Federated Identity and Access Management for the Internet of Things

被引:53
|
作者
Fremantle, Paul [1 ,2 ]
Aziz, Benjamin [1 ]
Kopecky, Jacek [1 ]
Scott, Philip [1 ]
机构
[1] Univ Portsmouth, Sch Comp, Portsmouth, Hants, England
[2] WSO2 Inc, Mountain View, CA USA
关键词
Internet of Things; Computer Security; Authentication;
D O I
10.1109/SIoT.2014.8
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
We examine the use of Federated Identity and Access Management (FIAM) approaches for the Internet of Things (IoT). We look at specific challenges that devices, sensors and actuators have, and look for approaches to address them. OAuth is a widely deployed protocol - built on top of HTTP - for applying FIAM to Web systems. We explore the use of OAuth for IoT systems that instead use the lightweight MQTT 3.1 protocol. In order to evaluate this area, we built a prototype that uses OAuth 2.0 to enable access control to information distributed via MQTT. We evaluate the results of this prototyping activity, and assess the strengths and weaknesses of this approach, and the benefits of using the FIAM approaches with IoT and Machine to Machine (M2M) scenarios. Finally we outline areas for further research.
引用
收藏
页码:10 / 17
页数:8
相关论文
共 50 条
  • [1] Cloud-based federated identity for the Internet of Things
    Paul Fremantle
    Benjamin Aziz
    [J]. Annals of Telecommunications, 2018, 73 : 415 - 427
  • [2] Cloud-based federated identity for the Internet of Things
    Fremantle, Paul
    Aziz, Benjamin
    [J]. ANNALS OF TELECOMMUNICATIONS, 2018, 73 (7-8) : 415 - 427
  • [3] Towards Blockchain-Based Identity and Access Management for Internet of Things in Enterprises
    Nuss, Martin
    Puchta, Alexander
    Kunz, Michael
    [J]. TRUST, PRIVACY AND SECURITY IN DIGITAL BUSINESS, 2018, 11033 : 167 - 181
  • [4] An Identity Management Framework for Internet of Things
    Chen, Ju
    Liu, Yi
    Chai, Yueting
    [J]. 2015 IEEE 12TH INTERNATIONAL CONFERENCE ON E-BUSINESS ENGINEERING (ICEBE), 2015, : 360 - 364
  • [5] Identity Identification and Management in the Internet of Things
    Houhamdi, Zina
    Athamena, Belkacem
    [J]. INTERNATIONAL ARAB JOURNAL OF INFORMATION TECHNOLOGY, 2020, 17 (4A) : 645 - 654
  • [6] Identity Management and Integrity Protection in the Internet of Things
    Fongen, Anders
    [J]. 2012 THIRD INTERNATIONAL CONFERENCE ON EMERGING SECURITY TECHNOLOGIES (EST), 2012, : 111 - 114
  • [7] An Overview of Identity Relationship Management in the Internet of Things
    Nur, Mohammad
    Wang, Yong
    [J]. 2021 IEEE INTERNATIONAL CONFERENCE ON CONSUMER ELECTRONICS (ICCE), 2021,
  • [8] Identity management of devices in Internet of Things environment
    Trnka, Michal
    Cerny, Tomas
    [J]. 2016 6TH INTERNATIONAL CONFERENCE ON IT CONVERGENCE AND SECURITY (ICITCS 2016), 2016, : 307 - 310
  • [9] Identity Management System Model in the Internet of Things
    Athamena, Belkacem
    Houhamdi, Zina
    [J]. TEM JOURNAL-TECHNOLOGY EDUCATION MANAGEMENT INFORMATICS, 2020, 9 (04): : 1338 - 1347
  • [10] A user centric identity management for Internet of things
    Do Van Thuan
    Butkus, Pranas
    Do Van Thanh
    [J]. 2014 INTERNATIONAL CONFERENCE ON IT CONVERGENCE AND SECURITY (ICITCS), 2014,