Cargando…

Blockchain-Based Context-Aware Authorization Management as a Service in IoT

Internet of Things (IoT) applications bring evolved and intelligent services that can help improve users’ daily lives. These applications include home automation, health care, and smart agriculture. However, IoT development and adoption face various security and privacy challenges that need to be ov...

Descripción completa

Detalles Bibliográficos
Autores principales: Sylla, Tidiane, Mendiboure, Leo, Chalouf, Mohamed Aymen, Krief, Francine
Formato: Online Artículo Texto
Lenguaje:English
Publicado: MDPI 2021
Materias:
Acceso en línea:https://www.ncbi.nlm.nih.gov/pmc/articles/PMC8619443/
https://www.ncbi.nlm.nih.gov/pubmed/34833732
http://dx.doi.org/10.3390/s21227656
_version_ 1784604992881033216
author Sylla, Tidiane
Mendiboure, Leo
Chalouf, Mohamed Aymen
Krief, Francine
author_facet Sylla, Tidiane
Mendiboure, Leo
Chalouf, Mohamed Aymen
Krief, Francine
author_sort Sylla, Tidiane
collection PubMed
description Internet of Things (IoT) applications bring evolved and intelligent services that can help improve users’ daily lives. These applications include home automation, health care, and smart agriculture. However, IoT development and adoption face various security and privacy challenges that need to be overcome. As a promising security paradigm, context-aware security enables one to enforce security and privacy mechanisms adaptively. Moreover, with the advancements in edge computing, context-aware security services can dynamically be placed close to a user’s location and enable the support of low latency communication and mobility. Therefore, the design of an adaptive and decentralized access control mechanism becomes a necessity. In this paper, we propose a decentralized context-aware authorization management as a service based on the blockchain. The proposed architecture extends the Authentication and Authorization for Constrained Environments (ACE) framework with blockchain technology and context-awareness capabilities. Instead of a classic Open Authorization 2.0 (OAuth) access token, it uses a new contextual access token. The evaluation results show our proposition’s effectiveness and advantages in terms of usability, security, low latency, and energy consumption.
format Online
Article
Text
id pubmed-8619443
institution National Center for Biotechnology Information
language English
publishDate 2021
publisher MDPI
record_format MEDLINE/PubMed
spelling pubmed-86194432021-11-27 Blockchain-Based Context-Aware Authorization Management as a Service in IoT Sylla, Tidiane Mendiboure, Leo Chalouf, Mohamed Aymen Krief, Francine Sensors (Basel) Article Internet of Things (IoT) applications bring evolved and intelligent services that can help improve users’ daily lives. These applications include home automation, health care, and smart agriculture. However, IoT development and adoption face various security and privacy challenges that need to be overcome. As a promising security paradigm, context-aware security enables one to enforce security and privacy mechanisms adaptively. Moreover, with the advancements in edge computing, context-aware security services can dynamically be placed close to a user’s location and enable the support of low latency communication and mobility. Therefore, the design of an adaptive and decentralized access control mechanism becomes a necessity. In this paper, we propose a decentralized context-aware authorization management as a service based on the blockchain. The proposed architecture extends the Authentication and Authorization for Constrained Environments (ACE) framework with blockchain technology and context-awareness capabilities. Instead of a classic Open Authorization 2.0 (OAuth) access token, it uses a new contextual access token. The evaluation results show our proposition’s effectiveness and advantages in terms of usability, security, low latency, and energy consumption. MDPI 2021-11-18 /pmc/articles/PMC8619443/ /pubmed/34833732 http://dx.doi.org/10.3390/s21227656 Text en © 2021 by the authors. https://creativecommons.org/licenses/by/4.0/Licensee MDPI, Basel, Switzerland. This article is an open access article distributed under the terms and conditions of the Creative Commons Attribution (CC BY) license (https://creativecommons.org/licenses/by/4.0/).
spellingShingle Article
Sylla, Tidiane
Mendiboure, Leo
Chalouf, Mohamed Aymen
Krief, Francine
Blockchain-Based Context-Aware Authorization Management as a Service in IoT
title Blockchain-Based Context-Aware Authorization Management as a Service in IoT
title_full Blockchain-Based Context-Aware Authorization Management as a Service in IoT
title_fullStr Blockchain-Based Context-Aware Authorization Management as a Service in IoT
title_full_unstemmed Blockchain-Based Context-Aware Authorization Management as a Service in IoT
title_short Blockchain-Based Context-Aware Authorization Management as a Service in IoT
title_sort blockchain-based context-aware authorization management as a service in iot
topic Article
url https://www.ncbi.nlm.nih.gov/pmc/articles/PMC8619443/
https://www.ncbi.nlm.nih.gov/pubmed/34833732
http://dx.doi.org/10.3390/s21227656
work_keys_str_mv AT syllatidiane blockchainbasedcontextawareauthorizationmanagementasaserviceiniot
AT mendiboureleo blockchainbasedcontextawareauthorizationmanagementasaserviceiniot
AT chaloufmohamedaymen blockchainbasedcontextawareauthorizationmanagementasaserviceiniot
AT krieffrancine blockchainbasedcontextawareauthorizationmanagementasaserviceiniot