Hierarchically Delegatable and Revocable Access Control for Large-Scale IoT Devices with Tradability Based on Blockchain

Liang Zhang,Haibin Kan,Jinrong Huang,Zhanpeng Zhang
DOI: https://doi.org/10.1007/978-981-97-2303-4_6
2024-01-01
Abstract:Access control is deemed a practical approach for managing the allowed list of who can access IoT devices. Different IoT use cases have shown requirements for various functionalities in access control. Hierarchical delegation on access control allows granted users to authorize other users. Revocability demonstrates the ability of the IoT owner to cancel access to her device. Tradability, meaning changing IoT device ownership, provides a solution for the IoT devices ownership trading market. However, the existing access control approaches do not implement these functionalities simultaneously or efficiently. This paper fills the gap by proposing a blockchain-based access control framework, leveraging the hierarchical deterministic (HD) wallet address technique. We achieve hierarchical access control of IoT devices using HD wallet. A signature scheme is incorporated to prove knowledge of HD child key pairs in the proposed framework. Further, we conduct concrete experiments on Ethereum and evaluate the gas consumption. The functionalities of the framework cost constant time or gas, implying that the framework scales well.
What problem does this paper attempt to address?