Blockchain-Based Context-Aware Authorization Management as a Service in IoT
Internet of Things (IoT) applications bring evolved and intelligent services that can help improve users’ daily lives. These applications include home automation, health care, and smart agriculture. However, IoT development and adoption face various security and privacy challenges that need to be ov...
Guardado en:
Autores principales: | , , , |
---|---|
Formato: | article |
Lenguaje: | EN |
Publicado: |
MDPI AG
2021
|
Materias: | |
Acceso en línea: | https://doaj.org/article/89667cfe2349417fa24fb757dc19aa42 |
Etiquetas: |
Agregar Etiqueta
Sin Etiquetas, Sea el primero en etiquetar este registro!
|
id |
oai:doaj.org-article:89667cfe2349417fa24fb757dc19aa42 |
---|---|
record_format |
dspace |
spelling |
oai:doaj.org-article:89667cfe2349417fa24fb757dc19aa422021-11-25T18:58:15ZBlockchain-Based Context-Aware Authorization Management as a Service in IoT10.3390/s212276561424-8220https://doaj.org/article/89667cfe2349417fa24fb757dc19aa422021-11-01T00:00:00Zhttps://www.mdpi.com/1424-8220/21/22/7656https://doaj.org/toc/1424-8220Internet of Things (IoT) applications bring evolved and intelligent services that can help improve users’ daily lives. These applications include home automation, health care, and smart agriculture. However, IoT development and adoption face various security and privacy challenges that need to be overcome. As a promising security paradigm, context-aware security enables one to enforce security and privacy mechanisms adaptively. Moreover, with the advancements in edge computing, context-aware security services can dynamically be placed close to a user’s location and enable the support of low latency communication and mobility. Therefore, the design of an adaptive and decentralized access control mechanism becomes a necessity. In this paper, we propose a decentralized context-aware authorization management as a service based on the blockchain. The proposed architecture extends the Authentication and Authorization for Constrained Environments (ACE) framework with blockchain technology and context-awareness capabilities. Instead of a classic Open Authorization 2.0 (OAuth) access token, it uses a new contextual access token. The evaluation results show our proposition’s effectiveness and advantages in terms of usability, security, low latency, and energy consumption.Tidiane SyllaLeo MendiboureMohamed Aymen ChaloufFrancine KriefMDPI AGarticleInternet of Thingscontext-aware securityauthenticationaccess controlACE-OAuthblockchainChemical technologyTP1-1185ENSensors, Vol 21, Iss 7656, p 7656 (2021) |
institution |
DOAJ |
collection |
DOAJ |
language |
EN |
topic |
Internet of Things context-aware security authentication access control ACE-OAuth blockchain Chemical technology TP1-1185 |
spellingShingle |
Internet of Things context-aware security authentication access control ACE-OAuth blockchain Chemical technology TP1-1185 Tidiane Sylla Leo Mendiboure Mohamed Aymen Chalouf Francine Krief Blockchain-Based Context-Aware Authorization Management as a Service in IoT |
description |
Internet of Things (IoT) applications bring evolved and intelligent services that can help improve users’ daily lives. These applications include home automation, health care, and smart agriculture. However, IoT development and adoption face various security and privacy challenges that need to be overcome. As a promising security paradigm, context-aware security enables one to enforce security and privacy mechanisms adaptively. Moreover, with the advancements in edge computing, context-aware security services can dynamically be placed close to a user’s location and enable the support of low latency communication and mobility. Therefore, the design of an adaptive and decentralized access control mechanism becomes a necessity. In this paper, we propose a decentralized context-aware authorization management as a service based on the blockchain. The proposed architecture extends the Authentication and Authorization for Constrained Environments (ACE) framework with blockchain technology and context-awareness capabilities. Instead of a classic Open Authorization 2.0 (OAuth) access token, it uses a new contextual access token. The evaluation results show our proposition’s effectiveness and advantages in terms of usability, security, low latency, and energy consumption. |
format |
article |
author |
Tidiane Sylla Leo Mendiboure Mohamed Aymen Chalouf Francine Krief |
author_facet |
Tidiane Sylla Leo Mendiboure Mohamed Aymen Chalouf Francine Krief |
author_sort |
Tidiane Sylla |
title |
Blockchain-Based Context-Aware Authorization Management as a Service in IoT |
title_short |
Blockchain-Based Context-Aware Authorization Management as a Service in IoT |
title_full |
Blockchain-Based Context-Aware Authorization Management as a Service in IoT |
title_fullStr |
Blockchain-Based Context-Aware Authorization Management as a Service in IoT |
title_full_unstemmed |
Blockchain-Based Context-Aware Authorization Management as a Service in IoT |
title_sort |
blockchain-based context-aware authorization management as a service in iot |
publisher |
MDPI AG |
publishDate |
2021 |
url |
https://doaj.org/article/89667cfe2349417fa24fb757dc19aa42 |
work_keys_str_mv |
AT tidianesylla blockchainbasedcontextawareauthorizationmanagementasaserviceiniot AT leomendiboure blockchainbasedcontextawareauthorizationmanagementasaserviceiniot AT mohamedaymenchalouf blockchainbasedcontextawareauthorizationmanagementasaserviceiniot AT francinekrief blockchainbasedcontextawareauthorizationmanagementasaserviceiniot |
_version_ |
1718410474451632128 |