An inclusive Lifecycle Approach for IoT Devices Trust and Identity Management

K. Loupos, H. Niavis, Fotis Michalopoulos, George Misiakoulis, A. Skarmeta, Jesús Garcia, Angel Palomares, Hui Song, R. Dautov, Francesca Giampaolo, Rosella Mancilla, Francesca Costantino, D. Landuyt, Sam Michiels, Stefan More, C. Xenakis, Michail Bampatsikos, Ilias Politis, Konstantinos Krilakis, Sokratis Vavilis
{"title":"An inclusive Lifecycle Approach for IoT Devices Trust and Identity Management","authors":"K. Loupos, H. Niavis, Fotis Michalopoulos, George Misiakoulis, A. Skarmeta, Jesús Garcia, Angel Palomares, Hui Song, R. Dautov, Francesca Giampaolo, Rosella Mancilla, Francesca Costantino, D. Landuyt, Sam Michiels, Stefan More, C. Xenakis, Michail Bampatsikos, Ilias Politis, Konstantinos Krilakis, Sokratis Vavilis","doi":"10.1145/3600160.3605083","DOIUrl":null,"url":null,"abstract":"ERATOSTHENES is an EC, co-funded, research project strongly considering modern security challenges in the domain of Internet of Things in mind of their huge penetration into our day to day lives. There are a series of recent challenges that recently have been converted into obstacles or risk points that could block the secure operation of IoT networks in all day to day activities, from home to office, to leisure and security. These include examples such as the highly increased number of connected devices (at all network levels) that are on top forming inhomogeneous networks and systems of systems. Different vendor characteristics further increase the attack surface that is expected to further rise in the upcoming years. Such, highly critical, characteristics, dramatically increase the needs for confidentiality access control, user and things’ privacy, devices’ trustworthiness and compliance that require lifecycle considerations. The ERATOSTHENES project orchestrates a novel distributed, automated, auditable, yet privacy-respectful, Trust and Identity Management Framework and Reference Architecture with the ultimate scope to dynamically and holistically manage IoT devices in a lifecycle approach, strengthening trust, identities, and resilience in the entire IoT ecosystem while supporting the enforcement of the NIS directive, GDPR and Cybersecurity Act. This publication describes the ERATOSTHENES technical concept and reference architecture as well as design considerations, architecture characteristics, connectivity and interoperability.","PeriodicalId":107145,"journal":{"name":"Proceedings of the 18th International Conference on Availability, Reliability and Security","volume":null,"pages":null},"PeriodicalIF":0.0000,"publicationDate":"2023-08-29","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Proceedings of the 18th International Conference on Availability, Reliability and Security","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1145/3600160.3605083","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

Abstract

ERATOSTHENES is an EC, co-funded, research project strongly considering modern security challenges in the domain of Internet of Things in mind of their huge penetration into our day to day lives. There are a series of recent challenges that recently have been converted into obstacles or risk points that could block the secure operation of IoT networks in all day to day activities, from home to office, to leisure and security. These include examples such as the highly increased number of connected devices (at all network levels) that are on top forming inhomogeneous networks and systems of systems. Different vendor characteristics further increase the attack surface that is expected to further rise in the upcoming years. Such, highly critical, characteristics, dramatically increase the needs for confidentiality access control, user and things’ privacy, devices’ trustworthiness and compliance that require lifecycle considerations. The ERATOSTHENES project orchestrates a novel distributed, automated, auditable, yet privacy-respectful, Trust and Identity Management Framework and Reference Architecture with the ultimate scope to dynamically and holistically manage IoT devices in a lifecycle approach, strengthening trust, identities, and resilience in the entire IoT ecosystem while supporting the enforcement of the NIS directive, GDPR and Cybersecurity Act. This publication describes the ERATOSTHENES technical concept and reference architecture as well as design considerations, architecture characteristics, connectivity and interoperability.
物联网设备信任和身份管理的包容性生命周期方法
ERATOSTHENES是一个EC共同资助的研究项目,强烈考虑到物联网领域的现代安全挑战,因为它们对我们日常生活的巨大渗透。最近有一系列的挑战,最近已经转化为障碍或风险点,可能会阻碍物联网网络在日常活动中的安全运行,从家庭到办公室,到休闲和安全。这些例子包括连接设备数量的高度增加(在所有网络级别上),这些设备在顶部形成非同构网络和系统的系统。不同的供应商特征进一步增加了攻击面,预计在未来几年将进一步上升。这些高度关键的特性极大地增加了对机密访问控制、用户和事物的隐私、设备的可信度和合规性的需求,这些都需要考虑生命周期。ERATOSTHENES项目编排了一个新颖的分布式、自动化、可审计且尊重隐私的信任和身份管理框架和参考架构,其最终范围是在生命周期方法中动态和全面地管理物联网设备,加强整个物联网生态系统的信任、身份和弹性,同时支持NIS指令、GDPR和网络安全法的实施。本出版物描述了ERATOSTHENES技术概念和参考架构以及设计考虑,架构特征,连接性和互操作性。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信