Towards Secure Distributed Trust Management on a Global Scale An analytical approach for applying Distributed Ledgers for authorization in the IoT

被引:13
|
作者
Alexopoulos, Nikolaos [1 ]
Habib, Sheikh Mahbub [1 ]
Muehlhaeuser, Max [1 ]
机构
[1] Tech Univ Darmstadt, Darmstadt, Germany
关键词
ACCESS-CONTROL;
D O I
10.1145/3229565.3229569
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Authorization, and more generally Trust Management (TM), is an indispensable part of the correct operation of most IT systems. The advent of the Internet of Things (IoT), with its cyber-physical and distributed nature, creates new challenges, that existing TM systems cannot adequately address, such as for example the need for non-interactive exclusive access enforcement. In the meantime, a line of thought in the research community is that Distributed Ledgers (DLs), like the one implemented by the Ethereum blockchain, can provide strong security guarantees for distributed access control. However, this approach has not yet been examined in a scientific, systematic manner, and has many pitfalls, with arguably the most important one being scalability. In this paper, we critically explore the shortcomings of existing solutions for trust management in distributed networks, pinpoint which of these shortcomings can be addressed by utilizing DLs, and offer a conceptual design for a scalable, secure TM system. Our design approaches the problem in three layers, namely a global, an intermediate group or shard layer, and a local layer, corresponding to the set of embedded devices behind an internet access point. We view our design as a novel first step, helping the community to produce more secure and realistic authorization solutions for the IoT, in the near future.
引用
收藏
页码:49 / 54
页数:6
相关论文
共 50 条
  • [1] A distributed advanced analytical trust model for IoT
    Boudagdigue, Chaimae
    Benslimane, Abderrahim
    Kobbane, Abdellatif
    Elmachkour, Mouna
    [J]. 2018 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC), 2018,
  • [2] Trust assessment: a personalized, distributed, and secure approach
    Carchiolo, Vincenza
    Longheu, Alessandro
    Malgeri, Michele
    Mangioni, Giuseppe
    [J]. CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2012, 24 (06): : 605 - 617
  • [3] Witness-based Approach for Scaling Distributed Ledgers to Massive IoT Scenarios
    Due-Lam Nguyen
    Leyva-Mayorga, Israel
    Popovski, Petar
    [J]. 2020 IEEE 6TH WORLD FORUM ON INTERNET OF THINGS (WF-IOT), 2020,
  • [4] Secure sharing of industrial IoT data based on distributed trust management and trusted execution environments: a federated learning approach
    Zheng, Wei
    Cao, Yang
    Tan, Haining
    [J]. NEURAL COMPUTING & APPLICATIONS, 2023, 35 (29): : 21499 - 21509
  • [5] Secure sharing of industrial IoT data based on distributed trust management and trusted execution environments: a federated learning approach
    Wei Zheng
    Yang Cao
    Haining Tan
    [J]. Neural Computing and Applications, 2023, 35 : 21499 - 21509
  • [6] DTMSim-IoT: A Distributed Trust Management Simulator for IoT Networks
    Hamdani, Syed Wasif Abbas
    Khan, Abdul Waheed
    Iltaf, Naima
    Iqbal, Waseem
    [J]. 2020 IEEE INTL CONF ON DEPENDABLE, AUTONOMIC AND SECURE COMPUTING, INTL CONF ON PERVASIVE INTELLIGENCE AND COMPUTING, INTL CONF ON CLOUD AND BIG DATA COMPUTING, INTL CONF ON CYBER SCIENCE AND TECHNOLOGY CONGRESS (DASC/PICOM/CBDCOM/CYBERSCITECH), 2020, : 491 - 498
  • [7] Blockchain based distributed trust management in IoT and IIoT: a survey
    Lahbib, Asma
    Toumi, Khalifa
    Laouiti, Anis
    Martin, Steven
    [J]. JOURNAL OF SUPERCOMPUTING, 2024, 80 (15): : 21867 - 21919
  • [8] Defense for Selective Attacks in the IoT with a Distributed Trust Management Scheme
    Mendoza, Carolina V. L.
    Kleinschmidt, Joao H.
    [J]. 2016 IEEE INTERNATIONAL SYMPOSIUM ON CONSUMER ELECTRONICS - 20TH IEEE ISCE, 2016, : 53 - 54
  • [9] An adaptable distributed trust management framework for large-scale secure service-based systems
    Stephen S. Yau
    Yisheng Yao
    Arun Balaji Buduru
    [J]. Computing, 2014, 96 : 925 - 949
  • [10] An adaptable distributed trust management framework for large-scale secure service-based systems
    Yau, Stephen S.
    Yao, Yisheng
    Buduru, Arun Balaji
    [J]. COMPUTING, 2014, 96 (10) : 925 - 949