Back to Search
Start Over
A Secure Integrated Framework for Fog-Assisted Internet-of-Things Systems
- Source :
- IEEE Internet of Things Journal. 8:6840-6852
- Publication Year :
- 2021
- Publisher :
- Institute of Electrical and Electronics Engineers (IEEE), 2021.
-
Abstract
- Fog-assisted Internet-of-Things (Fog-IoT) systems are deployed in remote and unprotected environments, making them vulnerable to security, privacy, and trust challenges. Existing studies propose security schemes and trust models for these systems. However, mitigation of insider attacks, namely, blackhole, sinkhole, sybil, collusion, self-promotion, and privilege escalation, has always been a challenge and mostly carried out by the legitimate nodes. Compared to other studies, this article proposes a framework featuring attribute-based access control and trust-based behavioral monitoring to address the challenges mentioned above. The proposed framework consists of two components, the security component (SC) and the trust management component (TMC). SC ensures data confidentiality, integrity, authentication, and authorization. TMC evaluates Fog-IoT entities’ performance using a trust model based on a set of Quality of Service (QoS) and network communication features. Subsequently, trust is embedded as an attribute within SC’s access control policies, ensuring that only trusted entities are granted access to fog resources. Several attacking scenarios, namely, Denial of Service (DoS), Distributed DoS, probing, and data theft are designed to elaborate on how the change in trust triggers the change in access rights and, therefore, validates the proposed integrated framework’s design principles. The framework is evaluated on a Raspberry Pi 3 Model B+ to benchmark its performance in terms of time and memory complexity. Our results show that both SC and TMC are lightweight and suitable for resource-constrained devices.
- Subjects :
- QA75
Computer Networks and Communications
Computer science
0211 other engineering and technologies
Access control
Cloud computing
Denial-of-service attack
0805 Distributed Computing
02 engineering and technology
Computer security
computer.software_genre
Insider
1005 Communications Technologies
0202 electrical engineering, electronic engineering, information engineering
Trust management (information system)
021110 strategic, defence & security studies
Authentication
business.industry
Quality of service
Authorization
020206 networking & telecommunications
Computer Science Applications
Hardware and Architecture
Signal Processing
business
computer
Privilege escalation
Information Systems
Subjects
Details
- ISSN :
- 23722541 and 23274662
- Volume :
- 8
- Database :
- OpenAIRE
- Journal :
- IEEE Internet of Things Journal
- Accession number :
- edsair.doi.dedup.....5e3c30984f8f47abef1c177d185868f2
- Full Text :
- https://doi.org/10.1109/jiot.2020.3035474