College of Computer Science and Technology, Nanjing University of Aeronautics & Astronautics, Nanjing 211106, China
Clc Number:
TP309.2
Fund Project:
Article
|
Figures
|
Metrics
|
Reference
|
Related
|
Cited by
|
Materials
|
Comments
Abstract:
Data distribution service(DDS) is a reliable real-time data communication middleware standard. It is oriented to a distributed environment based on the publish/subscribe model. It has been widely used in various fields. However, there are few achievements in existing research involving DDS security technology. There are many security threats to the publishing and subscribing system in practice. In order to establish a flexible and reliable security mechanism to ensure the security of publishing and subscribing information, a data-centric access control scheme is proposed. On the basis of attribute encryption, the access tree structure is optimized, and the attribute trust mechanism is added in combination with the publishing and subscribing environment. Afterwards, the publicating and subscripting information is encrypted and matched by formulating attribute connection and authorization strategies, and a DDS access control model is established to control the interaction of information in the publicating and subscripting system and realize the safe distribution of data. The experimental verification shows the solution can deal with several security threats in DDS, guarantee the confidentiality of publishing and subscribing information, as well as realize the system’s access control to specific information, and publishers and subscribers do not need to share keys, reducing the overhead of key management.
Reference
Related
Cited by
Get Citation
Ren Yingchao, Yan Xuefeng. DDS Access Control Scheme Based on Attribute Encryption[J].,2023,38(2):314-323.