Method of Resource Authentication Adapting for WoT Architecture

Ya-ou LIU,Liu-sheng HUANG,Hong-li XU,Chen-kai YANG
2017-01-01
Abstract:OAuth is an open standard for authorization based on Web,which has been widely used in many Web-based applications.However,it appears to face many challenges when applied in WoT architecture.On one hand,as the user in the OAuth scenarios can not be the owner of parts of the resource and the user of other resources at the same time,OAuth can not fit into the multi-role user in WoT architecture.On the other hand,OAuth doesn't provide flow control whereas the provider of the resource need to control the flow to prevent users from malicious access in WoT architecture.The newly proposed resource access control method for the multiroles user in WoT architecture resolves the problem that OAuth doesn't fit into the case that the user has multiply roles,and it can control the flow at the same time.
What problem does this paper attempt to address?