Towards Secure Distributed Trust Management on a Global Scale An analytical approach for applying Distributed Ledgers for authorization in the IoT

被引:13
|
作者
Alexopoulos, Nikolaos [1 ]
Habib, Sheikh Mahbub [1 ]
Muehlhaeuser, Max [1 ]
机构
[1] Tech Univ Darmstadt, Darmstadt, Germany
关键词
ACCESS-CONTROL;
D O I
10.1145/3229565.3229569
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Authorization, and more generally Trust Management (TM), is an indispensable part of the correct operation of most IT systems. The advent of the Internet of Things (IoT), with its cyber-physical and distributed nature, creates new challenges, that existing TM systems cannot adequately address, such as for example the need for non-interactive exclusive access enforcement. In the meantime, a line of thought in the research community is that Distributed Ledgers (DLs), like the one implemented by the Ethereum blockchain, can provide strong security guarantees for distributed access control. However, this approach has not yet been examined in a scientific, systematic manner, and has many pitfalls, with arguably the most important one being scalability. In this paper, we critically explore the shortcomings of existing solutions for trust management in distributed networks, pinpoint which of these shortcomings can be addressed by utilizing DLs, and offer a conceptual design for a scalable, secure TM system. Our design approaches the problem in three layers, namely a global, an intermediate group or shard layer, and a local layer, corresponding to the set of embedded devices behind an internet access point. We view our design as a novel first step, helping the community to produce more secure and realistic authorization solutions for the IoT, in the near future.
引用
收藏
页码:49 / 54
页数:6
相关论文
共 50 条
  • [31] A Distributed Energy-Aware Trust Management System for Secure Routing in Wireless Sensor Networks
    Stelios, Yannis
    Papayanoulas, Nikos
    Trakadas, Panagiotis
    Maniatis, Sotiris
    Leligou, Helen C.
    Zahariadis, Theodore
    [J]. MOBILE LIGHTWEIGHT WIRELESS SYSTEMS, 2009, 13 : 85 - 92
  • [32] A novel Paradigm for Access Control Trust in IoT Applications: A Distributed Cross-Communication Approach
    Obaidat, Muath A.
    Brown, Joseph
    Al Hayajneh, Abdullah
    [J]. PROCEEDINGS OF THE 2021 13TH IFIP WIRELESS AND MOBILE NETWORKING CONFERENCE (WMNC 2021), 2021, : 25 - 31
  • [33] Towards Distributed SDN: Mobility Management and Flow Scheduling in Software Defined Urban IoT
    Wu, Di
    Nie, Xiang
    Asmare, Eskindir
    Arkhipov, Dmitri I.
    Qin, Zhijing
    Li, Renfa
    McCann, Julie A.
    Li, Keqin
    [J]. IEEE TRANSACTIONS ON PARALLEL AND DISTRIBUTED SYSTEMS, 2020, 31 (06) : 1400 - 1418
  • [34] A Distributed Approach towards Improved Dissemination Protocol for Smooth Handover in MediaSense IoT Platform
    Ahmad, Shabir
    Hussain, Ishfaq
    Fayaz, Muhammad
    Kim, Do-Hyeun
    [J]. PROCESSES, 2018, 6 (05):
  • [35] Towards Secure and Trustworthy Flash Loans: A Blockchain-Based Trust Management Approach
    Xie, Yining
    Kang, Xin
    Li, Tieyan
    Chu, Cheng-Kang
    Wang, Haiguang
    [J]. NETWORK AND SYSTEM SECURITY, NSS 2022, 2022, 13787 : 499 - 513
  • [36] A global view oriented approach to directory management in distributed spatial database
    Huang, Zhou
    Fang, Yu
    Chen, Bin
    Yin, Dafei
    Peng, Xia
    [J]. GEOINFORMATICS 2006: GNSS AND INTEGRATED GEOSPATIAL APPLICATIONS, 2006, 6418
  • [37] A Distributed Trust Management Mechanism for the Internet of Things Using a Multi-Service Approach
    Lezama Mendoza, Carolina Veronica
    Kleinschmidt, Joao Henrique
    [J]. WIRELESS PERSONAL COMMUNICATIONS, 2018, 103 (03) : 2501 - 2513
  • [38] A Distributed Trust Management Mechanism for the Internet of Things Using a Multi-Service Approach
    Carolina Veronica Lezama Mendoza
    João Henrique Kleinschmidt
    [J]. Wireless Personal Communications, 2018, 103 : 2501 - 2513
  • [39] Applying the P2P paradigm to management of large-scale distributed networks using a Model Driven Approach
    Carroll, Ray
    Fahy, Claire
    Lehtihet, Elyes
    van der Meer, Sven
    Georgalas, Nektarios
    Cleary, David
    [J]. 2006 IEEE/IFIP NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM, VOLS 1 AND 2, 2006, : 671 - +
  • [40] NFV and SDN-Based Distributed IoT Gateway for Large-Scale Disaster Management
    Mouradian, Carla
    Jahromi, Narjes Tahghigh
    Glitho, Roch H.
    [J]. IEEE INTERNET OF THINGS JOURNAL, 2018, 5 (05): : 4119 - 4131