DAXiot: A Decentralized Authentication and Authorization Scheme for Dynamic IoT Networks

被引:0
|
作者
Philipp, Artur [1 ]
Kuepper, Axel [1 ]
Raschke, Philip [1 ]
机构
[1] Tech Univ Berlin, Serv Centr Networking SNET, Berlin, Germany
关键词
Internet of Things; Decentralized Identifiers; Verifiable Credentials; Decentralization; Dynamic Networks; STATE;
D O I
10.1109/ICIN60470.2024.10494415
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Federated and decentralized networks supporting frequently changing network participants are a requirement for future Internet of Things (IoT) use cases. IoT devices and networks often lack adequate authentication and authorization mechanisms, resulting in insufficient security and privacy for network participants. In this work we address both issues by designing a privacy preserving challenge-response style authentication and authorization scheme based on Decentralized Identifiers and Verifiable Credentials. Our solution allows decentralized permission management of frequently changing network participants and supports authenticated encryption for data confidentiality. We demonstrate our solution in an MQTT 5.0 scenario and evaluate its security, privacy, as well as its performance.
引用
收藏
页码:25 / 31
页数:7
相关论文
共 50 条
  • [1] ECC based inter-device authentication and authorization scheme using MQTT for IoT networks
    Lohachab, Ankur
    Karambir
    [J]. JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2019, 46 : 1 - 12
  • [2] A decentralized blockchain-based authentication scheme for cross-communication in IoT networks
    Chaira, Mahmoud
    Aouag, Sofiane
    Cherroun, Hadda
    Brik, Bouziane
    Rezgui, Abdelmounaam
    [J]. CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS, 2024, 27 (03): : 2505 - 2523
  • [3] An adaptive authentication and authorization scheme for IoT's gateways: a blockchain based approach
    Fayad, Achraf
    Hammi, Badis
    Khatoun, Rida
    [J]. 2018 THIRD INTERNATIONAL CONFERENCE ON SECURITY OF SMART CITIES, INDUSTRIAL CONTROL SYSTEM AND COMMUNICATIONS (SSIC), 2018,
  • [4] Authentication and Authorization for Interoperable IoT Architectures
    Fotiou, Nikos
    Polyzos, George C.
    [J]. EMERGING TECHNOLOGIES FOR AUTHORIZATION AND AUTHENTICATION, ETAA 2018, 2018, 11263 : 3 - 16
  • [5] DecAuth: Decentralized Authentication Scheme for IoT Device Using Ethereum Blockchain
    Mohanta, Bhabendu K.
    Sahoo, Anisha
    Patel, Shibasis
    Panda, Soumyashree S.
    Jena, Debasish
    Gountia, Debasis
    [J]. PROCEEDINGS OF THE 2019 IEEE REGION 10 CONFERENCE (TENCON 2019): TECHNOLOGY, KNOWLEDGE, AND SOCIETY, 2019, : 558 - 563
  • [6] AccA: A Decentralized and Accumulator-Based Authentication and Authorization Architecture for Autonomous IoT in Connected Infrastructures
    Salin, Hannes
    [J]. PROCEEDINGS OF THE 8TH INTERNATIONAL CONFERENCE ON INTERNET OF THINGS, BIG DATA AND SECURITY, IOTBDS 2023, 2023, : 170 - 177
  • [7] Decentralized Authorization and Authentication Based on Consortium Blockchain
    Zhang, Ao
    Bai, Xiaoying
    [J]. BLOCKCHAIN AND TRUSTWORTHY SYSTEMS, BLOCKSYS 2019, 2020, 1156 : 267 - 272
  • [8] Mobile trust negotiation - Authentication and authorization in dynamic mobile networks
    van der Horst, TW
    Sundelin, T
    Seamons, KE
    Knutson, CD
    [J]. Communications and Multimedia Security, 2005, 175 : 97 - 109
  • [9] Decentralized IoT Data Authorization with Pebble Tracker
    Fan, Xinxin
    Chai, Qi
    Li, Zhefeng
    Pan, Tian
    [J]. 2020 IEEE 6TH WORLD FORUM ON INTERNET OF THINGS (WF-IOT), 2020,
  • [10] A scheme for authentication and authorization in a grid application
    Hu, HP
    Yao, HB
    [J]. 19th International Conference on Advanced Information Networking and Applications, Vol 1, Proceedings: AINA 2005, 2005, : 383 - 387