An Access Control Model for Resource Sharing Based on the Role-Based Access Control Intended for Multi-Domain Manufacturing Internet of Things
Manufacturing Internet of Things (MIoT) represents the manufacturing oriented to Internet of Things with two important characteristics, resource sharing and process collaboration. Access control in resource sharing is very important for MIoT operation safety. This paper presents an access control mo...
Main Authors: | , , , |
---|---|
Format: | Article |
Language: | English |
Published: |
IEEE
2017-01-01
|
Series: | IEEE Access |
Subjects: | |
Online Access: | https://ieeexplore.ieee.org/document/7904674/ |
id |
doaj-ed6a00ce5c24410c9faaa28c95667776 |
---|---|
record_format |
Article |
spelling |
doaj-ed6a00ce5c24410c9faaa28c956677762021-03-29T20:03:42ZengIEEEIEEE Access2169-35362017-01-0157001701110.1109/ACCESS.2017.26933807904674An Access Control Model for Resource Sharing Based on the Role-Based Access Control Intended for Multi-Domain Manufacturing Internet of ThingsQiang Liu0Hao Zhang1Jiafu Wan2Xin Chen3https://orcid.org/0000-0002-9531-068XKey Laboratory of Computer Integrated Manufacturing System, Guangdong University of Technology, Guangzhou, ChinaKey Laboratory of Computer Integrated Manufacturing System, Guangdong University of Technology, Guangzhou, ChinaSchool of Mechanical & Automotive Engineering, South China University of Technology, Guangzhou, ChinaKey Laboratory of Computer Integrated Manufacturing System, Guangdong University of Technology, Guangzhou, ChinaManufacturing Internet of Things (MIoT) represents the manufacturing oriented to Internet of Things with two important characteristics, resource sharing and process collaboration. Access control in resource sharing is very important for MIoT operation safety. This paper presents an access control model for resource sharing based on the role-based access control intended for multidomain MIoT. In multidomain systems, in order to response on the assigning request for permission for the certain role from the certain user, an authority action sequence named the authorization route is employed to determine an appropriate authorization state. In this paper, the best authorization route with the least spread of permissions is defined as an optimal authorization route. We employed an intelligent planning theory to model the authorization route problem and to develop a solution algorithm called PGAO*, which can support external evaluation of both single-goal-role authorization routes and multi-goal-role authorization routes. In addition, some simple policies for solving the authorization route problem are presented. The proposed access control model provides a quick and efficient authorization decision support for administrators in collaborative domain and ensures a secure access in resource sharing in MIoT.https://ieeexplore.ieee.org/document/7904674/Access control modelauthorization routemanufacturing internet of thingsrole-based access control |
collection |
DOAJ |
language |
English |
format |
Article |
sources |
DOAJ |
author |
Qiang Liu Hao Zhang Jiafu Wan Xin Chen |
spellingShingle |
Qiang Liu Hao Zhang Jiafu Wan Xin Chen An Access Control Model for Resource Sharing Based on the Role-Based Access Control Intended for Multi-Domain Manufacturing Internet of Things IEEE Access Access control model authorization route manufacturing internet of things role-based access control |
author_facet |
Qiang Liu Hao Zhang Jiafu Wan Xin Chen |
author_sort |
Qiang Liu |
title |
An Access Control Model for Resource Sharing Based on the Role-Based Access Control Intended for Multi-Domain Manufacturing Internet of Things |
title_short |
An Access Control Model for Resource Sharing Based on the Role-Based Access Control Intended for Multi-Domain Manufacturing Internet of Things |
title_full |
An Access Control Model for Resource Sharing Based on the Role-Based Access Control Intended for Multi-Domain Manufacturing Internet of Things |
title_fullStr |
An Access Control Model for Resource Sharing Based on the Role-Based Access Control Intended for Multi-Domain Manufacturing Internet of Things |
title_full_unstemmed |
An Access Control Model for Resource Sharing Based on the Role-Based Access Control Intended for Multi-Domain Manufacturing Internet of Things |
title_sort |
access control model for resource sharing based on the role-based access control intended for multi-domain manufacturing internet of things |
publisher |
IEEE |
series |
IEEE Access |
issn |
2169-3536 |
publishDate |
2017-01-01 |
description |
Manufacturing Internet of Things (MIoT) represents the manufacturing oriented to Internet of Things with two important characteristics, resource sharing and process collaboration. Access control in resource sharing is very important for MIoT operation safety. This paper presents an access control model for resource sharing based on the role-based access control intended for multidomain MIoT. In multidomain systems, in order to response on the assigning request for permission for the certain role from the certain user, an authority action sequence named the authorization route is employed to determine an appropriate authorization state. In this paper, the best authorization route with the least spread of permissions is defined as an optimal authorization route. We employed an intelligent planning theory to model the authorization route problem and to develop a solution algorithm called PGAO*, which can support external evaluation of both single-goal-role authorization routes and multi-goal-role authorization routes. In addition, some simple policies for solving the authorization route problem are presented. The proposed access control model provides a quick and efficient authorization decision support for administrators in collaborative domain and ensures a secure access in resource sharing in MIoT. |
topic |
Access control model authorization route manufacturing internet of things role-based access control |
url |
https://ieeexplore.ieee.org/document/7904674/ |
work_keys_str_mv |
AT qiangliu anaccesscontrolmodelforresourcesharingbasedontherolebasedaccesscontrolintendedformultidomainmanufacturinginternetofthings AT haozhang anaccesscontrolmodelforresourcesharingbasedontherolebasedaccesscontrolintendedformultidomainmanufacturinginternetofthings AT jiafuwan anaccesscontrolmodelforresourcesharingbasedontherolebasedaccesscontrolintendedformultidomainmanufacturinginternetofthings AT xinchen anaccesscontrolmodelforresourcesharingbasedontherolebasedaccesscontrolintendedformultidomainmanufacturinginternetofthings AT qiangliu accesscontrolmodelforresourcesharingbasedontherolebasedaccesscontrolintendedformultidomainmanufacturinginternetofthings AT haozhang accesscontrolmodelforresourcesharingbasedontherolebasedaccesscontrolintendedformultidomainmanufacturinginternetofthings AT jiafuwan accesscontrolmodelforresourcesharingbasedontherolebasedaccesscontrolintendedformultidomainmanufacturinginternetofthings AT xinchen accesscontrolmodelforresourcesharingbasedontherolebasedaccesscontrolintendedformultidomainmanufacturinginternetofthings |
_version_ |
1724195466916134912 |