Who’s Controlling My Device? Multi-User Multi-Device-Aware Access Control System for Shared Smart Home Environment

Author:

Sikder Amit Kumar1ORCID,Babun Leonardo1ORCID,Celik Z. Berkay2ORCID,Aksu Hidayet3ORCID,McDaniel Patrick4ORCID,Kirda Engin5ORCID,Uluagac A. Selcuk1ORCID

Affiliation:

1. Florida International University, Miami, Florida, USA

2. Purdue University, Indiana, USA

3. Google, California, USA

4. Pennsylvania State University, Pennsylvania, USA

5. Northeastern University, Boston, Massachusetts, USA

Abstract

Multiple users have access to multiple devices in a smart home system – typically through a dedicated app installed on a mobile device. Traditional access control mechanisms consider one unique, trusted user that controls access to the devices. However, multi-user multi-device smart home settings pose fundamentally different challenges to traditional single-user systems. For instance, in a multi-user environment, users have conflicting, complex, and dynamically-changing demands on multiple devices that cannot be handled by traditional access control techniques. Moreover, smart devices from different platforms/vendors can share the same home environment, making existing access control obsolete for smart home systems. To address these challenges, in this paper, we introduce Kratos+ , a novel multi-user and multi-device-aware access control mechanism that allows smart home users to flexibly specify their access control demands. Kratos+ has four main components: user interaction module, backend server, policy manager, and policy execution module. Users can easily specify their desired access control settings using the interaction module that are translated into access control policies in the back-end server. The policy manager analyzes these policies, initiates automated negotiation between users to resolve conflicting demands, and generates final policies to enforce in smart home systems. We implemented Kratos+ as a platform-independent solution and evaluated its performance on real smart home deployments featuring multi-user scenarios with a rich set of configurations (337 different policies including 231 demand conflicts and 69 restriction policies). These configurations also included five different threats associated with access control mechanisms. Our extensive evaluations show that Kratos+ is very effective in resolving conflicting access control demands with minimal overhead. We also performed an extensive user study with 72 smart home users to better understand the user’s needs before designing the system and a usability study to evaluate the efficacy of Kratos+ in a real-life smart home environment.

Funder

US National Science Foundation

US Office of Naval Research grant Cyber-physical Systems

Publisher

Association for Computing Machinery (ACM)

Subject

Software,Information Systems,Hardware and Architecture,Computer Science Applications,Computer Networks and Communications

Reference64 articles.

1. Peek-a-boo

2. Ioannis Agadakos, Per Hallgren, Dimitrios Damopoulos, Andrei Sabelfeld, and Georgios Portokalidis. 2016. Location-enhanced authentication using the IoT: Because you cannot be in two places at once. In Proceedings of the 32nd Annual Conference on Computer Security Applications. ACM.

3. Abrar S. Alrumayh, Sarah M. Lehman, and Chiu C. Tan. 2019. ABACUS: Audio based access control utility for smarthomes. In Proceedings of the 4th ACM/IEEE Symposium on Edge Computing. 395–400.

4. Context aware access control for home voice assistant in multi-occupant homes;Alrumayh Abrar S.;Pervasive and Mobile Computing,2020

5. Leonardo Babun, Z. Berkay Celik, Patrick McDaniel, and A. Selcuk Uluagac. 2021. Real-time analysis of privacy-(un) aware IoT applications. In Privacy Enhancing Technologies Symposium (PETS).

Cited by 13 articles. 订阅此论文施引文献 订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献

1. Enhancing the Multi-User Experience in Fully Autonomous Vehicles Through Explainable AI Voice Agents;International Journal of Human–Computer Interaction;2024-07-29

2. SHPAC: Fine-grained and Multi-platform Supported Access Control System for Smart Home Scenario;2024 33rd International Conference on Computer Communications and Networks (ICCCN);2024-07-29

3. The $$\mathrm {ACAC_{D}}$$ model for mutable activity control and chain of dependencies in smart and connected systems;International Journal of Information Security;2024-07-20

4. Beyond Individual Concerns: Multi-user Privacy in Large Language Models;ACM Conversational User Interfaces 2024;2024-07-08

5. Connecting Home: Human-Centric Setup Automation in the Augmented Smart Home;Proceedings of the CHI Conference on Human Factors in Computing Systems;2024-05-11

同舟云学术

1.学者识别学者识别

2.学术分析学术分析

3.人才评估人才评估

"同舟云学术"是以全球学者为主线,采集、加工和组织学术论文而形成的新型学术文献查询和分析系统,可以对全球学者进行文献检索和人才价值评估。用户可以通过关注某些学科领域的顶尖人物而持续追踪该领域的学科进展和研究前沿。经过近期的数据扩容,当前同舟云学术共收录了国内外主流学术期刊6万余种,收集的期刊论文及会议论文总量共计约1.5亿篇,并以每天添加12000余篇中外论文的速度递增。我们也可以为用户提供个性化、定制化的学者数据。欢迎来电咨询!咨询电话:010-8811{复制后删除}0370

www.globalauthorid.com

TOP

Copyright © 2019-2024 北京同舟云网络信息技术有限公司
京公网安备11010802033243号  京ICP备18003416号-3