当前位置: X-MOL 学术Future Gener. Comput. Syst. › 论文详情
Our official English website, www.x-mol.net, welcomes your feedback! (Note: you will need to create a separate account there.)
Known unknowns: Indeterminacy in authentication in IoT
Future Generation Computer Systems ( IF 7.5 ) Pub Date : 2020-04-08 , DOI: 10.1016/j.future.2020.03.005
Mohammad Heydari , Alexios Mylonas , Vahid Heydari Fami Tafreshi , Elhadj Benkhelifa , Surjit Singh

The Internet of Things (IoT), comprising a plethora of heterogeneous devices, is an enabling technology that can improve the quality of our daily lives, for instance by measuring parameters from the environment (e.g., humidity, temperature, weather, energy consumption, traffic, and others) or our bodies (e.g., health data). However, as with any technology, IoT has introduced a number of security and privacy challenges. Indeed, IoT devices create, process, transfer and store data, which are often sensitive, and which must be protected from unauthorized access. Similarly, the infrastructure that links with IoT, as well as the IoT devices themselves, is an asset that needs to be protected. The focus of this work is examining authentication in IoT. In particular, in this work we conducted a state-of-the-art review of the access control models that have been proposed, including both traditional access control models and emerging models that have recently been proposed and are tailored for IoT. We identified that the existing models cannot cope with indeterminacy, an inherent characteristic of IoT, which hinders authentication decisions. In this context, we studied the two known components of indeterminacy, i.e., uncertainty and ambiguity, and proposed a new model that handles indeterminacy in authentication in IoT environments.



中文翻译:

已知未知数:物联网中身份验证的不确定性

包含大量异构设备的物联网(IoT)是一项启用技术,可以改善我们的日常生活质量,例如通过测量环境参数(例如湿度,温度,天气,能源消耗,交通流量)以及其他)或我们的身体(例如健康数据)。但是,与任何技术一样,物联网也带来了许多安全和隐私挑战。确实,物联网设备创建,处理,传输和存储数据,这些数据通常很敏感,必须加以保护以防止未经授权的访问。同样,与物联网以及物联网设备本身链接的基础架构也是一项需要保护的资产。这项工作的重点是检查物联网中的身份验证。尤其是,在这项工作中,我们对提出的访问控制模型进行了最新的审查,包括传统的访问控制模型和最近提出并针对物联网量身定制的新兴模型。我们发现,现有模型无法应对不确定性(IoT的固有特征),不确定性会阻碍身份验证决策。在这种情况下,我们研究了不确定性的两个已知组成部分,即不确定性和歧义性,并提出了一种新模型来处理物联网环境中身份验证的不确定性。这阻碍了认证决策。在这种情况下,我们研究了不确定性的两个已知组成部分,即不确定性和歧义性,并提出了一个新模型来处理物联网环境中身份验证的不确定性。这阻碍了认证决策。在这种情况下,我们研究了不确定性的两个已知组成部分,即不确定性和歧义性,并提出了一个新模型来处理物联网环境中身份验证的不确定性。

更新日期:2020-04-08
down
wechat
bug