Trustworthy privacy policy translation in untrusted IoT environments

Mamadou H. Diallo, Nisha Panwar, Roberto Yus, Sharad Mehrotra

Research output: Chapter in Book/Report/Conference proceedingConference contribution

Abstract

Internet of Thing (IoT) systems, such as smart buildings and smart cities, provide services to users (individuals and organizations) in various aspect of our lives. To provide such services, IoT systems need to handle data captured from multiple devices/sensors, and translation of data processing policies agreed by users (high-level) into commands for devices (device-level). The underlying assumption is that users trust IoT systems in honoring their policies. However, this trust assumption is incorrectly positioned since IoT systems may not be honest or may fall victim to cyberattacks. We address such concerns by providing mechanisms to help in ensuring trust and accountability at the time of translating a contract (agreed and signed policies). The objective of the proposed scheme is two fold, (1) translation of contracts from a high-level to device-level, (2) attestation of the translation. We have implemented the proposed scheme for contract translation and attestation of translation as a module and integrated it with the TIPPERS system (our IoT testbed under development). The results of our experiments highlight the feasibility of our proposed schemes.

Original languageEnglish (US)
Title of host publicationIoTBDS 2018 - Proceedings of the 3rd International Conference on Internet of Things, Big Data and Security
EditorsVictor Mendez Munoz, Gary Wills, Robert Walters, Farshad Firouzi, Victor Chang
PublisherSciTePress
Pages132-143
Number of pages12
ISBN (Electronic)9789897582967
DOIs
StatePublished - 2018
Externally publishedYes
Event3rd International Conference on Internet of Things, Big Data and Security, IoTBDS 2018 - Funchal, Madeira, Portugal
Duration: Mar 19 2018Mar 21 2018

Publication series

NameIoTBDS 2018 - Proceedings of the 3rd International Conference on Internet of Things, Big Data and Security
Volume2018-March

Conference

Conference3rd International Conference on Internet of Things, Big Data and Security, IoTBDS 2018
Country/TerritoryPortugal
CityFunchal, Madeira
Period3/19/183/21/18

Keywords

  • Contracts
  • Encryption
  • IoT Trust
  • Privacy Policies
  • Remote Attestation
  • Security and Privacy
  • Trusted Computing

ASJC Scopus subject areas

  • Software
  • Computer Networks and Communications

Fingerprint

Dive into the research topics of 'Trustworthy privacy policy translation in untrusted IoT environments'. Together they form a unique fingerprint.

Cite this