首页> 外文会议>International Conference on Network-Based Information Systems >Evaluation of an OI (Operation Interruption) Protocol to Prevent Illegal Information Flow in the IoT
【24h】

Evaluation of an OI (Operation Interruption) Protocol to Prevent Illegal Information Flow in the IoT

机译:评估OI(操作中断)协议,以防止IOT中的非法信息流

获取原文

摘要

Various types and millions of nodes including not only computers like servers but also devices like sensors and actuators are interconnected in the IoT (Internet of Things). Here, devices have to be prevented from maliciously accessed. The CapBAC (Capability-Based Access Control) model is proposed to make IoT devices secure. In the CapBAC model, an owner of a device issues a capability token, i.e. a set of access rights to a subject. Here, the subject is allowed to manipulate the device according to the access rights authorized in the capability token. Suppose a subject sbi is allowed to get data from a device d_2 but not allowed to get data from a device d_1. If another subject can get data from the device d_1 and sends the data to the device d_2, the subject sbi can get the data of the device d_1 from the device d_2. Here, the data in the device d_1 illegally flows to the subject sbi. In order to prevent illegal information flow, an OI (Operation Interruption) protocol is proposed in our previous studies. Here, illegal get operations are interrupted. In this paper, we evaluate the OI protocol in terms of the number of illegal get operations. In the evaluation, we show the ratio of the number of illegal get operations to the total number of get operations is kept constant even if the number of subjects increases in the OI protocol.
机译:各种类型和数百万个节点,包括不仅包括服务器等计算机,还包括传感器和执行器等设备在物联网(物联网)中相互连接。这里,必须从恶意访问的设备中防止设备。提出了CAPBAC(基于能力的访问控制)模型,使IOT设备安全。在Capbac模型中,设备的所有者发出能力令牌,即对象的一组访问权限。这里,允许对象根据在能力令牌中授权的访问权限来操纵设备。假设允许主题SBI从设备D_2获取数据,但不允许从设备D_1获取数据。如果另一个主题可以从设备D_1获取数据并将数据发送到设备D_2,则主题SBI可以从设备D_2获取设备D_1的数据。这里,设备D_1中的数据非法流到主题SBI。为了防止非法信息流,在我们以前的研究中提出了OI(操作中断)协议。在此,非法获取操作中断。在本文中,我们在非法获取操作的数量方面评估OI协议。在评估中,即使OI协议中的受试者数量增加,我们显示非法获取操作的数量与GET操作的总数保持不变。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号