An Authentication and Access Control Framework for CoAP-based Internet of Things

被引:0
|
作者
Pereira, Pablo Punal [1 ]
Eliasson, Jens [1 ]
Delsing, Jerker [1 ]
机构
[1] Lulea Univ Technol, Dept Comp Sci Elect & Space Engn, Lulea, Sweden
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Internet of Things (IoT) and Cyber-physical Systems (CPS) are two very hot research topics today, and more and more products are starting to appear on the market. Research has shown that the use of Service Oriented Architecture (SOA) can enable distributed application and devices to device communication, even on very resource constrained devices, and thus play an important role for IoT and CPS. In order to realize the vision of Internet of Things, communication between devices must be secured. Security mechanisms for resource constrained devices has attracted much interest from the academic community, where research groups have shown solutions like IPsec, VPN-tunnels, (D)TLS, etc. are feasible to use on this type of networks. However, even though the use of well-known security mechanisms are vital for SOA-based IoT/CPS networks and systems to be protected, they do not provide any fine-grain access control. In this paper, a CoAP-based framework for service-level access control on low-power devices is presented. The framework allows fine grain access control on a per service and method basis. For example, by using this approach a device can allow read/write access to its services to one group of users while only allowing read access to another group. Users without the right credentials are not even allowed to discover available services. To demonstrate the validity of the proposed approach, several implementations are presented together with test results. The aim is to provide a holistic framework for secure SOA-based low power networks comprise by resource constrain devices.
引用
收藏
页码:5293 / 5299
页数:7
相关论文
共 50 条
  • [21] Lightweight Anonymous Authentication and Key Agreement Protocol Based on CoAP of Internet of Things
    Gong, Xiang
    Feng, Tao
    SENSORS, 2022, 22 (19)
  • [22] Machine Learning based Access Control Framework for the Internet of Things
    Outchakoucht, Aissam
    Abou El Kalam, Anas
    Es-Samaali, Hamza
    Benhadou, Siham
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2020, 11 (02) : 331 - 340
  • [23] IOTA-Based Access Control Framework for the Internet of Things
    Nakanishi, Ruka
    Zhang, Yuanyu
    Sasabe, Masahiro
    Kasahara, Shoji
    2020 2ND CONFERENCE ON BLOCKCHAIN RESEARCH & APPLICATIONS FOR INNOVATIVE NETWORKS AND SERVICES (BRAINS), 2020, : 87 - 91
  • [24] Enabling end-to-end CoAP-based communications for the Web of Things
    Castro, Miguel
    Jara, Antonio J.
    Skarmeta, Antonio F.
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2016, 59 : 230 - 236
  • [25] Access Control Based on Ciphertext Attribute Authentication and Threshold Policy for the Internet of Things
    Zhang, Qikun
    Li, Yongjiao
    Li, Zhigang
    Yuan, Junling
    Gan, Yong
    Luo, Xiangyang
    SENSORS, 2019, 19 (23)
  • [26] Use of Proxy Mobile IPv6 for Mobility Management in CoAP-Based Internet-of-Things Networks
    Choi, Sang-Il
    Koh, Seok-Joo
    IEEE COMMUNICATIONS LETTERS, 2016, 20 (11) : 2284 - 2287
  • [27] Security analysis and improvements of authentication and access control in the internet of things
    Ndibanje, Bruce
    Lee, Hoon-Jae
    Lee, Sang-Gon
    Sensors (Switzerland), 2014, 14 (08): : 14786 - 14805
  • [28] Security Analysis and Improvements of Authentication and Access Control in the Internet of Things
    Ndibanje, Bruce
    Lee, Hoon-Jae
    Lee, Sang-Gon
    SENSORS, 2014, 14 (08): : 14786 - 14805
  • [29] Authentication, Authorization, Access Control, and Key Exchange in Internet of Things
    Simsek, Irfan
    ACM TRANSACTIONS ON INTERNET OF THINGS, 2024, 5 (02):
  • [30] Authentication and Context Awareness Access Control in Internet of Things: A Review
    Kaur, Amritpal
    Isha
    Rai, Gaurav
    Malik, Arun
    PROCEEDINGS OF THE 8TH INTERNATIONAL CONFERENCE CONFLUENCE 2018 ON CLOUD COMPUTING, DATA SCIENCE AND ENGINEERING, 2018, : 630 - 635