课题基金 / 基金详情

Access Control Models and Technologies for the Internet of Things

Access Control Models and Technologies for the Internet of Things
物联网访问控制模型和技术
批准号:
RGPIN-2020-05238
负责人:
Fong, Philip
金额:
$1.75万
依托单位:
依托单位国家:
加拿大
项目类别:
Discovery Grants Program - Individual
财政年份:
2022
资助国家:
加拿大
项目状态:
已结题
起止时间:
2022-01-01 至 2023-12-31

项目摘要

项目成果

Fong, Philip的其他基金

相似基金

相关文献

中文摘要
翻译
访问控制是计算机系统的安全功能,它确保只有在合法情况下,授权用户才能访问资源。Ross安德森曾经说过,访问控制是“计算机安全的传统重心。“物联网(IoT)的出现,即嵌入在我们物理环境中的智能设备的互连网络,需要重新思考如何实现访问控制。在没有适当解决这些新兴挑战的情况下,盲目地将物联网设备部署到我们的智能家居、车载网络和工业控制系统(ICS)中,不仅会导致我们失去宝贵的数字资产,还会影响我们的人身安全。在这项工作中,我将解决当前物联网环境中的三个访问控制挑战。第一个挑战来自于由智能设备互连组成的大规模分布式系统的规模。如何编写一个适当制定的访问控制策略,以解决许多设备和意外访问场景?请注意,政策制定中的任何错误都可能导致影响我们安全的设备访问泄漏。随着物联网成为一种全球现象,假设所有用户和设备都注册到单个身份管理系统是不现实的。这种假设就像要求世界上每个人都有Facebook或Google帐户(或使用同一个互联网服务提供商)一样不合理。第二个保护挑战是支持这样的场景:彼此不认识的用户(或他们的设备)希望在他们以偶然和短暂的方式遇到彼此时共享资源。关键是使完全陌生的人能够在偶然相遇时建立彼此的信任,而不必求助于全球身份管理系统。第三个保护挑战涉及智能设备嵌入物理世界的事实。滥用不仅仅是指是否将单一访问权限授予未经授权的方,而是指随着时间的推移,访问模式如何出现。挑战是关于行为模式的控制,以及多个设备之间的协作模式。拟议研究计划的目标是设计、分析和开发新型访问控制模型和技术来解决上述挑战。
英文摘要
Access Control is the security feature of a computer system that ensures access to resources is only granted to authorized users under legitimate circumstances. Ross Anderson once said that Access Control is the "traditional center of gravity of computer security." The advent of the Internet of Things (IoT), namely, the inter-connected network of smart devices that are embedded in our physical environment, necessitates a significant rethinking of how Access Control is to be achieved. Mindlessly deploying IoT devices into our smart homes, vehicular networks, and industrial control systems (ICS) without properly addressing these emerging challenges will not only cause us loss of valuable digital assets, but also impact our physical safety. In this work, I will address three access control challenges in current IoT environments. The first challenge arises from the sheer scale of the massively distributed system composed of inter-connection of smart devices. How does one write down a properly formulated access control policy that accounts for the many devices and unanticipated access scenarios? Note that any errors in policy formulation could lead to the leakage of access to devices that affects our safety. With IoT becoming a global phenomenon, it is unrealistic to assume that all the users and devices are registered to a single Identity Management System. That assumption is as unreasonable as asking everyone in the world to have a Facebook or Google account (or to use the same Internet Service Provider). The second protection challenge is to support scenarios in which users (or their devices) who do not know one another want to share resources when they encounter one another in a casual and transient manner. The crux is to enable total strangers to establish trust of one another during chance encounters, without resorting to a global Identity Management System. The third protection challenge concerns the fact that smart devices are embedded in the physical world. Misuse is not simply about whether a single access has been granted to unauthorized parties, but about how, over time, the access pattern that emerge. The challenge is about the control of behavior pattern, as well as the pattern of collaboration among multiple devices. The objective of the proposed research program is to design, analyze, and develop novel Access Control models and technologies that address the aforementioned challenges.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
Access Control Models and Technologies for the Internet of Things
  • 批准号:
    RGPIN-2020-05238
  • 项目类别:
    Discovery Grants Program - Individual
  • 资助金额:
    $1.75万
  • 财政年份:
    2021
  • 负责人:
    Fong, Philip
  • 依托单位:
Access Control Models and Technologies for the Internet of Things
  • 批准号:
    RGPIN-2020-05238
  • 项目类别:
    Discovery Grants Program - Individual
  • 资助金额:
    $1.75万
  • 财政年份:
    2020
  • 负责人:
    Fong, Philip
  • 依托单位:
Software Security
  • 批准号:
    1000229712-2013
  • 项目类别:
    Canada Research Chairs
  • 资助金额:
    $1.82万
  • 财政年份:
    2019
  • 负责人:
    Fong, Philip
  • 依托单位:
Security and Privacy Protection for Social Computing
  • 批准号:
    RGPIN-2014-06611
  • 项目类别:
    Discovery Grants Program - Individual
  • 资助金额:
    $2.84万
  • 财政年份:
    2019
  • 负责人:
    Fong, Philip
  • 依托单位:
国内基金
海外基金
Cortical control of internal state in the insular cortex-claustrum region