计算机科学 ›› 2024, Vol. 51 ›› Issue (6A): 230400080-7.doi: 10.11896/jsjkx.230400080
田洪亮, 宪明杰, 葛平
TIAN Hongliang, XIAN Mingjie, GE Ping
摘要: 针对工业物联网存在数据规模庞大、访问安全性差以及隐私安全的问题,提出了基于联盟区块链并使用零知识令牌返回授权的安全访问控制机制,同时,应用IPFS星际文件系统进行链下存储以拓展区块链的可存储性。通过Hyperledger Fabric平台部署区块链网络并编写智能合约,定义访问过程的形式化表达,以更细粒度的模式实现本地和全局的访问授权,并对访问控制的模型和流程进行详细的阐述。最后,通过实验说明区块链网络对访问授权的延迟情况以及策略生成的平均延迟情况,并对比分析了模型的安全性和有效性。结果表明,所提机制在物联网访问控制方面具有安全性、有效性和低延迟性。
中图分类号:
[1]ZHANG P,LIU H Y,LI W J,et al.Industrial intelligent network-deepening and upgrading of industrial Internet[J].Journal of Communications,2018,39(12):134-140. [2]SIKORSKI J,HAUGHTON J,KRAFT M.Blockchain techno-logy in the chemical industry:Machine-to-machine electricity market[J].Applied Energy,2017,195(JUN.1):234-246. [3]LI Z,KANG J,YU R,et al.Consortium Blockchain for SecureEnergy Trading in Industrial Internet of Things[J].IEEE Transactions on Industrial Informatics,2017,PP(99):1-1. [4]QIU C,YU F,YAO H,et al.Blockchain-Based Software-De-fined Industrial Internet of Things:A Dueling Deep Q-Learning Approach[J].IEEE Internet of Things Journal,2019,6(3):4627-4639. [5]WANG J,HAN W,ZHANG H,et al.Trust and Attribute-Based Dynamic Access Control Model for Internet of Things[C]//2017 International Conference on Cyber-Enabled Distributed Computing and Knowledge Discovery(CyberC).2017. [6]LENG J,YE S,ZHOU M,et al.Blockchain-Secured Smart Ma-nufacturing in Industry 4.0:A Survey[J].IEEE Transactions on Systems,Man,and Cybernetics:Systems,2021,51(1). [7]YANG Q,LU R,RONG C,et al.Guest Editorial The Convergence of Blockchain and IoT:Opportunities,Challenges and Solutions[J].IEEE Internet of Things Journal,2019,6(3):4556-4560. [8]LIU Q,ZHANG H,WAN J F,et al.An Access Control Model for Resource Sharing based on the Role-Based Access Control Intended for Multi-domain Manufacturing Internet of Things[J].IEEE Access,2017,5:7001-7011. [9]NING Y E,YAN Z,WANG R C,et al.An Efficient Authentica-tion and Access Control Scheme for Perception Layer of Internet of Things[J].Applied Mathematics & Information Sciences,2014,8(4). [10]GUSMEROLI S,PICCIONE S,ROTONDI D.A capability-based security approach to manage access control in the Internet of Things[J].Mathematical & Computer Modelling,2013,58(5/6):1189-1205. [11]ZHANG Y,SHOJI K,SHEN Y,et al.Smart Contract-Based Access Control for the Internet of Things[J].IEEE Internet of Things Journal,2019,6(2):1594-1605. [12]OSCAR N.Blockchain Meets IoT:An Architecture for Scalable Access Management in IoT[J].IEEE Internet of Things Journal,2018,5(2):1184-1195. [13]ZHANG Y,LI B,LIU B,et al.An Attribute-Based Collaborative Access Control Scheme Using Blockchain for IoT Devices[J].Electronics,2020,9(2):285. [14]BOURAS M,XIA B,ABUASSBA A,et al.IoT-CCAC:a blockchain-based consortium capability access control approach for IoT[J].PeerJ Computer Science,2021,7(3):e455. [15]NOVO O.Scalable Access Management in IoT using Block-chain:a Performance Evaluation[J].IEEE Internet of Things Journal,2019,6(3):4694-4701. [16]QI X,SIFAH E,AGYEKUM O,et al.Secured Fine-Grained Selective Access to Outsourced Cloud Data in IoT Environments[J].IEEE Internet of Things Journal,2019,6(6):10749-10762. [17]BETHENCOURT J,SAHAI A,WATERS B.Ciphertext-Poli-cy.Attribute-Based Encryption[C]//IEEE Symposium on Security & Privacy.IEEE,2007. [18]SUN S,CHEN S,DU R.Trusted and Efficient Cross-Domain Access Control System Based on Blockchain[J].Scientific Programming,2020,2020(10):1-13. [19]XIE R N,LI H,SHI G Z,et al.Traceable access control mechanism based on blockchain[J].Journal of Communications,2020,41(12):82-93. |
|