Cargando…

Microservice Security Agent Based On API Gateway in Edge Computing

Internet of Things (IoT) devices are embedded with software, electronics, and sensors, and feature connectivity with constrained resources. They require the edge computing paradigm, with modular characteristics relying on microservices, to provide an extensible and lightweight computing framework at...

Descripción completa

Detalles Bibliográficos
Autores principales: Xu, Rongxu, Jin, Wenquan, Kim, Dohyeun
Formato: Online Artículo Texto
Lenguaje:English
Publicado: MDPI 2019
Materias:
Acceso en línea:https://www.ncbi.nlm.nih.gov/pmc/articles/PMC6891515/
https://www.ncbi.nlm.nih.gov/pubmed/31717617
http://dx.doi.org/10.3390/s19224905
_version_ 1783475832162877440
author Xu, Rongxu
Jin, Wenquan
Kim, Dohyeun
author_facet Xu, Rongxu
Jin, Wenquan
Kim, Dohyeun
author_sort Xu, Rongxu
collection PubMed
description Internet of Things (IoT) devices are embedded with software, electronics, and sensors, and feature connectivity with constrained resources. They require the edge computing paradigm, with modular characteristics relying on microservices, to provide an extensible and lightweight computing framework at the edge of the network. Edge computing can relieve the burden of centralized cloud computing by performing certain operations, such as data storage and task computation, at the edge of the network. Despite the benefits of edge computing, it can lead to many challenges in terms of security and privacy issues. Thus, services that protect privacy and secure data are essential functions in edge computing. For example, the end user’s ownership and privacy information and control are separated, which can easily lead to data leakage, unauthorized data manipulation, and other data security concerns. Thus, the confidentiality and integrity of the data cannot be guaranteed and, so, more secure authentication and access mechanisms are required to ensure that the microservices are exposed only to authorized users. In this paper, we propose a microservice security agent to integrate the edge computing platform with the API gateway technology for presenting a secure authentication mechanism. The aim of this platform is to afford edge computing clients a practical application which provides user authentication and allows JSON Web Token (JWT)-based secure access to the services of edge computing. To integrate the edge computing platform with the API gateway, we implement a microservice security agent based on the open-source Kong in the EdgeX Foundry framework. Also to provide an easy-to-use approach with Kong, we implement REST APIs for generating new consumers, registering services, configuring access controls. Finally, the usability of the proposed approach is demonstrated by evaluating the round trip time (RTT). The results demonstrate the efficiency of the system and its suitability for real-world applications.
format Online
Article
Text
id pubmed-6891515
institution National Center for Biotechnology Information
language English
publishDate 2019
publisher MDPI
record_format MEDLINE/PubMed
spelling pubmed-68915152019-12-18 Microservice Security Agent Based On API Gateway in Edge Computing Xu, Rongxu Jin, Wenquan Kim, Dohyeun Sensors (Basel) Article Internet of Things (IoT) devices are embedded with software, electronics, and sensors, and feature connectivity with constrained resources. They require the edge computing paradigm, with modular characteristics relying on microservices, to provide an extensible and lightweight computing framework at the edge of the network. Edge computing can relieve the burden of centralized cloud computing by performing certain operations, such as data storage and task computation, at the edge of the network. Despite the benefits of edge computing, it can lead to many challenges in terms of security and privacy issues. Thus, services that protect privacy and secure data are essential functions in edge computing. For example, the end user’s ownership and privacy information and control are separated, which can easily lead to data leakage, unauthorized data manipulation, and other data security concerns. Thus, the confidentiality and integrity of the data cannot be guaranteed and, so, more secure authentication and access mechanisms are required to ensure that the microservices are exposed only to authorized users. In this paper, we propose a microservice security agent to integrate the edge computing platform with the API gateway technology for presenting a secure authentication mechanism. The aim of this platform is to afford edge computing clients a practical application which provides user authentication and allows JSON Web Token (JWT)-based secure access to the services of edge computing. To integrate the edge computing platform with the API gateway, we implement a microservice security agent based on the open-source Kong in the EdgeX Foundry framework. Also to provide an easy-to-use approach with Kong, we implement REST APIs for generating new consumers, registering services, configuring access controls. Finally, the usability of the proposed approach is demonstrated by evaluating the round trip time (RTT). The results demonstrate the efficiency of the system and its suitability for real-world applications. MDPI 2019-11-10 /pmc/articles/PMC6891515/ /pubmed/31717617 http://dx.doi.org/10.3390/s19224905 Text en © 2019 by the authors. Licensee MDPI, Basel, Switzerland. This article is an open access article distributed under the terms and conditions of the Creative Commons Attribution (CC BY) license (http://creativecommons.org/licenses/by/4.0/).
spellingShingle Article
Xu, Rongxu
Jin, Wenquan
Kim, Dohyeun
Microservice Security Agent Based On API Gateway in Edge Computing
title Microservice Security Agent Based On API Gateway in Edge Computing
title_full Microservice Security Agent Based On API Gateway in Edge Computing
title_fullStr Microservice Security Agent Based On API Gateway in Edge Computing
title_full_unstemmed Microservice Security Agent Based On API Gateway in Edge Computing
title_short Microservice Security Agent Based On API Gateway in Edge Computing
title_sort microservice security agent based on api gateway in edge computing
topic Article
url https://www.ncbi.nlm.nih.gov/pmc/articles/PMC6891515/
https://www.ncbi.nlm.nih.gov/pubmed/31717617
http://dx.doi.org/10.3390/s19224905
work_keys_str_mv AT xurongxu microservicesecurityagentbasedonapigatewayinedgecomputing
AT jinwenquan microservicesecurityagentbasedonapigatewayinedgecomputing
AT kimdohyeun microservicesecurityagentbasedonapigatewayinedgecomputing