Title :
A Domain-Oriented Approach for Access Control in Pervasive Environments
Author :
Li, Jun ; Christianson, Bruce
Author_Institution :
Security & Privacy, Enterprise Risk Service, London
Abstract :
Pervasive computing envisions an environment in which we are surrounded by many embedded computer devices. Those networked devices provide us with a mobile, spontaneous and dynamic way to access various resources provided by domains with different security policies. The conventional approach to secure access over multiple domains is to implement a universal trusted infrastructure, extending local identity- or capability-based security systems and combining them with cross-domain authentication mechanisms. However, this does not adequately meet the security requirements of communicating with strangers in pervasive environments. This paper presents an intrinsically multi-domain oriented approach which incorporates an identity-based encryption (IBE) access control mechanism. This approach allows the right domain to get involved with its local playerspsila interactions by helping them to convert a token to a usable access capability, whilst facilitating revocation.
Keywords :
authorisation; cryptography; message authentication; mobile computing; cross-domain authentication mechanism; domain-oriented access control; embedded computer device; identity-based encryption access control; mobile resource access; pervasive computing environment; security access policy; universal trusted infrastructure; Access control; Access protocols; Authentication; Computer security; Cryptography; Identity-based encryption; Permission; Pervasive computing; Privacy; Ubiquitous computing; Domain-oriented access control; identity-based encryption; pervasive computing; revocation;
Conference_Titel :
Embedded and Ubiquitous Computing, 2008. EUC '08. IEEE/IFIP International Conference on
Conference_Location :
Shanghai
Print_ISBN :
978-0-7695-3492-3
DOI :
10.1109/EUC.2008.57