• DocumentCode
    1389849
  • Title

    Distributed Privacy-Preserving Access Control in Sensor Networks

  • Author

    Zhang, Rui ; Zhang, Yanchao ; Ren, Kui

  • Author_Institution
    Sch. of Electr., Comput., & Energy Eng., Arizona State Univ., Tempe, AZ, USA
  • Volume
    23
  • Issue
    8
  • fYear
    2012
  • Firstpage
    1427
  • Lastpage
    1438
  • Abstract
    The owner and users of a sensor network may be different, which necessitates privacy-preserving access control. On the one hand, the network owner need enforce strict access control so that the sensed data are only accessible to users willing to pay. On the other hand, users wish to protect their respective data access patterns whose disclosure may be used against their interests. This paper presents DP2AC, a Distributed Privacy-Preserving Access Control scheme for sensor networks, which is the first work of its kind. Users in DP2AC purchase tokens from the network owner whereby to query data from sensor nodes which will reply only after validating the tokens. The use of blind signatures in token generation ensures that tokens are publicly verifiable yet unlinkable to user identities, so privacy-preserving access control is achieved. A central component in DP2AC is to prevent malicious users from reusing tokens, for which we propose a suite of distributed token reuse detection (DTRD) schemes without involving the base station. These schemes share the essential idea that a sensor node checks with some other nodes (called witnesses) whether a token has been used, but they differ in how the witnesses are chosen. We thoroughly compare their performance with regard to TRD capability, communication overhead, storage overhead, and attack resilience. The efficacy and efficiency of DP2AC are confirmed by detailed performance evaluations.
  • Keywords
    data privacy; telecommunication security; token networks; wireless sensor networks; DP2AC; attack resilience; communication overhead; distributed privacy preserving access control; distributed token reuse detection; sensor networks; storage overhead; Access control; Base stations; Data models; Data privacy; Educational institutions; Strontium; Wireless sensor networks; access control; privacy; security.;
  • fLanguage
    English
  • Journal_Title
    Parallel and Distributed Systems, IEEE Transactions on
  • Publisher
    ieee
  • ISSN
    1045-9219
  • Type

    jour

  • DOI
    10.1109/TPDS.2011.299
  • Filename
    6095540