Passer à la navigation principale Passer à la recherche Passer au contenu principal

Centralized, Distributed, and Everything in between: Reviewing Access Control Solutions for the IoT

  • Gemalto S.A.
  • CNRS UMR 5157 SAMOVAR

Résultats de recherche: Contribution à un journalArticleRevue par des pairs

Résumé

The Internet of Things is taking hold in our everyday life. Regrettably, the security of IoT devices is often being overlooked. Among the vast array of security issues plaguing the emerging IoT, we decide to focus on access control, as privacy, trust, and other security properties cannot be achieved without controlled access. This article classifies IoT access control solutions from the literature according to their architecture (e.g., centralized, hierarchical, federated, distributed) and examines the suitability of each one for access control purposes. Our analysis concludes that important properties such as auditability and revocation are missing from many proposals while hierarchical and federated architectures are neglected by the community. Finally, we provide an architecture-based taxonomy and future research directions: a focus on hybrid architectures, usability, flexibility, privacy, and revocation schemes in serverless authorization.

langue originaleAnglais
Numéro d'article138
journalACM Computing Surveys
Volume54
Numéro de publication7
Les DOIs
étatPublié - 30 sept. 2022

Empreinte digitale

Examiner les sujets de recherche de « Centralized, Distributed, and Everything in between: Reviewing Access Control Solutions for the IoT ». Ensemble, ils forment une empreinte digitale unique.

Contient cette citation