Cargando…
Access Control for IoT: A Survey of Existing Research, Dynamic Policies and Future Directions
Internet of Things (IoT) provides a wide range of services in domestic and industrial environments. Access control plays a crucial role in granting access rights to users and devices when an IoT device is connected to a network. However, many challenges exist in designing and implementing an ideal a...
Autores principales: | , , , |
---|---|
Formato: | Online Artículo Texto |
Lenguaje: | English |
Publicado: |
MDPI
2023
|
Materias: | |
Acceso en línea: | https://www.ncbi.nlm.nih.gov/pmc/articles/PMC9963042/ https://www.ncbi.nlm.nih.gov/pubmed/36850403 http://dx.doi.org/10.3390/s23041805 |
_version_ | 1784896152856952832 |
---|---|
author | Ragothaman, Kaushik Wang, Yong Rimal, Bhaskar Lawrence, Mark |
author_facet | Ragothaman, Kaushik Wang, Yong Rimal, Bhaskar Lawrence, Mark |
author_sort | Ragothaman, Kaushik |
collection | PubMed |
description | Internet of Things (IoT) provides a wide range of services in domestic and industrial environments. Access control plays a crucial role in granting access rights to users and devices when an IoT device is connected to a network. However, many challenges exist in designing and implementing an ideal access control solution for the IoT due to the characteristics of the IoT including but not limited to the variety of the IoT devices, the resource constraints on the IoT devices, and the heterogeneous nature of the IoT. This paper conducts a comprehensive survey on access control in the IoT, including access control requirements, authorization architecture, access control models, access control policies, access control research challenges, and future directions. It identifies and summarizes key access control requirements in the IoT. The paper further evaluates the existing access control models to fulfill the access control requirements. Access control decisions are governed by access control policies. The existing approaches on dynamic policies’ specification are reviewed. The challenges faced by the existing solutions for policies’ specification are highlighted. Finally, the paper presents the research challenges and future directions of access control in the IoT. Due to the variety of IoT applications, there is no one-size-fits-all solution for access control in the IoT. Despite the challenges encountered in designing and implementing the access control in the IoT, it is desired to have an access control solution to meet all the identified requirements to secure the IoT. |
format | Online Article Text |
id | pubmed-9963042 |
institution | National Center for Biotechnology Information |
language | English |
publishDate | 2023 |
publisher | MDPI |
record_format | MEDLINE/PubMed |
spelling | pubmed-99630422023-02-26 Access Control for IoT: A Survey of Existing Research, Dynamic Policies and Future Directions Ragothaman, Kaushik Wang, Yong Rimal, Bhaskar Lawrence, Mark Sensors (Basel) Review Internet of Things (IoT) provides a wide range of services in domestic and industrial environments. Access control plays a crucial role in granting access rights to users and devices when an IoT device is connected to a network. However, many challenges exist in designing and implementing an ideal access control solution for the IoT due to the characteristics of the IoT including but not limited to the variety of the IoT devices, the resource constraints on the IoT devices, and the heterogeneous nature of the IoT. This paper conducts a comprehensive survey on access control in the IoT, including access control requirements, authorization architecture, access control models, access control policies, access control research challenges, and future directions. It identifies and summarizes key access control requirements in the IoT. The paper further evaluates the existing access control models to fulfill the access control requirements. Access control decisions are governed by access control policies. The existing approaches on dynamic policies’ specification are reviewed. The challenges faced by the existing solutions for policies’ specification are highlighted. Finally, the paper presents the research challenges and future directions of access control in the IoT. Due to the variety of IoT applications, there is no one-size-fits-all solution for access control in the IoT. Despite the challenges encountered in designing and implementing the access control in the IoT, it is desired to have an access control solution to meet all the identified requirements to secure the IoT. MDPI 2023-02-06 /pmc/articles/PMC9963042/ /pubmed/36850403 http://dx.doi.org/10.3390/s23041805 Text en © 2023 by the authors. https://creativecommons.org/licenses/by/4.0/Licensee MDPI, Basel, Switzerland. This article is an open access article distributed under the terms and conditions of the Creative Commons Attribution (CC BY) license (https://creativecommons.org/licenses/by/4.0/). |
spellingShingle | Review Ragothaman, Kaushik Wang, Yong Rimal, Bhaskar Lawrence, Mark Access Control for IoT: A Survey of Existing Research, Dynamic Policies and Future Directions |
title | Access Control for IoT: A Survey of Existing Research, Dynamic Policies and Future Directions |
title_full | Access Control for IoT: A Survey of Existing Research, Dynamic Policies and Future Directions |
title_fullStr | Access Control for IoT: A Survey of Existing Research, Dynamic Policies and Future Directions |
title_full_unstemmed | Access Control for IoT: A Survey of Existing Research, Dynamic Policies and Future Directions |
title_short | Access Control for IoT: A Survey of Existing Research, Dynamic Policies and Future Directions |
title_sort | access control for iot: a survey of existing research, dynamic policies and future directions |
topic | Review |
url | https://www.ncbi.nlm.nih.gov/pmc/articles/PMC9963042/ https://www.ncbi.nlm.nih.gov/pubmed/36850403 http://dx.doi.org/10.3390/s23041805 |
work_keys_str_mv | AT ragothamankaushik accesscontrolforiotasurveyofexistingresearchdynamicpoliciesandfuturedirections AT wangyong accesscontrolforiotasurveyofexistingresearchdynamicpoliciesandfuturedirections AT rimalbhaskar accesscontrolforiotasurveyofexistingresearchdynamicpoliciesandfuturedirections AT lawrencemark accesscontrolforiotasurveyofexistingresearchdynamicpoliciesandfuturedirections |