Inicio  /  Information  /  Vol: 14 Par: 2 (2023)  /  Artículo
ARTÍCULO
TITULO

A Blockchain-Inspired Attribute-Based Zero-Trust Access Control Model for IoT

Samia Masood Awan    
Muhammad Ajmal Azad    
Junaid Arshad    
Urooj Waheed and Tahir Sharif    

Resumen

The connected or smart environment is the integration of smart devices (sensors, IoT devices, or actuator) into the Internet of Things (IoT) paradigm, in which a large number of devices are connected, monitoring the physical environment and processes and transmitting into the centralized database for advanced analytics and analysis. This integrated and connected setup allows greater levels of automation of smart systems than is possible with just the Internet. While delivering services to the different processes and application within connected smart systems, these IoT devices perform an impeccably large number of device-to-device communications that allow them to access the selected subsets of device information and data. The sensitive and private nature of these data renders the smart infrastructure vulnerable to copious attacks which threat agents exploit for cyberattacks which not only affect critical services but probably bring threat to people?s lives. Hence, advanced measures need to be taken for securing smart environments, such as dynamic access control, advanced network screening, and monitoring behavioural anomalies. In this paper, we have discussed the essential cyberthreats and vulnerabilities in smart environments and proposed ZAIB (Zero-Trust and ABAC for IoT using Blockchain), a novel secure framework that monitors and facilitates device-to-device communications with different levels of access-controlled mechanisms based on environmental parameters and device behaviour. It is protected by zero-trust architecture and provides dynamic behavioural analysis of IoT devices by calculating device trust levels for each request. ZAIB enforces variable policies specifically generated for each scenario by using attribute-based access control (ABAC). We have used blockchain to ensure anonymous device and user registrations and immutable activity logs. All the attributes, trust level histories, and data generated by IoT devices are protected using IPFS. Finally, a security evaluation shows that ZAIB satisfies the needs of active defence and end-to-end security enforcement of data, users, and services involved in a smart grid network.

 Artículos similares

       
 
You-Kwang Wang and Chien-Yu Chen    
As medical technology continues to evolve, the importance of real-time feedback from physiological signals is increasingly being recognized. The advent of the Internet of Things (IoT) has facilitated seamless connectivity between sensors and virtual netw... ver más
Revista: Applied Sciences

 
Hongli Qin, Tao Guo and Yunan Han    
Intelligent prevention and control of infectious diseases.
Revista: Applied Sciences

 
Yajie Wang, Xiaomei Zhang and Haomin Hu    
Recent developments in the mobile and intelligence industry have led to an explosion in the use of multiple smart devices such as smartphones, tablets, smart bracelets, etc. To achieve lasting security after initial authentication, many studies have been... ver más
Revista: Information

 
Yunfa Li, Di Zhang, Zetian Wang and Guanxu Liu    
With the advancement of smart devices, the operation and communication of smart grids have become increasingly efficient. Many smart devices such as smart meters, smart transformers, and smart grid controllers are already widely used in smart grids. Thus... ver más
Revista: Applied Sciences

 
Amisha S. Raikar, Pramod Kumar, Gokuldas (Vedant) S. Raikar and Sandesh N. Somnache    
In the current era of technology, the internet of things (IoT) plays a vital role in smart drug delivery systems. It is an emerging field that offers promising solutions for improving the efficacy, safety, and patient compliance of drug therapies. IoT-ba... ver más