Time-based legality of information flow in the capability-based access control model for the Internet of Things

被引:7
|
作者
Nakamura, Shigenari [1 ]
Enokido, Tomoya [2 ]
Takizawa, Makoto [3 ]
机构
[1] Tokyo Metropolitan Ind Technol Res Inst, Tokyo, Japan
[2] Rissho Univ, Fac Business Adm, Tokyo, Japan
[3] Hosei Univ, Fac Sci & Engn, Tokyo, Japan
来源
CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE | 2021年 / 33卷 / 23期
基金
日本学术振兴会;
关键词
CBAC model; device security; illegal information flow; information flow control; IoT; late information flow; PROTOCOL;
D O I
10.1002/cpe.5944
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
The Internet of Things is composed of sensor and actuator devices. Devices have to be securely accessed by subjects. In this article, we take the capability-based access control (CBAC) model where a subject is issued a capability token to manipulate a device by a device owner. In the CBAC model, information which a subject is not allowed to get may illegally flow to the subject. Hence, the operation interruption (OI) protocol to prevent illegal information flow is proposed in our previous studies. However, although a subject is not allowed to get data at time tau, the subject can get the data later than the time tau. Here, the data come to the subject later than expected by the subject to get the data, that is, the information flows late to the subject. In this article, we newly propose a time-based OI (TBOI) protocol to prevent not only illegal information flow but also late information flow. Here, operations implying illegal or late information flow are interrupted, that is, not performed at devices. In the evaluation, we show not only illegal information flow but also late information flow are prevented in the TBOI protocol differently from the OI protocol.
引用
收藏
页数:12
相关论文
共 50 条
  • [1] Information Flow Control Based on the CapBAC (Capability-Based Access Control) Model in the IoT
    Nakamura, Shigenari
    Enokido, Tomoya
    Takizawa, Makoto
    INTERNATIONAL JOURNAL OF MOBILE COMPUTING AND MULTIMEDIA COMMUNICATIONS, 2019, 10 (04) : 13 - 25
  • [2] A Federated Capability-based Access Control Mechanism for Internet of Things (IoTs)
    Xu, Ronghua
    Chen, Yu
    Blasch, Erik
    Chen, Genshe
    SENSORS AND SYSTEMS FOR SPACE APPLICATIONS XI, 2018, 10641
  • [3] A capability-based security approach to manage access control in the Internet of Things
    Gusmeroli, Sergio
    Piccione, Salvatore
    Rotondi, Domenico
    MATHEMATICAL AND COMPUTER MODELLING, 2013, 58 (5-6) : 1189 - 1205
  • [4] Exploiting Smart Contracts for Capability-Based Access Control in the Internet of Things
    Nakamura, Yuta
    Zhang, Yuanyu
    Sasabe, Masahiro
    Kasahara, Shoji
    SENSORS, 2020, 20 (06)
  • [5] Capability-Based Access Control for the Internet of Things: An Ethereum Blockchain-Based Scheme
    Nakamura, Yuta
    Zhang, Yuanyu
    Sasabe, Masahiro
    Kasahara, Shoji
    2019 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2019,
  • [6] Capability-Based Information Flow Control Model in the IoT
    Nakamura, Shigenari
    Enokido, Tomoya
    Barolli, Leonard
    Takizawa, Makoto
    INNOVATIVE MOBILE AND INTERNET SERVICES IN UBIQUITOUS COMPUTING, IMIS-2019, 2020, 994 : 63 - 71
  • [7] Capability-based access control model for distributed systems
    Zheng, Qingji
    Chen, Kefei
    ADVANCING SCIENCE THROUGH COMPUTATION, 2008, : 104 - 109
  • [8] Time-Based Access Control for Multi-attribute Data in Internet of Things
    Baowei Wang
    Wei Li
    Neal N. Xiong
    Mobile Networks and Applications, 2021, 26 : 797 - 807
  • [9] Time-Based Access Control for Multi-attribute Data in Internet of Things
    Wang, Baowei
    Li, Wei
    Xiong, Neal N.
    MOBILE NETWORKS & APPLICATIONS, 2021, 26 (02): : 797 - 807
  • [10] A Traceable Capability-based Access Control for IoT
    Li, Chao
    Li, Fan
    Huang, Cheng
    Yin, Lihua
    Luo, Tianjie
    Wang, Bin
    CMC-COMPUTERS MATERIALS & CONTINUA, 2022, 72 (03): : 4967 - 4982