Title :
Security analysis and proposal of new access control model in the Internet of Thing
Author :
Ouaddah, Aafaf ; Bouij-Pasquier, Imane ; Abou Elkalam, Anas ; Ait Ouahman, Abdellah
Author_Institution :
OSCARS Lab., Cadi Ayyad Univ., Marrakesh, Morocco
Abstract :
The Internet of Things (IoT) represents a concept where the barriers between the real world and the cyber-world are progressively annihilated through the inclusion of everyday physical objects combined with an ability to provide smart services. These services are creating more opportunities but at the same time bringing new challenges in particular security and privacy concerns. To address this issue, an access control management system must be implemented. This work introduces a new access control framework for IoT environment, precisely the Web of Things (WoT) approach, called “SmartOrBAC” Based on the OrBAC model. SmartOrBAC puts the context aware concern in a first position and deals with the constrained resources environment complexity. To achieve these goals, a list of detailed IoT security requirements and needs is drawn up in order to establish the guidelines of the “SmartOrBAC”. Then, The OrBAC model is analyzed and extended, regarding these requirements, to specify local as well as collaboration access control rules; on the other hand, these security policies are enforced by applying web services mechanisms mainly the RESTFUL approach. Finaly the most important works that emphasize access control in IoT environment are discussed.
Keywords :
Internet of Things; Web services; authorisation; ubiquitous computing; Internet of Thing; RESTFUL approach; SmartOrBAC; Web of Things; Web services; collaboration access control rules; context aware concern; cyber-world; new access control model; security analysis; Access control; Biomedical monitoring; Monitoring; Organizations; Scalability; Usability; OrBAC; access control model; internet of things; privacy; security policy; web of things;
Conference_Titel :
Electrical and Information Technologies (ICEIT), 2015 International Conference on
Conference_Location :
Marrakech
Print_ISBN :
978-1-4799-7478-8
DOI :
10.1109/EITech.2015.7162936