TTECCDU: a blockchain-based approach for expressive authorization management

被引:1
|
作者
Mahar, Uzma [1 ]
Aleem, Muhammad [1 ]
Zahoor, Ehtesham [2 ]
机构
[1] Natl Univ Comp & Emerging Sci, Islamabad, Pakistan
[2] Educative Inc, Islamabad, Pakistan
关键词
Authorization management; Blockchain; Access control policies; Data science; INTERNET;
D O I
10.7717/peerj-cs.1212
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Authorization uses the access control policies to allow or limit a user the access to a resource. Blockchain-based access control models are used to manage authorization in a decentralized way. Many approaches exist that have provided the distributed access control frameworks which are user driven, transparent and provide fairness with its distributed architecture. Some approaches have used authorization tokens as access control mechanisms and mostly have used smart contracts for the authorization process. The problem is that most of the approaches rely on a single authorization factor like either trust or temporal; however, none has considered other important factors like cost, cardinality, or usage constraints of a resource making the existing approaches less expressive and coarse-grained. Also, the approaches using smart contracts are either complex in design or have high gas cost. To the best of our knowledge, there is no approach that uses all the important authorization factors in a unified framework. In this article, we present an authorization framework: TTECCDU that consists of multi-access control models i.e., trust-based, cost-based, temporal-based, cardinality-based, and usage-based to provide strong and expressive authorization mechanism. TTECCDU also handles the delegation context for authorization decisions. The proposed framework is implemented using smart contracts which are written in a modular form so that they are easily manageable and can be re-deployed when needed. Performance evaluation results show that our smart contracts are written in an optimized manner which consume 60.4% less gas cost when the trust-based access is compared and 59.2% less gas cost when other proposed smart contracts from our approach are compared to the existing approaches.
引用
收藏
页数:32
相关论文
共 50 条
  • [1] TTECCDU: a blockchain-based approach for expressive authorization management
    Mahar U.
    Aleem M.
    Zahoor E.
    PeerJ Computer Science, 2023, 9
  • [2] Blockchain-Based Context-Aware Authorization Management as a Service in IoT
    Sylla, Tidiane
    Mendiboure, Leo
    Chalouf, Mohamed Aymen
    Krief, Francine
    SENSORS, 2021, 21 (22)
  • [3] BIA: A Blockchain-based Identity Authorization Mechanism
    Ren, Xiaodong
    Lin, Feilong
    Chen, Zhongyu
    Tang, Changbing
    Zheng, Zhonglong
    Li, Minglu
    2020 16TH INTERNATIONAL CONFERENCE ON MOBILITY, SENSING AND NETWORKING (MSN 2020), 2020, : 98 - 105
  • [4] A blockchain-based approach for food surplus management
    Iazzolino, Gianpaolo
    Guerriero, Francesca
    Filice, Luigino
    Scarpelli, Giorgio
    AGRICULTURAL ECONOMICS-ZEMEDELSKA EKONOMIKA, 2023, 69 (07): : 276 - 283
  • [5] Trusted Blockchain-Based Signcryption Protocol and Data Management for Authentication and Authorization in VANETs
    Su, Jinqi
    Ren, Runtao
    Li, Yinghao
    Lau, Raymond Y. K.
    Shi, Yikuan
    WIRELESS COMMUNICATIONS & MOBILE COMPUTING, 2022, 2022
  • [6] Trusted Blockchain-Based Signcryption Protocol and Data Management for Authentication and Authorization in VANETs
    Su, Jinqi
    Ren, Runtao
    Li, Yinghao
    Lau, Raymond Y. K.
    Shi, Yikuan
    Wireless Communications and Mobile Computing, 2022, 2022
  • [7] Blockchain-based IoT-Cloud Authorization and Delegation
    Tapas, Nachiket
    Merlino, Giovanni
    Longo, Francesco
    2018 IEEE INTERNATIONAL CONFERENCE ON SMART COMPUTING (SMARTCOMP 2018), 2018, : 411 - 416
  • [8] Blockchain-based authentication and authorization for smart city applications
    Esposito, Christian
    Ficco, Massimo
    Gupta, Brij Bhooshan
    INFORMATION PROCESSING & MANAGEMENT, 2021, 58 (02)
  • [9] A blockchain-based user authorization management method for information exchanging of federation of industry and commerce
    Yang, Jingqi
    Li, Hanqing
    IET Blockchain, 2024, 4 (S1): : 632 - 643
  • [10] A Blockchain-Based Approach for USIM Management in Mobile Networks
    Hojjati, Maede
    Arabnouri, Arian
    Shafieinejad, Alireza
    Yanikomeroglu, Halim
    IEEE OPEN JOURNAL OF THE COMMUNICATIONS SOCIETY, 2024, 5 : 2401 - 2417