Cargando…

Access Control for IoT: A Survey of Existing Research, Dynamic Policies and Future Directions

Internet of Things (IoT) provides a wide range of services in domestic and industrial environments. Access control plays a crucial role in granting access rights to users and devices when an IoT device is connected to a network. However, many challenges exist in designing and implementing an ideal a...

Descripción completa

Detalles Bibliográficos
Autores principales: Ragothaman, Kaushik, Wang, Yong, Rimal, Bhaskar, Lawrence, Mark
Formato: Online Artículo Texto
Lenguaje:English
Publicado: MDPI 2023
Materias:
Acceso en línea:https://www.ncbi.nlm.nih.gov/pmc/articles/PMC9963042/
https://www.ncbi.nlm.nih.gov/pubmed/36850403
http://dx.doi.org/10.3390/s23041805
_version_ 1784896152856952832
author Ragothaman, Kaushik
Wang, Yong
Rimal, Bhaskar
Lawrence, Mark
author_facet Ragothaman, Kaushik
Wang, Yong
Rimal, Bhaskar
Lawrence, Mark
author_sort Ragothaman, Kaushik
collection PubMed
description Internet of Things (IoT) provides a wide range of services in domestic and industrial environments. Access control plays a crucial role in granting access rights to users and devices when an IoT device is connected to a network. However, many challenges exist in designing and implementing an ideal access control solution for the IoT due to the characteristics of the IoT including but not limited to the variety of the IoT devices, the resource constraints on the IoT devices, and the heterogeneous nature of the IoT. This paper conducts a comprehensive survey on access control in the IoT, including access control requirements, authorization architecture, access control models, access control policies, access control research challenges, and future directions. It identifies and summarizes key access control requirements in the IoT. The paper further evaluates the existing access control models to fulfill the access control requirements. Access control decisions are governed by access control policies. The existing approaches on dynamic policies’ specification are reviewed. The challenges faced by the existing solutions for policies’ specification are highlighted. Finally, the paper presents the research challenges and future directions of access control in the IoT. Due to the variety of IoT applications, there is no one-size-fits-all solution for access control in the IoT. Despite the challenges encountered in designing and implementing the access control in the IoT, it is desired to have an access control solution to meet all the identified requirements to secure the IoT.
format Online
Article
Text
id pubmed-9963042
institution National Center for Biotechnology Information
language English
publishDate 2023
publisher MDPI
record_format MEDLINE/PubMed
spelling pubmed-99630422023-02-26 Access Control for IoT: A Survey of Existing Research, Dynamic Policies and Future Directions Ragothaman, Kaushik Wang, Yong Rimal, Bhaskar Lawrence, Mark Sensors (Basel) Review Internet of Things (IoT) provides a wide range of services in domestic and industrial environments. Access control plays a crucial role in granting access rights to users and devices when an IoT device is connected to a network. However, many challenges exist in designing and implementing an ideal access control solution for the IoT due to the characteristics of the IoT including but not limited to the variety of the IoT devices, the resource constraints on the IoT devices, and the heterogeneous nature of the IoT. This paper conducts a comprehensive survey on access control in the IoT, including access control requirements, authorization architecture, access control models, access control policies, access control research challenges, and future directions. It identifies and summarizes key access control requirements in the IoT. The paper further evaluates the existing access control models to fulfill the access control requirements. Access control decisions are governed by access control policies. The existing approaches on dynamic policies’ specification are reviewed. The challenges faced by the existing solutions for policies’ specification are highlighted. Finally, the paper presents the research challenges and future directions of access control in the IoT. Due to the variety of IoT applications, there is no one-size-fits-all solution for access control in the IoT. Despite the challenges encountered in designing and implementing the access control in the IoT, it is desired to have an access control solution to meet all the identified requirements to secure the IoT. MDPI 2023-02-06 /pmc/articles/PMC9963042/ /pubmed/36850403 http://dx.doi.org/10.3390/s23041805 Text en © 2023 by the authors. https://creativecommons.org/licenses/by/4.0/Licensee MDPI, Basel, Switzerland. This article is an open access article distributed under the terms and conditions of the Creative Commons Attribution (CC BY) license (https://creativecommons.org/licenses/by/4.0/).
spellingShingle Review
Ragothaman, Kaushik
Wang, Yong
Rimal, Bhaskar
Lawrence, Mark
Access Control for IoT: A Survey of Existing Research, Dynamic Policies and Future Directions
title Access Control for IoT: A Survey of Existing Research, Dynamic Policies and Future Directions
title_full Access Control for IoT: A Survey of Existing Research, Dynamic Policies and Future Directions
title_fullStr Access Control for IoT: A Survey of Existing Research, Dynamic Policies and Future Directions
title_full_unstemmed Access Control for IoT: A Survey of Existing Research, Dynamic Policies and Future Directions
title_short Access Control for IoT: A Survey of Existing Research, Dynamic Policies and Future Directions
title_sort access control for iot: a survey of existing research, dynamic policies and future directions
topic Review
url https://www.ncbi.nlm.nih.gov/pmc/articles/PMC9963042/
https://www.ncbi.nlm.nih.gov/pubmed/36850403
http://dx.doi.org/10.3390/s23041805
work_keys_str_mv AT ragothamankaushik accesscontrolforiotasurveyofexistingresearchdynamicpoliciesandfuturedirections
AT wangyong accesscontrolforiotasurveyofexistingresearchdynamicpoliciesandfuturedirections
AT rimalbhaskar accesscontrolforiotasurveyofexistingresearchdynamicpoliciesandfuturedirections
AT lawrencemark accesscontrolforiotasurveyofexistingresearchdynamicpoliciesandfuturedirections