Adaptive risk-aware access control model for Internet of Things

Résultats de recherche: Contribution dans un livre/un catalogue/un rapport/dans les actes d'une conférenceArticle dans les actes d'une conférence/un colloque

66 Downloads (Pure)

Résumé

IoT technology allows people to connect to and control devices remotely anywhere and anytime. However, serious concerns are raised over access control of sensitive IoT devices (e.g. portable health device) and personal information pertaining to them. The static access control model used in conventional system, which does not take into account the profile and behaviour of the agent requesting access to the system to determine the risk associated with the request, does not fit well to be used in some scenarios of some IoT application domains (e.g. smart healthcare). In this paper, we propose an adaptive risk-aware access control and the integration of this concept into the existing access control models, such as attribute-based and privacy-aware role-based access control. The proposed model is designed to address both security and privacy concerns for data sharing in IoT system. A prototype of the access control system implemented in XACML based on the proposed model is also presented in this paper.
langue originaleAnglais
titreProceedings of the International Workshop on Secure Internet of Things 2017 (SIoT 2017)
Nombre de pages10
étatPublié - 15 sept. 2017
EvénementINTERNATIONAL WORKSHOP ON
SECURE INTERNET OF THINGS (SIOT)
- Oslo, Norvège
Durée: 15 sept. 201715 sept. 2017
http://siot-workshop.org/

Atelier de travail

Atelier de travailINTERNATIONAL WORKSHOP ON
SECURE INTERNET OF THINGS (SIOT)
PaysNorvège
La villeOslo
période15/09/1715/09/17
Adresse Internet

Empreinte digitale

Access control
Internet of things
Health
Control systems

Citer ceci

Rath, T. M. A., & Colin, J-N. (2017). Adaptive risk-aware access control model for Internet of Things. Dans Proceedings of the International Workshop on Secure Internet of Things 2017 (SIoT 2017)
Rath, Thavy Mony Annanda ; Colin, Jean-Noël. / Adaptive risk-aware access control model for Internet of Things. Proceedings of the International Workshop on Secure Internet of Things 2017 (SIoT 2017). 2017.
@inproceedings{9f3d38f88cd64ece8a44d0a69f3eac23,
title = "Adaptive risk-aware access control model for Internet of Things",
abstract = "IoT technology allows people to connect to and control devices remotely anywhere and anytime. However, serious concerns are raised over access control of sensitive IoT devices (e.g. portable health device) and personal information pertaining to them. The static access control model used in conventional system, which does not take into account the profile and behaviour of the agent requesting access to the system to determine the risk associated with the request, does not fit well to be used in some scenarios of some IoT application domains (e.g. smart healthcare). In this paper, we propose an adaptive risk-aware access control and the integration of this concept into the existing access control models, such as attribute-based and privacy-aware role-based access control. The proposed model is designed to address both security and privacy concerns for data sharing in IoT system. A prototype of the access control system implemented in XACML based on the proposed model is also presented in this paper.",
keywords = "adaptive, access control, IoT, risk-aware",
author = "Rath, {Thavy Mony Annanda} and Jean-No{\"e}l Colin",
year = "2017",
month = "9",
day = "15",
language = "English",
booktitle = "Proceedings of the International Workshop on Secure Internet of Things 2017 (SIoT 2017)",

}

Rath, TMA & Colin, J-N 2017, Adaptive risk-aware access control model for Internet of Things. Dans Proceedings of the International Workshop on Secure Internet of Things 2017 (SIoT 2017). INTERNATIONAL WORKSHOP ON
SECURE INTERNET OF THINGS (SIOT), Oslo, Norvège, 15/09/17.

Adaptive risk-aware access control model for Internet of Things. / Rath, Thavy Mony Annanda; Colin, Jean-Noël.

Proceedings of the International Workshop on Secure Internet of Things 2017 (SIoT 2017). 2017.

Résultats de recherche: Contribution dans un livre/un catalogue/un rapport/dans les actes d'une conférenceArticle dans les actes d'une conférence/un colloque

TY - GEN

T1 - Adaptive risk-aware access control model for Internet of Things

AU - Rath, Thavy Mony Annanda

AU - Colin, Jean-Noël

PY - 2017/9/15

Y1 - 2017/9/15

N2 - IoT technology allows people to connect to and control devices remotely anywhere and anytime. However, serious concerns are raised over access control of sensitive IoT devices (e.g. portable health device) and personal information pertaining to them. The static access control model used in conventional system, which does not take into account the profile and behaviour of the agent requesting access to the system to determine the risk associated with the request, does not fit well to be used in some scenarios of some IoT application domains (e.g. smart healthcare). In this paper, we propose an adaptive risk-aware access control and the integration of this concept into the existing access control models, such as attribute-based and privacy-aware role-based access control. The proposed model is designed to address both security and privacy concerns for data sharing in IoT system. A prototype of the access control system implemented in XACML based on the proposed model is also presented in this paper.

AB - IoT technology allows people to connect to and control devices remotely anywhere and anytime. However, serious concerns are raised over access control of sensitive IoT devices (e.g. portable health device) and personal information pertaining to them. The static access control model used in conventional system, which does not take into account the profile and behaviour of the agent requesting access to the system to determine the risk associated with the request, does not fit well to be used in some scenarios of some IoT application domains (e.g. smart healthcare). In this paper, we propose an adaptive risk-aware access control and the integration of this concept into the existing access control models, such as attribute-based and privacy-aware role-based access control. The proposed model is designed to address both security and privacy concerns for data sharing in IoT system. A prototype of the access control system implemented in XACML based on the proposed model is also presented in this paper.

KW - adaptive

KW - access control

KW - IoT

KW - risk-aware

M3 - Conference contribution

BT - Proceedings of the International Workshop on Secure Internet of Things 2017 (SIoT 2017)

ER -

Rath TMA, Colin J-N. Adaptive risk-aware access control model for Internet of Things. Dans Proceedings of the International Workshop on Secure Internet of Things 2017 (SIoT 2017). 2017