BIoAC: A blockchain-based secure access control management for the Internet of Things

被引:0
|
作者
Roy, Utsa [1 ]
Ghosh, Nirnay [1 ]
机构
[1] Indian Inst Engn Sci & Technol, Dept Comp Sci & Technol, Sibpur 711103, India
关键词
Blockchain; Hyperledger fabric; ABAC policy; Access control; Smart contract; Edge-to-edge communication; CONTROL FRAMEWORK; IOT; AUTHENTICATION; PROTOCOL;
D O I
10.1016/j.jisa.2024.103897
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The Internet of Things (IoT) paradigm has widespread applications across many fields in which private and sensitive user or environmental data are sensed and shared. Most present-day IoT applications depend on centralized cloud servers for authentication and access control. Validating the identity of a user and determining the legitimacy of his/her access requests require multiple rounds of data communications over the untrusted Internet, exposing sensitive data to potential attacks. Thus, protecting these data from security and privacy attacks and ensuring legitimate access is imperative. To address this challenge, we adopt an emerging technology called blockchain to propose a decentralized security framework called BloAC. It ensures secure access control in IoT networks without the intervention of the back-end cloud. We have used the Hyperledger Fabric, an open-source, permissioned blockchain platform, for implementing a prototype system using customized attribute-based access control (ABAC) policies. We have performed simulated and real test bed-based experiments to illustrate that BloAC outperforms the cloud-server-based access control in latency and scalability, significantly reducing latency by up to 42.45% compared to cloud-based solutions. Finally, we conduct a security analysis to formally verify the ABAC policies used in BloAC and establish its robustness against attacks theoretically and using the AVISPA tool.
引用
收藏
页数:14
相关论文
共 50 条
  • [1] SDACS: Blockchain-Based Secure and Dynamic Access Control Scheme for Internet of Things
    Gong, Qinghua
    Zhang, Jinnan
    Wei, Zheng
    Wang, Xinmin
    Zhang, Xia
    Yan, Xin
    Liu, Yang
    Dong, Liming
    SENSORS, 2024, 24 (07)
  • [2] Blockchain-Based Access Control for the Internet of Things: A Survey
    Abdulrahman, Ebtihal
    Alshehri, Suhair
    Cherif, Asma
    2021 IEEE ASIA-PACIFIC CONFERENCE ON COMPUTER SCIENCE AND DATA ENGINEERING (CSDE), 2021,
  • [3] Blockchain-Based Secure and Lightweight Authentication for Internet of Things
    Yang, Xu
    Yang, Xuechao
    Yi, Xun
    Khalil, Ibrahim
    Zhou, Xiaotong
    He, Debiao
    Huang, Xinyi
    Nepal, Surya
    IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (05) : 3321 - 3332
  • [4] Towards Blockchain-Based Identity and Access Management for Internet of Things in Enterprises
    Nuss, Martin
    Puchta, Alexander
    Kunz, Michael
    TRUST, PRIVACY AND SECURITY IN DIGITAL BUSINESS, 2018, 11033 : 167 - 181
  • [5] FairAccess: a new Blockchain-based access control framework for the Internet of Things
    Ouaddah, Aafaf
    Abou Elkalam, Anas
    Ouahman, Abdellah Ait
    SECURITY AND COMMUNICATION NETWORKS, 2016, 9 (18) : 5943 - 5964
  • [6] Blockchain-Based Internet of Things Access Control Technology in Intelligent Manufacturing
    Zhai, Peng
    He, Jingsha
    Zhu, Nafei
    APPLIED SCIENCES-BASEL, 2022, 12 (07):
  • [7] BacS: A blockchain-based access control scheme in distributed internet of things
    Shi, Na
    Tan, Liang
    Yang, Ciaxia
    He, Chen
    Xu, Junli
    Lu, Yang
    Xu, Hao
    PEER-TO-PEER NETWORKING AND APPLICATIONS, 2021, 14 (05) : 2585 - 2599
  • [8] Blockchain-Based Access Control Model for Security Attributes in the Internet of Things
    Yan, Xincheng
    Wu, Jianhua
    Zhou, Na
    Jiang, Zhihong
    Wu, Juqin
    Yin, Jianhui
    Liu, Ying
    2023 IEEE INTERNATIONAL CONFERENCES ON INTERNET OF THINGS, ITHINGS IEEE GREEN COMPUTING AND COMMUNICATIONS, GREENCOM IEEE CYBER, PHYSICAL AND SOCIAL COMPUTING, CPSCOM IEEE SMART DATA, SMARTDATA AND IEEE CONGRESS ON CYBERMATICS,CYBERMATICS, 2024, : 95 - 101
  • [9] LBAC: A lightweight blockchain-based access control scheme for the internet of things
    Qin, Xuanmei
    Huang, Yongfeng
    Yang, Zhen
    Li, Xing
    INFORMATION SCIENCES, 2021, 554 : 222 - 235
  • [10] Cost-Efficient Blockchain-Based Access Control for the Internet of Things
    Wiraatmaja, Christopher
    Zhang, Yuanyu
    Sasabe, Masahiro
    Kasahara, Shoji
    2021 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2021,