Cargando…
Blockchain-Based Context-Aware Authorization Management as a Service in IoT
Internet of Things (IoT) applications bring evolved and intelligent services that can help improve users’ daily lives. These applications include home automation, health care, and smart agriculture. However, IoT development and adoption face various security and privacy challenges that need to be ov...
Autores principales: | , , , |
---|---|
Formato: | Online Artículo Texto |
Lenguaje: | English |
Publicado: |
MDPI
2021
|
Materias: | |
Acceso en línea: | https://www.ncbi.nlm.nih.gov/pmc/articles/PMC8619443/ https://www.ncbi.nlm.nih.gov/pubmed/34833732 http://dx.doi.org/10.3390/s21227656 |
_version_ | 1784604992881033216 |
---|---|
author | Sylla, Tidiane Mendiboure, Leo Chalouf, Mohamed Aymen Krief, Francine |
author_facet | Sylla, Tidiane Mendiboure, Leo Chalouf, Mohamed Aymen Krief, Francine |
author_sort | Sylla, Tidiane |
collection | PubMed |
description | Internet of Things (IoT) applications bring evolved and intelligent services that can help improve users’ daily lives. These applications include home automation, health care, and smart agriculture. However, IoT development and adoption face various security and privacy challenges that need to be overcome. As a promising security paradigm, context-aware security enables one to enforce security and privacy mechanisms adaptively. Moreover, with the advancements in edge computing, context-aware security services can dynamically be placed close to a user’s location and enable the support of low latency communication and mobility. Therefore, the design of an adaptive and decentralized access control mechanism becomes a necessity. In this paper, we propose a decentralized context-aware authorization management as a service based on the blockchain. The proposed architecture extends the Authentication and Authorization for Constrained Environments (ACE) framework with blockchain technology and context-awareness capabilities. Instead of a classic Open Authorization 2.0 (OAuth) access token, it uses a new contextual access token. The evaluation results show our proposition’s effectiveness and advantages in terms of usability, security, low latency, and energy consumption. |
format | Online Article Text |
id | pubmed-8619443 |
institution | National Center for Biotechnology Information |
language | English |
publishDate | 2021 |
publisher | MDPI |
record_format | MEDLINE/PubMed |
spelling | pubmed-86194432021-11-27 Blockchain-Based Context-Aware Authorization Management as a Service in IoT Sylla, Tidiane Mendiboure, Leo Chalouf, Mohamed Aymen Krief, Francine Sensors (Basel) Article Internet of Things (IoT) applications bring evolved and intelligent services that can help improve users’ daily lives. These applications include home automation, health care, and smart agriculture. However, IoT development and adoption face various security and privacy challenges that need to be overcome. As a promising security paradigm, context-aware security enables one to enforce security and privacy mechanisms adaptively. Moreover, with the advancements in edge computing, context-aware security services can dynamically be placed close to a user’s location and enable the support of low latency communication and mobility. Therefore, the design of an adaptive and decentralized access control mechanism becomes a necessity. In this paper, we propose a decentralized context-aware authorization management as a service based on the blockchain. The proposed architecture extends the Authentication and Authorization for Constrained Environments (ACE) framework with blockchain technology and context-awareness capabilities. Instead of a classic Open Authorization 2.0 (OAuth) access token, it uses a new contextual access token. The evaluation results show our proposition’s effectiveness and advantages in terms of usability, security, low latency, and energy consumption. MDPI 2021-11-18 /pmc/articles/PMC8619443/ /pubmed/34833732 http://dx.doi.org/10.3390/s21227656 Text en © 2021 by the authors. https://creativecommons.org/licenses/by/4.0/Licensee MDPI, Basel, Switzerland. This article is an open access article distributed under the terms and conditions of the Creative Commons Attribution (CC BY) license (https://creativecommons.org/licenses/by/4.0/). |
spellingShingle | Article Sylla, Tidiane Mendiboure, Leo Chalouf, Mohamed Aymen Krief, Francine Blockchain-Based Context-Aware Authorization Management as a Service in IoT |
title | Blockchain-Based Context-Aware Authorization Management as a Service in IoT |
title_full | Blockchain-Based Context-Aware Authorization Management as a Service in IoT |
title_fullStr | Blockchain-Based Context-Aware Authorization Management as a Service in IoT |
title_full_unstemmed | Blockchain-Based Context-Aware Authorization Management as a Service in IoT |
title_short | Blockchain-Based Context-Aware Authorization Management as a Service in IoT |
title_sort | blockchain-based context-aware authorization management as a service in iot |
topic | Article |
url | https://www.ncbi.nlm.nih.gov/pmc/articles/PMC8619443/ https://www.ncbi.nlm.nih.gov/pubmed/34833732 http://dx.doi.org/10.3390/s21227656 |
work_keys_str_mv | AT syllatidiane blockchainbasedcontextawareauthorizationmanagementasaserviceiniot AT mendiboureleo blockchainbasedcontextawareauthorizationmanagementasaserviceiniot AT chaloufmohamedaymen blockchainbasedcontextawareauthorizationmanagementasaserviceiniot AT krieffrancine blockchainbasedcontextawareauthorizationmanagementasaserviceiniot |