D O I
10.1145/3180457.3180464
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Rapid advances in IoT networks have led to the proliferation of several end-user IoT devices. A modern day home IoT environment now resembles a complete network ecosystem with a variety of devices co-existing and operating concurrently. It is necessary that these devices do not disrupt the operations of other devices, either accidentally or maliciously. Accidental disruptions are usually due to misconfigured devices, which may, for instance, result in a device sending network broadcasts and flooding the network. Malicious disruptions may be caused by devices being compromised by attackers or due to devices purchased from untrusted manufacturers. An intentional disruption can include sending control information to other devices to manipulate their operations, and requesting for sensitive information such as surveillance videos or camera pictures. One way of preventing such disruptions is by enforcing access control on IoT devices. Attribute-Based Access Control is the most appropriate model because of its ability to enforce access control based on the attributes of the devices, users, and environment context. We consider the NIST Next Generation Access Control (NGAC) specification for our ABAC requirements because of several reasons, including its support for adaptive policies, efficiency, and ease of policy management.
引用
收藏
页码:43 / 53
页数:11
相关论文
共 50 条
  • [1] Securing Smart Home IoT Systems with Attribute-Based Access Control
    Goyal, Gaurav
    Liu, Peng
    Sural, Shamik
    SAT-CPS'22: PROCEEDINGS OF THE 2022 ACM WORKSHOP ON SECURE AND TRUSTWORTHY CYBER-PHYSICAL SYSTEMS, 2022, : 37 - 46
  • [2] Attribute-Based Access Control Scheme in Federated IoT Platforms
    Sciancalepore, Savio
    Pilc, Michal
    Schroeder, Svenja
    Bianchi, Giuseppe
    Boggia, Gennaro
    Pawlowski, Marek
    Piro, Giuseppe
    Plociennik, Marcin
    Weisgrab, Hannes
    INTEROPERABILITY AND OPEN-SOURCE SOLUTIONS FOR THE INTERNET OF THINGS (INTEROSS-IOT 2016), 2017, 10218 : 123 - 138
  • [3] An extended Attribute-based access control with controlled delegation in IoT
    Tegane, Saher
    Semchedine, Fouzi
    Boudries, Abdelmalek
    JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2023, 76
  • [4] A Systematic Comparison between the Ethereum and Hyperledger Fabric Blockchain Platforms for Attribute-Based Access Control in Smart Home IoT Environments
    Pancari, Stefan
    Rashid, Anik
    Zheng, Jason
    Patel, Shirali
    Wang, Yi
    Fu, Jian
    SENSORS, 2023, 23 (16)
  • [5] A Zero Trust and Attribute-Based Encryption Scheme for Dynamic Access Control in Power IoT Environments
    Huang, Wenhua
    Xie, Xuemin
    Wang, Ziying
    Feng, Jingyu
    ADVANCES IN NATURAL COMPUTATION, FUZZY SYSTEMS AND KNOWLEDGE DISCOVERY, ICNC-FSKD 2022, 2023, 153 : 1338 - 1345
  • [6] Securing User Access at IoT Middleware Using Attribute Based Access Control
    Garg, Hittu
    Dave, Mayank
    2019 10TH INTERNATIONAL CONFERENCE ON COMPUTING, COMMUNICATION AND NETWORKING TECHNOLOGIES (ICCCNT), 2019,
  • [7] Securing cloud access with enhanced attribute-based cryptography
    Kumar, Ashutosh
    Verma, Garima
    COMPUTING, 2024, 106 (12) : 4193 - 4207
  • [8] Attribute-Based Access Control
    Hu, Vincent C.
    Kuhn, D. Richard
    Ferraiolo, David F.
    COMPUTER, 2015, 48 (02) : 85 - 88
  • [9] An Attribute-Based Distributed Access Control for Blockchain-enabled IoT
    Wang, Peng
    Yue, Yanlin
    Sun, Wen
    Liu, Jiajia
    2019 INTERNATIONAL CONFERENCE ON WIRELESS AND MOBILE COMPUTING, NETWORKING AND COMMUNICATIONS (WIMOB), 2019,
  • [10] A Novel Attribute-Based Access Control Scheme Using Blockchain for IoT
    Ding, Sheng
    Cao, Jin
    Li, Chen
    Fan, Kai
    Li, Hui
    IEEE ACCESS, 2019, 7 : 38431 - 38441