Dynamic Secure Access Control and Data Sharing Through Trusted Delegation and Revocation in a Blockchain-Enabled Cloud-IoT Environment

被引:11
|
作者
Alshehri, Suhair [1 ]
Bamasaq, Omaimah [2 ]
Alghazzawi, Daniyal [3 ]
Jamjoom, Arwa [3 ]
机构
[1] King Abdulaziz Univ, Fac Comp & Informat Technol, Dept Informat Technol, Jeddah 22254, Saudi Arabia
[2] King Abdulaziz Univ, Fac Comp & Informat Technol, Dept Comp Sci, Jeddah 22254, Saudi Arabia
[3] King Abdulaziz Univ, Fac Comp & Informat Technol, Dept Informat Syst, Jeddah 22254, Saudi Arabia
关键词
Blockchains; Internet of Things; Access control; Security; Cloud computing; Performance evaluation; Encryption; Access delegation; blockchain; edge computing; Internet of Things (IoT); practical Byzantine fault tolerance (PBFT) consensus; revocation; secure data sharing; ATTRIBUTE-BASED ENCRYPTION; KEY MANAGEMENT; CONTROL SCHEME; LIGHTWEIGHT; INTERNET; AUTHENTICATION; AUTHORIZATION;
D O I
10.1109/JIOT.2022.3217087
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The Internet of Things (IoT) is vulnerable to leakage of private information during data sharing. To avoid this problem, access control and secure data sharing have been introduced in IoT; however, many challenges are faced because of centralized access control and single delegator selection. Additionally, blockchain is integrated into IoT to enhance the security of the environment. For that purpose, this research proposes dynamic secure access control using the blockchain (DSA-Block) model, which performs secure access control and data sharing. Initially, the IoT device attributes and user attributes are registered at a local domain authority (LDA) for generating private and public keys using the hyperelliptic curve cryptography (HECC) algorithm, which ensures the legitimacy of the users and devices. Then, the IoT devices send a request message to the edge nodes (ENs) via a gateway, which performs request filtration by validating the user's authenticity. The filtered requests are sent to the edge server to perform access delegation using rock hyraxes swarm optimization (RHSO), which selects a set of delegator nodes. The access control decision is made by using the Trusted practical Byzantine fault tolerance (PBFT) consensus algorithm. The IoT data are stored in the cloud server for secure storage, in which the data are secured using a differential privacy mechanism. Finally, dual revocations, such as user attribute revocation and user revocation, are used to maintain security. The performance of DSA-Block is evaluated and the results demonstrate that the proposed DSA-Block model achieves superior performance compared to previous works.
引用
收藏
页码:4239 / 4256
页数:18
相关论文
共 50 条
  • [41] TEBDS: A Trusted Execution Environment-and-Blockchain-supported IoT data sharing system
    Xie, Hui
    Zheng, Jun
    He, Teng
    Wei, Shengjun
    Hu, Changzhen
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2023, 140 : 321 - 330
  • [42] Blockchain-enabled secure and efficient data sharing scheme for trust management in healthcare smartphone network
    Rati Bhan
    Rajendra Pamula
    Parvez Faruki
    Jyoti Gajrani
    [J]. The Journal of Supercomputing, 2023, 79 : 16233 - 16274
  • [43] Efficient and Secure Data Sharing for 5G Flying Drones: A Blockchain-Enabled Approach
    Feng, Chaosheng
    Yu, Keping
    Bashir, Ali Kashif
    Al-Otaibi, Yasser D.
    Lu, Yang
    Chen, Shengbo
    Zhang, Di
    [J]. IEEE NETWORK, 2021, 35 (01): : 130 - 137
  • [44] A Secure and IoT-Enabled Data Sharing System Based on IPFS and IOTA Blockchain
    Huang, Tse-Yang
    Chen, Yu-Chi
    Hsieh, Tsung-Chen
    Chang, Huan-Chi
    Chang, Chih-Chieh
    [J]. PROCEEDINGS OF 2023 5TH BLOCKCHAIN AND INTERNET OF THINGS CONFERENCE, BIOTC 2023, 2023, : 50 - 57
  • [45] RETRACTED ARTICLE: Secure Dynamic Group Data Sharing in Semi-trusted Third Party Cloud Environment
    V E Sathishkumar
    Wesam Atef Hatamleh
    Abeer Ali Alnuaim
    Mohamed Abdelhady
    B. Venkatesh
    S Santhoshkumar
    [J]. Arabian Journal for Science and Engineering, 2023, 48 : 5695 - 5695
  • [46] Secure Fine-Grained Access Control and Data Sharing for Dynamic Groups in the Cloud
    Xu, Shengmin
    Yang, Guomin
    Mu, Yi
    Deng, Robert H.
    [J]. IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2018, 13 (08) : 2101 - 2113
  • [47] Secure and Fine-Grained Access Control With Optimized Revocation for Outsourced IoT EHRs With Adaptive Load-Sharing in Fog-Assisted Cloud Environment
    Fugkeaw, Somchart
    Prasad Gupta, Rohan
    Worapaluk, Khanadech
    [J]. IEEE ACCESS, 2024, 12 : 82753 - 82768
  • [48] Secure Access Control for Electronic Health Records in Blockchain-Enabled Consumer Internet of Medical Things
    Hong, Yujie
    Yang, Liang
    Liang, Wei
    Xie, Anke
    [J]. IEEE TRANSACTIONS ON CONSUMER ELECTRONICS, 2024, 70 (01) : 4574 - 4584
  • [49] Blockchain-Enabled Secure Communication Framework for Enhancing Trust and Access Control in the Internet of Vehicles (IoV)
    Hussain, Sadia
    Tahir, Shahzaib
    Masood, Asif
    Tahir, Hasan
    [J]. IEEE ACCESS, 2024, 12 : 110992 - 111006
  • [50] A Blockchain-based access control scheme with multiple attribute authorities for secure cloud data sharing
    Qin, Xuanmei
    Huang, Yongfeng
    Yang, Zhen
    Li, Xing
    [J]. JOURNAL OF SYSTEMS ARCHITECTURE, 2021, 112