Blockchain-Based Context-Aware Authorization Management as a Service in IoT

Internet of Things (IoT) applications bring evolved and intelligent services that can help improve users’ daily lives. These applications include home automation, health care, and smart agriculture. However, IoT development and adoption face various security and privacy challenges that need to be ov...

Descripción completa

Guardado en:
Detalles Bibliográficos
Autores principales: Tidiane Sylla, Leo Mendiboure, Mohamed Aymen Chalouf, Francine Krief
Formato: article
Lenguaje:EN
Publicado: MDPI AG 2021
Materias:
Acceso en línea:https://doaj.org/article/89667cfe2349417fa24fb757dc19aa42
Etiquetas: Agregar Etiqueta
Sin Etiquetas, Sea el primero en etiquetar este registro!
id oai:doaj.org-article:89667cfe2349417fa24fb757dc19aa42
record_format dspace
spelling oai:doaj.org-article:89667cfe2349417fa24fb757dc19aa422021-11-25T18:58:15ZBlockchain-Based Context-Aware Authorization Management as a Service in IoT10.3390/s212276561424-8220https://doaj.org/article/89667cfe2349417fa24fb757dc19aa422021-11-01T00:00:00Zhttps://www.mdpi.com/1424-8220/21/22/7656https://doaj.org/toc/1424-8220Internet of Things (IoT) applications bring evolved and intelligent services that can help improve users’ daily lives. These applications include home automation, health care, and smart agriculture. However, IoT development and adoption face various security and privacy challenges that need to be overcome. As a promising security paradigm, context-aware security enables one to enforce security and privacy mechanisms adaptively. Moreover, with the advancements in edge computing, context-aware security services can dynamically be placed close to a user’s location and enable the support of low latency communication and mobility. Therefore, the design of an adaptive and decentralized access control mechanism becomes a necessity. In this paper, we propose a decentralized context-aware authorization management as a service based on the blockchain. The proposed architecture extends the Authentication and Authorization for Constrained Environments (ACE) framework with blockchain technology and context-awareness capabilities. Instead of a classic Open Authorization 2.0 (OAuth) access token, it uses a new contextual access token. The evaluation results show our proposition’s effectiveness and advantages in terms of usability, security, low latency, and energy consumption.Tidiane SyllaLeo MendiboureMohamed Aymen ChaloufFrancine KriefMDPI AGarticleInternet of Thingscontext-aware securityauthenticationaccess controlACE-OAuthblockchainChemical technologyTP1-1185ENSensors, Vol 21, Iss 7656, p 7656 (2021)
institution DOAJ
collection DOAJ
language EN
topic Internet of Things
context-aware security
authentication
access control
ACE-OAuth
blockchain
Chemical technology
TP1-1185
spellingShingle Internet of Things
context-aware security
authentication
access control
ACE-OAuth
blockchain
Chemical technology
TP1-1185
Tidiane Sylla
Leo Mendiboure
Mohamed Aymen Chalouf
Francine Krief
Blockchain-Based Context-Aware Authorization Management as a Service in IoT
description Internet of Things (IoT) applications bring evolved and intelligent services that can help improve users’ daily lives. These applications include home automation, health care, and smart agriculture. However, IoT development and adoption face various security and privacy challenges that need to be overcome. As a promising security paradigm, context-aware security enables one to enforce security and privacy mechanisms adaptively. Moreover, with the advancements in edge computing, context-aware security services can dynamically be placed close to a user’s location and enable the support of low latency communication and mobility. Therefore, the design of an adaptive and decentralized access control mechanism becomes a necessity. In this paper, we propose a decentralized context-aware authorization management as a service based on the blockchain. The proposed architecture extends the Authentication and Authorization for Constrained Environments (ACE) framework with blockchain technology and context-awareness capabilities. Instead of a classic Open Authorization 2.0 (OAuth) access token, it uses a new contextual access token. The evaluation results show our proposition’s effectiveness and advantages in terms of usability, security, low latency, and energy consumption.
format article
author Tidiane Sylla
Leo Mendiboure
Mohamed Aymen Chalouf
Francine Krief
author_facet Tidiane Sylla
Leo Mendiboure
Mohamed Aymen Chalouf
Francine Krief
author_sort Tidiane Sylla
title Blockchain-Based Context-Aware Authorization Management as a Service in IoT
title_short Blockchain-Based Context-Aware Authorization Management as a Service in IoT
title_full Blockchain-Based Context-Aware Authorization Management as a Service in IoT
title_fullStr Blockchain-Based Context-Aware Authorization Management as a Service in IoT
title_full_unstemmed Blockchain-Based Context-Aware Authorization Management as a Service in IoT
title_sort blockchain-based context-aware authorization management as a service in iot
publisher MDPI AG
publishDate 2021
url https://doaj.org/article/89667cfe2349417fa24fb757dc19aa42
work_keys_str_mv AT tidianesylla blockchainbasedcontextawareauthorizationmanagementasaserviceiniot
AT leomendiboure blockchainbasedcontextawareauthorizationmanagementasaserviceiniot
AT mohamedaymenchalouf blockchainbasedcontextawareauthorizationmanagementasaserviceiniot
AT francinekrief blockchainbasedcontextawareauthorizationmanagementasaserviceiniot
_version_ 1718410474451632128