Journal of Applied Sciences ›› 2021, Vol. 39 ›› Issue (1): 55-69.doi: 10.3969/j.issn.0255-8297.2021.01.005

• Blockchain • Previous Articles    

Blockchain and Capability Based Access Control Mechanism in Multi-domain IoT

WANG Siyuan, ZOU Shihong   

  1. School of Cyberspace Security, Beijing University of Posts and Telecommunications, Beijing 100876, China
  • Received:2020-11-15 Published:2021-02-04

Abstract: Data in Internet of things (IoT) usually contains a large amount of personal privacy information, In order to prevent privacy data leakage due to unauthorized access during device collaboration, this article proposes a set of access control mechanisms for multi-domain IoT device collaboration scenarios. By combining distributed capabilitybased access control (CapAC) with blockchain technology, this article designs a capability token stored in the blockchain and a token management contract based on smart contracts. According to CapACs access decision-making method, a blockchain-based token verification method is designed. The blockchain lightweight node is optimized for the characteristics of IoT. Finally, a blockchain system is built to implement the mechanism proposed in the article. Experimental test results show that compared to centralized access control mechanisms, this solution can safely and accurately execute access decisions in large-scale IoT scenarios and has more stable processing performance. Lightweight design can greatly reduce node storage burden.

Key words: blockchain, access control, Internet of things (IoT), smart contract

CLC Number: