The automotive industry is witnessing an accelerated growth in digital innovations that turn modern vehicles into digital systems. This makes the security of modern vehicles a crucial concern as they have evolved into cyber-physical and safety-critical systems. Therefore, stateful identity management and continuous access control have become a paramount requirement in smart vehicles. Indeed, several Identity and Access Management (IAM) frameworks have been proposed in the automotive field, but context awareness and continuity of control remain overlooked. To address these challenges, we present SIUV: a stateful smart-car IAM that is based on Usage Control (UCON) and Verifiable Credentials (VCs). SIUV uses Attribute Based Access Control (ABAC) policies to issue privileges to subjects (i.e. drivers or applications) according to their credentials and claims. The issued privileges are then used to decide whether to grant or deny access to in-car resources. Furthermore, the system continuously monitors subject claims, resource attributes and environmental conditions (e.g. location or time). Hence, if a change occurs, the system re-evaluates policies and updates or revokes issued privileges and usage decisions accordingly. We describe the architecture of SIUV, discuss the evaluation results, and define future directions.

SIUV: A Smart Car Identity Management and Usage Control System Based on Verifiable Credentials / Hariri, Ali; Bandopadhyay, Subhajit; Rizos, Athanasios; Dimitrakos, Theo; Crispo, Bruno; Rajarajan, Muttukrishnan. - 625:(2021), pp. 36-50. (Intervento presentato al convegno IFIP Sec tenutosi a Oslo, Norway nel 22–24 June, 2021) [10.1007/978-3-030-78120-0_3].

SIUV: A Smart Car Identity Management and Usage Control System Based on Verifiable Credentials

Hariri, Ali
Primo
;
Crispo, Bruno;
2021-01-01

Abstract

The automotive industry is witnessing an accelerated growth in digital innovations that turn modern vehicles into digital systems. This makes the security of modern vehicles a crucial concern as they have evolved into cyber-physical and safety-critical systems. Therefore, stateful identity management and continuous access control have become a paramount requirement in smart vehicles. Indeed, several Identity and Access Management (IAM) frameworks have been proposed in the automotive field, but context awareness and continuity of control remain overlooked. To address these challenges, we present SIUV: a stateful smart-car IAM that is based on Usage Control (UCON) and Verifiable Credentials (VCs). SIUV uses Attribute Based Access Control (ABAC) policies to issue privileges to subjects (i.e. drivers or applications) according to their credentials and claims. The issued privileges are then used to decide whether to grant or deny access to in-car resources. Furthermore, the system continuously monitors subject claims, resource attributes and environmental conditions (e.g. location or time). Hence, if a change occurs, the system re-evaluates policies and updates or revokes issued privileges and usage decisions accordingly. We describe the architecture of SIUV, discuss the evaluation results, and define future directions.
2021
SIUV: A Smart Car Identity Management and Usage Control System Based on Verifiable Credentials
New York
Springer, Cham
978-3-030-78119-4
978-3-030-78120-0
Hariri, Ali; Bandopadhyay, Subhajit; Rizos, Athanasios; Dimitrakos, Theo; Crispo, Bruno; Rajarajan, Muttukrishnan
SIUV: A Smart Car Identity Management and Usage Control System Based on Verifiable Credentials / Hariri, Ali; Bandopadhyay, Subhajit; Rizos, Athanasios; Dimitrakos, Theo; Crispo, Bruno; Rajarajan, Muttukrishnan. - 625:(2021), pp. 36-50. (Intervento presentato al convegno IFIP Sec tenutosi a Oslo, Norway nel 22–24 June, 2021) [10.1007/978-3-030-78120-0_3].
File in questo prodotto:
File Dimensione Formato  
siuv.pdf

accesso aperto

Tipologia: Post-print referato (Refereed author’s manuscript)
Licenza: Tutti i diritti riservati (All rights reserved)
Dimensione 636.25 kB
Formato Adobe PDF
636.25 kB Adobe PDF Visualizza/Apri

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/11572/364254
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 5
  • ???jsp.display-item.citation.isi??? ND
social impact