首页> 外文期刊>ACM Transactions on Internet Technology >Secure Data-Centric Access Control for Smart Grid Services Based on Publish/Subscribe Systems
【24h】

Secure Data-Centric Access Control for Smart Grid Services Based on Publish/Subscribe Systems

机译:基于发布/订阅系统的智能电网服务的以数据为中心的安全访问控制

获取原文
获取原文并翻译 | 示例
           

摘要

The communication systems in existing smart gridsmainly take the request/reply interaction model, in which data access is under the direct control of data producers. This tightly controlled interaction model is not scalable to support complex interactions among smart grid services. On the contrary, the publish/subscribe system features a loose coupling communication infrastructure and allows indirect, anonymous and multi-cast interactions among smart grid services. The publish/subscribe system can thus support scalable and flexible collaboration among smart grid services. However, the access is not under the direct control of data producers, it might not be easy to implement an access control scheme for a publish/subscribe system. In this article, we propose a Data-Centric Access Control Framework (DCACF) to support secure access control in a publish/subscribe model. This framework helps to build scalable smart grid services, while keeping features of service interactions and data confidentiality at the same time. The data published in our DCACF is encrypted with a fully homomorphic encryption scheme, which allows in-grid homomorphic aggregation of the encrypted data. The encrypted data is accompanied by bloom-filter encoded control policies and access credentials to enable indirect access control. We have analyzed the correctness and security of our DCACF and evaluated its performance in a distributed environment.
机译:现有智能电网中的通信系统主要采用请求/应答交互模型,其中数据访问在数据生产者的直接控制下。这种严格控制的交互模型无法扩展以支持智能电网服务之间的复杂交互。相反,发布/订阅系统具有松散耦合的通信基础结构,并允许智能电网服务之间进行间接,匿名和多播交互。因此,发布/订阅系统可以支持智能网格服务之间的可伸缩且灵活的协作。但是,访问不受数据生产者的直接控制,对于发布/预订系统实现访问控制方案可能并不容易。在本文中,我们提出了一个以数据为中心的访问控制框架(DCACF),以支持发布/订阅模型中的安全访问控制。该框架有助于构建可扩展的智能网格服务,同时保持服务交互的功能和数据机密性。在我们的DCACF中发布的数据已使用完全同态加密方案进行了加密,该方案允许网格内同态聚合加密数据。加密的数据随附有Bloom-filter编码的控制策略和访问凭据,以启用间接访问控制。我们已经分析了DCACF的正确性和安全性,并评估了其在分布式环境中的性能。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号