Title | ||
---|---|---|
Verifiable and auditable authorizations for smart industries and industrial Internet-of-Things |
Abstract | ||
---|---|---|
Modern industrial systems are enriched by cyber–physical devices and interconnections with business processes that enable flexible production, remote monitoring, control and maintenance. These systems are typically subject to multiple authorities which must cooperate with each other, as in the case of segmented industrial environments and supply chains. In similar contexts, voluntary or unintentional damages may be caused by cyber attacks or by misbehaving authorized parties. We propose an original architecture that regulates accesses to industrial systems’ resources through authorization delegation procedures. It guarantees several benefits that include the possibility of auditing authorizations released by delegated third parties, of detecting misconducts and possible attacks, and of assuring attribution of misconducts. The proposed solution is compatible with constraints characterizing industrial environments and with security and performance requirements of industrial architectures. The performance and latencies of the auditing mechanisms are evaluated through a prototype. |
Year | DOI | Venue |
---|---|---|
2021 | 10.1016/j.jisa.2021.102848 | Journal of Information Security and Applications |
Keywords | DocType | Volume |
Industrial Internet of Things,Authorization,Delegation,Access control,Authentication,Transparency | Journal | 59 |
ISSN | Citations | PageRank |
2214-2126 | 0 | 0.34 |
References | Authors | |
0 | 6 |
Name | Order | Citations | PageRank |
---|---|---|---|
Luca Ferretti | 1 | 43 | 7.66 |
Francesco Longo | 2 | 390 | 34.61 |
Giovanni Merlino | 3 | 208 | 28.11 |
M. Colajanni | 4 | 154 | 12.10 |
Antonio Puliafito | 5 | 1562 | 145.29 |
Nachiket Tapas | 6 | 35 | 4.43 |