arrow
Return

Enabling Efficient and Distributed Access Control for Pervasive Edge Computing Services

delete2024-12-01
delete1
PRE
AI
L
Lingshuang Liu
C
Cheng Huang *
D
Dan Zhu
D
Dongxiao Liu
J
Jianbing Ni
X
Xuemin Shen
DOI:10.1109/TMC.2024.3395388delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
In this paper, we propose an efficient and distributed service access control framework (E-DAC) in the pervasive edge computing (PEC) environment, where the resources of peer devices at the network edge are integrated to provide latency-sensitive computing services to the nearby devices on behalf of edge servers. E-DAC addresses the challenge of efficient and distributed service access control, comprising edge service authorization, service access authorization, and mutual authentication between edge servers and edge devices. In dong so, E-DAC first extends a key-aggregate cryptosystem to enable batch service authorization, in which a service provider can aggregate the authorization keys of different services to produce a constant-size aggregate key for an edge server. Second, E-DAC enables users to acquire authorization from the service provider for service access on edge servers by using efficient secret sharing. Third, edge servers and users can authenticate with each other without interacting with a centralized server, while enabling secure zero-round trip communication, so that the service data is protected and the communication bandwidth cost is low. In addition, the service provider is capable of efficiently revoking the authorization of the dropout or compromised edge servers or users in response to the dynamics of the PEC environment. Finally, we prove the security of service access control in E-DAC, including unforgeability of service authorization and confidentiality of service data, and conduct extensive analysis and experiments to demonstrate that E-DAC is highly computational and communication-efficient on service authorization, authentication, and revocation.
Keywords:
Access control
authorization
key aggregation
mutual authentication
pervasive edge computing
Access control
authorization
key aggregation
mutual authentication
pervasive edge computing

Journal

IEEE Transactions on Mobile Computing cover
IEEE Transactions on Mobile Computing
IF:
9.2
Papers:
5.6K
Citations:
1.8W

Organization

Q
queens university - canada
Scholars:
1.8W
Papers: 1.7W
Citations: 29
F
fudan university
Scholars:
11.6W
Papers: 7.7W
Citations: 121
N
Northwestern Polytechnical University
Scholars:
4.6W
Papers: 3.7W
Citations: 5.3W
U
University of Waterloo
Scholars:
2.2W
Papers: 2.3W
Citations: 3.3W
researcher View more organizations