面向物联网服务协同的跨层安全机制研究

基本信息
批准号:61902021
项目类别:青年科学基金项目
资助金额:22.00
负责人:段莉
学科分类:
依托单位:北京交通大学
批准年份:2019
结题年份:2022
起止时间:2020-01-01 - 2022-12-31
项目状态: 已结题
项目参与者:
关键词:
发布/订阅访问控制隐私保护物联网服务
结项摘要

Internet of Things (IoT) service collaborations are widely used to coordinate loosely coupled services that are often deployed on an open IoT environment, in order to finish specific business goals. The publish/subscribe-based service collaboration has features of indirect, anonymous and multicasting service interaction, existing privacy-preserving techniques for static service interactions cannot satisfy security and privacy requirements of the dynamic and changing IoT service due to these new features mentioned above. This project aims to investigate the challenging issues of efficient and novel privacy-preserving theory in IoT service collaborations, and explore multi-layered security challenges for sensitive data and access control-based data privacy-preserving techniques for IoT service collaborations based on our previous work in this area. This project will put more efforts on key issues of the modeling and verification of secure service, the access control mechanism of published data, service policy privacy. Cross-layer privacy-preserving approaches for combining attribute-based encryption mechanism, policy encoding mechanism, and fully homomorphic mechanism will be embedded in publish/subscribe-based service collaborations. This project will further develop a prototype tool to ensure secure IoT service collaborations. Cryptographic security analysis and application studies will be employed to validate the security and effectiveness of the proposed techniques. The research results of this project are expected to effectively address the challenging issues of high-efficient and secure collaboration of IoT services. Later, this project will have more direction and guiding significance for building secure IoT demonstration applications, such as WIT120, smart grid and so on..This project will put more efforts on key issues of the access control mechanism of published data, service policy and data access for service compositions, and cross-layer privacy-preserving approaches for combining attribute-based encryption mechanism, policy encoding mechanism, and fully homomorphic mechanism. This project will further develop a prototype tool to ensure secure IoT service collaborations. Cryptographic security analysis and application studies will be employed to validate the security and effectiveness of the proposed techniques. The research results of this project are expected to effectively address the challenging issues of high-efficient and secure collaboration of IoT services. Later, this project will have more direction and guiding significance for building secure IoT demonstration applications, such as WIT120, smart grid and so on.

物联网服务协同通过将部署于开放物联网环境中的服务以松耦合的形式实时协作完成一定的业务目标。基于发布/订阅的物联网服务协同具有间接、匿名和多播的交互特征,已有的面向确定环境的服务安全机制已经无法满足动态多变的物联网服务安全与隐私需求,本项目旨在研究适用于物联网服务的高效新型服务安全保护理论,探索服务安全建模与验证、发布数据细粒度的访问控制模型和高效新型的服务策略隐私保障机制等关键问题,研究形式化建模与验证方法和属性加密机制、策略编码机制与全同态加密机制相结合的方法,在服务协同架构中嵌入服务安全形式化建模与验证、访问控制、隐私保护等安全功能,实现物联网服务交互的安全性、高效性和实时性。本项目预期研究成果将为智慧医疗、智能电网等物联网实际应用领域数据安全与隐私保护问题的解决提供理论指导。

项目摘要

物联网服务协同通过将部署于开放物联网环境中的服务以松耦合的形式实时协作完成一定的业务目标。但物联网环境的开放性和动态性,给服务协同中的服务安全与数据隐私问题带来了挑战。本项目研究了物联网服务协同不同层次、新型的服务安全与数据隐私保护理论,采用区块链和密码学技术,针对用户隐私信息泄露问题,提出了多层次的保护用户行为隐私和数据策略隐私的方法;针对协同服务安全难保障问题,提出跨域服务协同下安全服务提供和安全交互方法;针对共享数据未授权访问问题,提出共享数据细粒度访问控制方法。本项目的研究成果为智慧医疗、智能电网等物联网实际应用领域数据安全与隐私保护问题的解决提供理论指导。三年来,申请人围绕着本项目的研究内容发表论文12篇,获得最佳论文1篇;申请国家发明专利6项,其中4项已授权;协助培养在读博士研究生1名,协助指导硕士在读研究生1人,作为指导老师培养在读硕士研究生8人,培养晋升副高级职称1人。

项目成果
{{index+1}}

{{i.achievement_title}}

{{i.achievement_title}}

DOI:{{i.doi}}
发表时间:{{i.publish_year}}

暂无此项成果

数据更新时间:2023-05-31

其他相关文献

1

涡度相关技术及其在陆地生态系统通量研究中的应用

涡度相关技术及其在陆地生态系统通量研究中的应用

DOI:10.17521/cjpe.2019.0351
发表时间:2020
2

祁连山天涝池流域不同植被群落枯落物持水能力及时间动态变化

祁连山天涝池流域不同植被群落枯落物持水能力及时间动态变化

DOI:10.13885/j.issn.0455-2059.2020.06.004
发表时间:2020
3

气相色谱-质谱法分析柚木光辐射前后的抽提物成分

气相色谱-质谱法分析柚木光辐射前后的抽提物成分

DOI:10.14067/j.cnki.1673-923x.2018.02.019
发表时间:2018
4

端壁抽吸控制下攻角对压气机叶栅叶尖 泄漏流动的影响

端壁抽吸控制下攻角对压气机叶栅叶尖 泄漏流动的影响

DOI:
发表时间:2020
5

基于ESO的DGVSCMG双框架伺服系统不匹配 扰动抑制

基于ESO的DGVSCMG双框架伺服系统不匹配 扰动抑制

DOI:
发表时间:2018

相似国自然基金

1

基于物联网技术的跨层优化设计和安全机制研究

批准号:61272400
批准年份:2012
负责人:刘宴兵
学科分类:F0207
资助金额:80.00
项目类别:面上项目
2

面向窄带物联网的物理层安全技术研究

批准号:61771487
批准年份:2017
负责人:蔡跃明
学科分类:F0105
资助金额:62.00
项目类别:面上项目
3

面向服务智能协同的农业物联网动态自治与资源优化配置

批准号:61473078
批准年份:2014
负责人:任立红
学科分类:F03
资助金额:82.00
项目类别:面上项目
4

面向物联网安全传输的节能机制

批准号:61902351
批准年份:2019
负责人:刘晓莹
学科分类:F0207
资助金额:26.00
项目类别:青年科学基金项目