Skip to main content

A Context-Aware, Capability-Based, Role-Centric Access Control Model for IoMT

  • Conference paper
  • First Online:

Abstract

The Internet of Medical Things (IoMT) can be described as connecting everyday devices and wearables to the Internet in order to intelligently link them together, thus enabling new forms of communication between things (medical devices) and people (patients) and between things themselves. This paper describes a context-aware access control model that hinges on the role-based and attribute-based access control (RABAC) and the capability-based access control (CapBAC) models. A prototype access control mechanism based on the model is intended to be incorporated into a personal health record (PHR) platform.

This is a preview of subscription content, log in via an institution.

Buying options

Chapter
USD   29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
eBook
USD   39.99
Price excludes VAT (USA)
  • Available as EPUB and PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD   54.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Learn about institutional subscriptions

References

  1. Bhide, V.: A survey on the smart homes using Internet of Things (IoT). Int. J. Adv. Res. Comput. Manage. 2(12), 243–246 (2014)

    Google Scholar 

  2. Calvillo, J., Roman, I., Roa, L.M.: Empowering citizens with authorization mechanisms to their personal health resources. Int. J. Med. Inform. 82, 58–72 (2013)

    Article  Google Scholar 

  3. Carrion, I., Aleman, J., Toval, A.: Accessing the HIPAA standard in practice: PHR privacy policies. In: Proceedings of the 33rd Annual International Conference of the IEEE EMBS, Boston, Massachusetts, USA (2011)

    Google Scholar 

  4. Chen, T.S., Liu, C.H., Chen, T.L., Chen, C.S., Bau, J.G., Lin, T.C.: Secure dynamic authorization scheme of PHR in cloud computing. J. Med. Syst. 36(6), 4005–4020 (2012)

    Article  Google Scholar 

  5. Gusmeroli, S., Piccione, S., Rotondi, D.: A capability-based security approach to manage access control in the Internet of Things. Math. Comput. Model. 58(5–6), 1189–1205 (2013)

    Article  Google Scholar 

  6. Hernandez Ramos, J., Jara, A., Marın, L., Skarmeta, A.: Distributed capability-based access control for the Internet of Things. J. Internet Serv. Inf. Secur. (JISIS) 3(3/4), 1–16 (2013)

    Google Scholar 

  7. Jin, X., Sandhu, R., Krishnan, R.: RABAC: role-centric attribute-based access control. In: Kotenko, I., Skormin, V. (eds.) MMM-ACNS 2012. LNCS, vol. 7531, pp. 84–96. Springer, Heidelberg (2012). doi:10.1007/978-3-642-33704-8_8

    Chapter  Google Scholar 

  8. Li, F., Rahulamathavan, Y., Conti, M., Rajarajan, M.: LSD-ABAC: lightweight static and dynamic attributes based access control scheme for secure data access in mobile environment. In: Proceedings IEEE Local Computer Networks (IEEE LCN 2014), Edmonton, Canada (2014)

    Google Scholar 

  9. Pang, Z., Zheng, L., Tian, J., Kao-Walter, S., Dubrova, E., Chen, Q.: Design of a terminal solution for integration of in-home health care devices and services towards the Internet-of-Things. Enterp. Inf. Syst. 9(1), 86–116 (2015)

    Article  Google Scholar 

  10. Uckelman, D., Harrison, M., Michahelles, F. (eds.): Architecting the Internet of Things. Springer, Heidelberg (2011)

    Google Scholar 

  11. Weber, R.: Internet of Things – new security and privacy challenges. Comput. Law Secur. Rev. 26, 23–30 (2010)

    Article  Google Scholar 

Download references

Author information

Authors and Affiliations

Authors

Corresponding author

Correspondence to Flora Malamateniou .

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2017 ICST Institute for Computer Sciences, Social Informatics and Telecommunications Engineering

About this paper

Cite this paper

Malamateniou, F., Themistocleous, M., Prentza, A., Papakonstantinou, D., Vassilacopoulos, G. (2017). A Context-Aware, Capability-Based, Role-Centric Access Control Model for IoMT. In: Perego, P., Andreoni, G., Rizzo, G. (eds) Wireless Mobile Communication and Healthcare. MobiHealth 2016. Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering, vol 192. Springer, Cham. https://doi.org/10.1007/978-3-319-58877-3_16

Download citation

  • DOI: https://doi.org/10.1007/978-3-319-58877-3_16

  • Published:

  • Publisher Name: Springer, Cham

  • Print ISBN: 978-3-319-58876-6

  • Online ISBN: 978-3-319-58877-3

  • eBook Packages: Computer ScienceComputer Science (R0)

Publish with us

Policies and ethics