Towards Secure Smart Home IoT: Manufacturer and User Network Access Control Framework

被引:20
|
作者
Al-Shaboti, Mohammed [1 ]
Welch, Ian [1 ]
Chen, Aaron [1 ]
Mahmood, Muhammad Adeel [1 ]
机构
[1] Victoria Univ Wellington, Sch Engn & Comp Sci, Wellington, New Zealand
关键词
Smart home IoT; Network Access Control; Software-Defined Networking; INTERNET;
D O I
10.1109/AINA.2018.00131
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Insecure smart home IoT network is growing in number and size, and enforcing standard security solutions in IoT is a challenge due to its limited resources. The vulnerable smart home IoT poses huge security threats. It puts smart home network security at risk as it can be used as an entry point into the network, also it exposes users privacy due to the amount of personal data it collects. Meanwhile, as IoT increases in popularity, it has a significant impact on the security of the rest of the Internet community (e.g. forming botnets). Previous research delegates IoT security to a third party (e.g. ISP) and ignores social and contextual factor. In this paper, we propose an SDN-based framework for enforcing network static and dynamic access control, where manufacturers, security providers, and users can cooperate to enhance the smart home IoT security. Proposed approach has three features: a) it allows the manufacturers to enforce the least privileged policy for IoT, and hence reduce the risk associated with exposing IoT to the Internet; b) it enables to enforce access policy as a feedback from security services; c) it enables users to customize IoT access based on social and contextual needs (e.g. only permits LAN access to the IoT through his/her mobile), which reduce the attack surface within the network. We also proposed IPv4 ARP server as an NFV security service to mitigate ARP spoofing attack by replying to ARP requests in the network. We implement a prototype to demonstrate the functionality of the framework against common attack scenarios (i.e. network scanning, ARP spoofing).
引用
收藏
页码:892 / 899
页数:8
相关论文
共 50 条
  • [1] Secure user authentication and key agreement scheme for IoT device access control based smart home communications
    Uppuluri, Sirisha
    Lakshmeeswari, G.
    [J]. WIRELESS NETWORKS, 2023, 29 (03) : 1333 - 1354
  • [2] Secure user authentication and key agreement scheme for IoT device access control based smart home communications
    Sirisha Uppuluri
    G. Lakshmeeswari
    [J]. Wireless Networks, 2023, 29 : 1333 - 1354
  • [3] Hybrid Approaches (ABAC and RBAC) Toward Secure Access Control in Smart Home IoT
    Ameer, Safwa
    Benson, James
    Sandhu, Ravi
    [J]. IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2023, 20 (05) : 4032 - 4051
  • [4] Toward a Secure Smart-Home IoT Access Control Scheme Based on Home Registration Approach
    Wu, Tsu-Yang
    Meng, Qian
    Chen, Yeh-Cheng
    Kumari, Saru
    Chen, Chien-Ming
    [J]. MATHEMATICS, 2023, 11 (09)
  • [5] Secure Multifactor Remote Access User Authentication Framework for IoT Networks
    Alshahrani, Mohammed Mujib
    [J]. CMC-COMPUTERS MATERIALS & CONTINUA, 2021, 68 (03): : 3235 - 3254
  • [6] Secure Data Transmission with Access Control for Smart Home Devices
    Chen, Biwen
    Yang, Lei
    Xiang, Tao
    Li, Xiaoguo
    [J]. 2021 IEEE 20TH INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS (TRUSTCOM 2021), 2021, : 258 - 265
  • [7] SAFIR: Secure access framework for IoT-enabled services on smart buildings
    Hernandez-Ramos, Jose L.
    Victoria Moreno, M.
    Bernal Bernabe, Jorge
    Garcia Carrillo, Dan
    Skarmeta, Antonio F.
    [J]. JOURNAL OF COMPUTER AND SYSTEM SCIENCES, 2015, 81 (08) : 1452 - 1463
  • [8] A Secure IoT Enabled Smart Home System
    Srinivasan, P.
    Anusha, B.
    Reddy, K. Satish Kumar
    Reddy, N. Chandra Sekhar
    Maheswari, K.
    [J]. INTERNATIONAL JOURNAL OF EARLY CHILDHOOD SPECIAL EDUCATION, 2022, 14 (04) : 466 - 472
  • [9] Blockchain-Based Access Control for IoT in Smart Home Systems
    Mbarek, Bacem
    Ge, Mouzhi
    Pitner, Tomas
    [J]. DATABASE AND EXPERT SYSTEMS APPLICATIONS, DEXA 2020, PT II, 2020, 12392 : 17 - 32
  • [10] Secure mutual authentication and automated access control for IoT smart home using cumulative Keyed-hash chain
    Alshahrani, Mohammed
    Traore, Issa
    [J]. JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2019, 45 : 156 - 175