DocumentCode :
651581
Title :
Data-Centric Access Control with Confidentiality for Collaborating Smart Grid Services Based on Publish/Subscribe Paradigm
Author :
Yang Zhang ; Jun-Liang Chen
Author_Institution :
State Key Lab. of Networking & Switching Technol., Beijing Univ. of Posts & Telecommun., Beijing, China
fYear :
2013
fDate :
8-11 July 2013
Firstpage :
45
Lastpage :
50
Abstract :
With the smart grid coming near, its information systems become more and more open with services as building blocks. Different smart grid services in different control centers collaborate to realize the real-time control and protection of power systems. The publish/subscribe paradigm makes smart grid service collaborations more real-time and flexible because of the space, time and control decoupling of event producer and consumer, which can be used to establish an appropriate communication infrastructure. Unfortunately, a publish/ subscribe-based smart grid service does not know who consumes its events, and consumers do not know who produces the events either. In this environment, the smart grid service cannot directly control access because of anonymous and indirect service interactions. To address the above issues, this paper at first describes the service communication foundation for smart grid services, and then defines their security model supporting data-centric methodology. Based on such model, underpinning network capabilities can be integrated to help smart grid services control access. The key point in our access control solution is to preserve the service interaction characteristics of the publish/subscribe-based smart grid services: anonymous, multicast and session-control. So two special kinds of event types are used to accomplish authorization request and granting with being consistent with the publish/subscribe paradigm. Attaching policy method is adopted to preserve the anonymity feature for collaborating smart grid services. A delegation scheme for brokers to enforce policies is finally constructed based on attribute-based encryption, which also brings confidentiality for smart grid services.
Keywords :
authorisation; cryptography; grid computing; anonymity feature; attribute based encryption; authorization request; confidentiality; consumer; control decoupling; data centric access control; data centric methodology; delegation scheme; event producer; indirect service interactions; information systems; policy method; power systems; publish/subscribe based smart grid services; publish/subscribe paradigm; real time control; security model; service communication foundation; service interaction characteristics; session control; smart grid service collaborations; smart grid services control access; underpinning network; Conferences; Distributed computing; Access Control; Publish/Subscribe; SOA; Smart Grid;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Distributed Computing Systems Workshops (ICDCSW), 2013 IEEE 33rd International Conference on
Conference_Location :
Philadelphia, PA
Print_ISBN :
978-1-4799-3247-4
Type :
conf
DOI :
10.1109/ICDCSW.2013.36
Filename :
6679861
Link To Document :
بازگشت