Attribute identification based IoT fog data security control and forwarding

被引:1
|
作者
Xiao, Jingxu [1 ]
Chang, Chaowen [1 ]
Wu, Ping [1 ]
Ma, Yingying [1 ,2 ]
机构
[1] Informat Engn Univ Peoples Liberat Army Strateg Su, Zhengzhou 450001, Peoples R China
[2] Zhengzhou Univ Technol, Zhengzhou, Peoples R China
基金
中国国家自然科学基金;
关键词
IoT-Fog security; Software defined network; Attribute-based signature; Packet verification; Access control;
D O I
10.7717/peerj-cs.1747
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
As Internet of Things (IoT) applications continue to proliferate, traditional cloud computing is increasingly unable to meet the low-latency demands of these applications. The IoT fog architecture solves this limitation by introducing fog servers in the fog layer that are closer to the IoT devices. However, this architecture lacks authentication mechanisms for information sources, security verification for information transmission, and reasonable allocation of fog nodes. To ensure the secure transmission of end to-end information in the IoT fog architecture, an attribute identification based security control and forwarding method for IoT fog data (AISCF) is proposed. AISCF applies attribute signatures to the IoT fog architecture and uses software defined network (SDN) to control and forward fog layer data flows. Firstly, IoT devices add attribute identifiers to the data they send based on attribute features. The ingress switch then performs fine-grained access control on the data based on these attribute identifiers. Secondly, SDN uses attribute features as flow table matching items to achieve finegrained control and forwarding of fog layer data flows based on attribute identifiers. Lastly, the egress switch dynamically samples data flows and verifies the attribute signatures of the sampled data packets at the controller end. Experimental validation has demonstrated that AISCF can effectively detect attacks such as data tampering and forged matching items. Moreover, AISCF imposes minimal overhead on network throughput, CPU utilization and packet forwarding latency, and has practicality in IoT fog architecture.
引用
收藏
页数:38
相关论文
共 50 条
  • [1] Attribute identification based IoT fog data security control and forwarding
    Xiao J.
    Chang C.
    Wu P.
    Ma Y.
    PeerJ Computer Science, 2023, 9
  • [2] A SDN Security Control Forwarding Mechanism Based on Cipher Identification
    Tang Guodong
    Qin Xi
    Chang Chaowen
    2017 IEEE 9TH INTERNATIONAL CONFERENCE ON COMMUNICATION SOFTWARE AND NETWORKS (ICCSN), 2017, : 1419 - 1425
  • [3] PROPOSED ACCESS CONTROL AND SECURITY ARCHITECTURE BASED ON FOG COMPUTING FOR IOT ENVIRONMENTS
    Bharathi, C. R.
    Ramesh, L. V.
    Priya, L. Vamsi
    INTERNATIONAL JOURNAL OF EARLY CHILDHOOD SPECIAL EDUCATION, 2022, 14 (02) : 1398 - 1404
  • [4] SDN control and forwarding method based on identity attribute
    Zhu X.
    Chang C.
    Zhu Z.
    Qin X.
    Tongxin Xuebao/Journal on Communications, 2019, 40 (11): : 1 - 18
  • [5] Data Security Through Fog Computing Paradigm Using IoT
    Singh, Jayant Kumar
    Goel, Amit Kumar
    PROCEEDINGS OF ACADEMIA-INDUSTRY CONSORTIUM FOR DATA SCIENCE (AICDS 2020), 2022, 1411 : 95 - 103
  • [6] Security-Aware Attribute-Based Access Control for Fog-Based Eldercare System
    Yin, Luona
    Zhang, Aiqing
    Ye, Xinrong
    Wang, Lei
    PROCEEDINGS OF 2017 3RD IEEE INTERNATIONAL CONFERENCE ON COMPUTER AND COMMUNICATIONS (ICCC), 2017, : 2680 - 2684
  • [7] An Effective Mechanism for FOG Computing Assisted Function Based on Trustworthy Forwarding Scheme (IOT)
    Hameed, Fatimah Mohammed Hameed
    Kurnaz, Sefer
    ELECTRONICS, 2024, 13 (14)
  • [8] ENHANCING DATA SECURITY IN IoT HEALTHCARE SERVICES USING FOG COMPUTING
    Winnie, Yumnam
    Umamaheswari, E.
    Ajay, D. M.
    PROCEEDINGS OF THE 2018 INTERNATIONAL CONFERENCE ON RECENT TRENDS IN ADVANCED COMPUTING (ICRTAC-CPS 2018), 2018, : 200 - 205
  • [9] Attribute Based Content Security and Caching in Information Centric IoT
    Sertbas, Nurefsan
    Aytac, Samet
    Ermis, Orhan
    Alagoz, Fatih
    Gur, Gurkan
    13TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY (ARES 2018), 2019,
  • [10] The Construction of Solar Greenhouse Control System Based on IoT Data Security
    Zhang, Yan
    Jiang, Xintong
    You, Guizeng
    Liu, Pengzeng
    CLOUD COMPUTING AND SECURITY, PT VI, 2018, 11068 : 123 - 132