Internet of Things. IoT Infrastructures. Second International Summit, IoT 360° 2015, Rome, Italy, October 27-29, 2015, Revised Selected Papers, Part II

Research Article

Data-Centric Security for the IoT

Download
328 downloads
  • @INPROCEEDINGS{10.1007/978-3-319-47075-7_10,
        author={Daniel Schreckling and Juan Parra and Charalampos Doukas and Joachim Posegga},
        title={Data-Centric Security for the IoT},
        proceedings={Internet of Things. IoT Infrastructures. Second International Summit, IoT 360° 2015, Rome, Italy, October 27-29, 2015, Revised Selected Papers, Part II},
        proceedings_a={IOT360},
        year={2017},
        month={6},
        keywords={Internet of Things Information flow control System security Reputation Provenance Identity management Static analysis Node-RED},
        doi={10.1007/978-3-319-47075-7_10}
    }
    
  • Daniel Schreckling
    Juan Parra
    Charalampos Doukas
    Joachim Posegga
    Year: 2017
    Data-Centric Security for the IoT
    IOT360
    Springer
    DOI: 10.1007/978-3-319-47075-7_10
Daniel Schreckling1,*, Juan Parra1, Charalampos Doukas2, Joachim Posegga1
  • 1: IT-Security, University of Passau
  • 2: Future Media Area, CREATE-NET
*Contact email: ds@sec.uni-passau.de

Abstract

This work presents a paradigm shift and introduces a data-centric security architecture for the COMPOSE framework; a platform as a service and marketplace for the IoT. We distinguish our approach from classical device-centric approaches and outline architectural as well as infrastructural specifics of our platform. In particular, we describe how fine-granular and data-centric security requirements can be combined with static and dynamic enforcement to regain governance on devices and data without sacrificing the intrinsic openness of IoT platforms. We also highlight the power of our architecture, converting concepts such as data provenance and reputation into efficient, highly useful, and practically applicable complements.