Fine-Grained Access Control for Smart Healthcare Systems in the Internet of Things

被引:0
|
作者
Pal, Shantanu [1 ]
Hitchens, Michael [1 ]
Varadharajan, Vijay [2 ]
Rabehaja, Tahiry [1 ]
机构
[1] Department of Computing, Macquarie University, Sydney,NSW,2019, Australia
[2] Advanced Cyber Security Engineering Research Centre, University of Newcastle, NSW,2308, Australia
关键词
D O I
10.4108/eai.20-3-2018.154370
中图分类号
学科分类号
摘要
There has been tremendous growth in the application of the Internet of Things (IoT) in our daily lives. Yet with this growth has come numerous security concerns and privacy challenges for both the users and the systems. Smart devices have many uses in a healthcare system, e.g. collecting and reporting patient data and controlling the administration of treatment. In this paper, we address the specific security issue of access control for smart healthcare systems and the protection of smart things from unauthorised access in such large scale systems. Commonly used access control approaches e.g. Role-Based Access Control (RBAC), Attribute-Based Access Control (ABAC) and Capability-Based Access Control (CapBAC) do not, in isolation, provide a complete solution for securing access to IoT-enabled smart healthcare devices. They may, for example, require an overly-centralised solution or an unmanageably large policy base. We propose a novel access control architecture which improves policy management by reducing the required number of authentication policies in a large-scale healthcare system while providing fine-grained access control. The devised access control model employs attributes, roles and capabilities. We apply attributes for role membership assignment and in permission evaluation. Membership of roles grants capabilities. The capabilities which are issued may be parameterised based on attributes of the user and are then used to access specific services provided by things. We also provide a formal specification of the model and a description of its implementation and demonstrate its application through different use-case scenarios. The evaluation results of core functionality of our architecture are provided with the practical testbed experiments. © 2018. Shantanu Pal et al.
引用
收藏
相关论文
共 50 条
  • [41] Fine-grained access control of PDM and CAPP
    Feng, SH
    Jiang, ZL
    ADVANCES IN MATERIALS MANUFACTURING SCIENCE AND TECHNOLOGY, 2004, 471-472 : 573 - 576
  • [42] Fine-grained access control for cloud computing
    Ye, Xinfeng
    Khoussainov, Bakh
    INTERNATIONAL JOURNAL OF GRID AND UTILITY COMPUTING, 2013, 4 (2-3) : 160 - 168
  • [43] An Efficient and Fine-grained Access Control Scheme for Multidimensional Data Aggregation in Smart Grid
    Cao, Zhenhai
    Lang, Bo
    Wang, Jinmiao
    2016 IEEE TRUSTCOM/BIGDATASE/ISPA, 2016, : 362 - 369
  • [44] Towards Fault-Tolerant Fine-Grained Data Access Control for Smart Grid
    Jun Wu
    Mianxiong Dong
    Kaoru Ota
    Zhenyu Zhou
    Bin Duan
    Wireless Personal Communications, 2014, 75 : 1787 - 1808
  • [45] Access policy sheet for access control in fine-grained XML
    Wu, J
    Mu, Y
    Seberry, J
    Ruan, C
    EMBEDDED AND UBIQUITOUS COMPUTING - EUC 2005 WORKSHOPS, PROCEEDINGS, 2005, 3823 : 1273 - 1282
  • [46] Towards Fault-Tolerant Fine-Grained Data Access Control for Smart Grid
    Wu, Jun
    Dong, Mianxiong
    Ota, Kaoru
    Zhou, Zhenyu
    Duan, Bin
    WIRELESS PERSONAL COMMUNICATIONS, 2014, 75 (03) : 1787 - 1808
  • [47] Robust fine-grained visual recognition with images based on internet of things
    Cai, Zhenhuang
    Yan, Shuai
    Huang, Dan
    COMPUTATIONAL INTELLIGENCE, 2024, 40 (02)
  • [48] Fine-Grained Support of Security Services for Resource Constrained Internet of Things
    Ban, Hyo Jin
    Choi, Jaeduck
    Kang, Namhi
    INTERNATIONAL JOURNAL OF DISTRIBUTED SENSOR NETWORKS, 2016,
  • [49] Declarative Cartography under Fine-Grained Access Control
    Jensen, Thomas
    Salles, Marcos Antonio Vaz
    Bang, Michael Vindahl
    30TH INTERNATIONAL CONFERENCE ON SCIENTIFIC AND STATISTICAL DATABASE MANAGEMENT (SSDBM 2018), 2018,
  • [50] The Fine-Grained Security Access Control of Spatial Data
    Ma, Fuguang
    Gao, Yong
    Yan, Menglong
    Xu, Fuchun
    Liu, Ding
    2010 18TH INTERNATIONAL CONFERENCE ON GEOINFORMATICS, 2010,