A Context-Aware Break Glass Access Control System for IoT Environments

被引:0
|
作者
Van Bael, Dries [1 ]
Kalantari, Shirin [1 ]
Put, Andreas [1 ]
De Decker, Bart [1 ]
机构
[1] Katholieke Univ Leuven, Imec DistriNet, Leuven, Belgium
关键词
Access Control; Break Glass; Internet of Things; INTERNET;
D O I
10.1109/IOTSMS52051.2020.9340209
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
In Internet of Things (IoT) environments, sensors measure and quantify properties of physical locations, objects and even people. Context-aware access control systems include this data in the decision making process to improve their accuracy and precision. However, access control systems can fail when unexpected situations occur for which no access rules have been defined. One solution implemented by access control systems for critical infrastructure (e.g. a hospital, factory production line), is to break the glass in case of emergency to temporarily obtain the necessary privileges. During this process, sufficient non-repudiation evidence must be collected, which is audited at a later stage to verify whether the emergency access was justified. Shortcomings of existing Break Glass models are twofold: firstly, Break Glass is mostly considered as a static process for which the activation requirements and granted privileges are not adapted to the context of the emergency situation; secondly, a closed environment such as a hospital with authenticated caregivers is generally assumed, which is not realistic for open environments. In this paper, we present a context-aware Break Glass system architecture, which uses contextual information to detect ongoing emergencies, and allows the activation requirements and temporary privileges to be be adapted to the current situation or emergency. Furthermore, the system includes a fail-safe operation to disable the Break Glass activation if the emergency was wrongly detected. Our prototype shows the soundness of the design and its practical feasibility to be used in time-critical scenarios.
引用
收藏
页数:8
相关论文
共 50 条
  • [1] Adaptive context-aware access control for IoT environments leveraging fog computing
    Kalaria, Rudri
    Kayes, A. S. M.
    Rahayu, Wenny
    Pardede, Eric
    Salehi Shahraki, Ahmad
    [J]. INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2024, 23 (04) : 3089 - 3107
  • [2] Context-aware Automatic Access Policy Specification for IoT Environments
    Alkhresheh, Ashraf
    Elgazzar, Khalid
    Hassanein, Hossam S.
    [J]. 2018 14TH INTERNATIONAL WIRELESS COMMUNICATIONS & MOBILE COMPUTING CONFERENCE (IWCMC), 2018, : 793 - 799
  • [3] A semantic context-aware access control in pervasive environments
    Ko, Hyuk Jin
    Won, Dong Ho
    Shin, Dong Ryul
    Choo, Hyun Seung
    Kim, Ung Mo
    [J]. COMPUTATIONAL SCIENCE AND ITS APPLICATIONS - ICCSA 2006, PT 2, 2006, 3981 : 165 - 174
  • [4] A Context-Aware Access Control Model for Pervasive Environments
    Al-Rwais, Sumayah
    Al-Muhtadi, Jalal
    [J]. NSS: 2009 3RD INTERNATIONAL CONFERENCE ON NETWORK AND SYSTEM SECURITY, 2009, : 425 - +
  • [5] A Context-aware Access Control Model for Pervasive Environments
    Al-Rwais, Sumayah
    Al-Muhtadi, Jalal
    [J]. IETE TECHNICAL REVIEW, 2010, 27 (05) : 371 - 379
  • [6] A context-aware access control model for pervasive computing environments
    Emami, Sareh Sadat
    Amini, Morteza
    Zokaei, Saadan
    [J]. 2007 INTERNATIONAL CONFERENCE ON INTELLIGENT PERVASIVE COMPUTING, PROCEEDINGS, 2007, : 51 - +
  • [7] A Quality of Context-Aware Approach to Access Control in Pervasive Environments
    Toninelli, Alessandra
    Corradi, Antonio
    Montanari, Rebecca
    [J]. MOBILE WIRELESS MIDDLEWARE, OPERATING SYSTEMS, AND APPLICATIONS, 2009, 7 : 236 - 251
  • [8] Context-Aware Distribution In Constrained IoT Environments
    Eyckerman, Reinout
    Sharif, Muddsair
    Mercelis, Siegfried
    Hellinckx, Peter
    [J]. ADVANCES ON P2P, PARALLEL, GRID, CLOUD AND INTERNET COMPUTING, 3PGCIC-2018, 2019, 24 : 437 - 446
  • [9] Context-aware control and monitoring system with IoT and cloud support
    Dobrescu, Radu
    Merezeanu, Daniel
    Mocanu, Stefan
    [J]. COMPUTERS AND ELECTRONICS IN AGRICULTURE, 2019, 160 : 91 - 99
  • [10] A Context-Aware Mandatory Access Control Model for Multilevel Security Environments
    Jafarian, Jafar Haadi
    Amini, Morteza
    Jalili, Rasool
    [J]. COMPUTER SAFETY, RELIABILITY, AND SECURITY, PROCEEDINGS, 2008, 5219 : 401 - 414