Saxena, Neetesh ORCID: https://orcid.org/0000-0002-6437-0807, Choi, Bong Jun and Lu, Rongxing 2016. Authentication and authorization scheme for various user roles and devices in smart grid. IEEE Transactions on Information Forensics and Security 11 (5) , pp. 907-921. 10.1109/TIFS.2015.2512525 |
Abstract
The smart grid, as the next generation of the power grid, is characterized by employing many different types of intelligent devices, such as intelligent electronic devices located at substations, smart meters positioned in the home area network, and outdoor field equipment deployed in the fields. In addition, there are various users in the smart grid network, including customers, operators, maintenance personnel, and so on, who use these devices for various purposes. Therefore, a secure and efficient mutual authentication and authorization scheme is needed in the smart grid to prevent various insider and outsider attacks on many different devices. In this paper, we propose an authentication and authorization scheme for mitigating outsider and insider threats in the smart grid by verifying the user authorization and performing the user authentication together whenever a user accesses the devices. The proposed scheme computes each user role dynamically using an attribute-based access control and verifies the identity of the user together with the device. Security and performance analysis show that the proposed scheme resists various insider as well as outsider attacks, and is more efficient in terms of communication and computation costs in comparison with the existing schemes. The correctness of the proposed scheme is also proved using BAN-Logic and Proverif.
Item Type: | Article |
---|---|
Date Type: | Publication |
Status: | Published |
Schools: | Computer Science & Informatics |
Publisher: | IEEE |
ISSN: | 1556-6013 |
Date of Acceptance: | 19 December 2015 |
Last Modified: | 26 Oct 2022 08:13 |
URI: | https://orca.cardiff.ac.uk/id/eprint/126909 |
Citation Data
Cited 117 times in Scopus. View in Scopus. Powered By Scopus® Data
Actions (repository staff only)
Edit Item |