• Complex
  • Title
  • Keyword
  • Abstract
  • Scholars
  • Journal
  • ISSN
  • Conference
搜索

Author:

Liu, Chunchi (Liu, Chunchi.) | Xu, Minghui (Xu, Minghui.) | Guo, Hechuan (Guo, Hechuan.) | Cheng, Xiuzhen (Cheng, Xiuzhen.) | Xiao, Yinhao (Xiao, Yinhao.) | Yu, Dongxiao (Yu, Dongxiao.) | Gong, Bei (Gong, Bei.) (Scholars:公备) | Yerukhimovich, Arkady (Yerukhimovich, Arkady.) | Wang, Shengling (Wang, Shengling.) | Lyu, Weifeng (Lyu, Weifeng.)

Indexed by:

EI Scopus SCIE

Abstract:

Overprivilege Attack, a widely reported phenomenon in IoT that accesses unauthorized or excessive resources, is notoriously hard to prevent, trace and mitigate. In this paper, we propose TBAC, a Tokoin-Based Access Control model enabled by blockchain and Trusted Execution Environment (TEE) technologies, to offer fine-grained access control and strong auditability for IoT. TBAC materializes the virtual access power into a definite-amount, secure and accountable cryptographic coin, termed "tokoin" (token+coin), and manages it using atomic and accountable state-transition functions in a blockchain. A tokoin carries a fine-grained policy defined by the resource owner to specify the requirements to be satisfied before an access is granted, and the behavioral constraints that describe the correct procedure to follow during access. The strong-auditability is achieved with blockchain and a TEE-enabled trusted access control object (TACO) to ensure that all access activities are securely monitored and auditable. We prototype TBAC by implementing all its functions with well-studied cryptographic primitives over different blockchain platforms, building a TACO on top of the ARM Cortex-M33 TEE microcontroller, and constructing a user-friendly APP for regular users. A case study is finally presented to demonstrate how TBAC is employed to enable autonomous and secure in-home cargo delivery.

Keyword:

Access control access procedure control Program processors Internet of Things Microcontrollers auditability overprivilege attack Fine-grained access control Blockchains User interfaces blockchain trusted execution environment (TEE) IoT Prototypes

Author Community:

  • [ 1 ] [Liu, Chunchi]George Washington Univ, Dept Comp Sci, Washington, DC 20052 USA
  • [ 2 ] [Yerukhimovich, Arkady]George Washington Univ, Dept Comp Sci, Washington, DC 20052 USA
  • [ 3 ] [Liu, Chunchi]Ernst & Young, London SE1 2AF, England
  • [ 4 ] [Xu, Minghui]Shandong Univ, Sch Comp Sci & Technol, Jinan 250100, Shandong, Peoples R China
  • [ 5 ] [Guo, Hechuan]Shandong Univ, Sch Comp Sci & Technol, Jinan 250100, Shandong, Peoples R China
  • [ 6 ] [Cheng, Xiuzhen]Shandong Univ, Sch Comp Sci & Technol, Jinan 250100, Shandong, Peoples R China
  • [ 7 ] [Yu, Dongxiao]Shandong Univ, Sch Comp Sci & Technol, Jinan 250100, Shandong, Peoples R China
  • [ 8 ] [Xiao, Yinhao]Guangdong Univ Finance & Econ, Sch Informat Sci, Guangzhou 510320, Guangdong Provi, Peoples R China
  • [ 9 ] [Gong, Bei]Beijing Univ Technol, Beijing 100021, Peoples R China
  • [ 10 ] [Wang, Shengling]Beijing Normal Univ, Beijing 100875, Peoples R China
  • [ 11 ] [Lyu, Weifeng]Beihang Univ, Beijing 100191, Peoples R China

Reprint Author's Address:

  • [Xu, Minghui]Shandong Univ, Sch Comp Sci & Technol, Jinan 250100, Shandong, Peoples R China;;

Show more details

Related Keywords:

Related Article:

Source :

IEEE TRANSACTIONS ON MOBILE COMPUTING

ISSN: 1536-1233

Year: 2024

Issue: 5

Volume: 23

Page: 6133-6148

7 . 9 0 0

JCR@2022

Cited Count:

WoS CC Cited Count:

SCOPUS Cited Count: 7

ESI Highly Cited Papers on the List: 0 Unfold All

WanFang Cited Count:

Chinese Cited Count:

30 Days PV: 4

Affiliated Colleges:

Online/Total:173/5835667
Address:BJUT Library(100 Pingleyuan,Chaoyang District,Beijing 100124, China Post Code:100124) Contact Us:010-67392185
Copyright:BJUT Library Technical Support:Beijing Aegean Software Co., Ltd.