Access control in building automation and control systems
dc.contributor | Aalto-yliopisto | fi |
dc.contributor | Aalto University | en |
dc.contributor.advisor | Kumar, Sandeep | |
dc.contributor.advisor | Morchon Garcia, Oscar | |
dc.contributor.advisor | Keoh, Sye Loong | |
dc.contributor.author | Soni, Amit | |
dc.contributor.department | Tietotekniikan laitos | fi |
dc.contributor.school | Perustieteiden korkeakoulu | fi |
dc.contributor.school | School of Science | en |
dc.contributor.supervisor | Aura, Tuomas | |
dc.date.accessioned | 2020-12-28T10:25:37Z | |
dc.date.available | 2020-12-28T10:25:37Z | |
dc.date.issued | 2012 | |
dc.description.abstract | Building Automation and Control Systems (BACS) are being deployed in commercial buildings to enable monitoring and control of the various intelligent systems like HVAC, safety, access and lighting systems. Lighting is an integral part of BACS, allowing for optimized lighting operation where Lighting devices interact with each other, with users, and with other third party systems such as energy management. A key need when interacting is the controlled and trustworthy access to services so that only authenticated and authorized entities can have access and control to the services provided by a device. However, secure authentication and authorization is not easy due to the large-scale nature of future BACS comprising many resource-constrained sensors and actuators distributed in the building. The thesis presents centralized and distributed access control architecture designs for BACS based on their requirements and constraints. We further present a hybrid version of an access control architecture which improves existing centralized or distributed access control methods. The hybrid version allows for the deployment of re-encoded access control policies to the accessed devices under request. Re-encoding serves the purpose of efficient storage and evaluation of the policies in the resource constrained devices. The proposed access control systems can be applied to generic BACS and run on top of communication protocols such as ZigBee or 6LoWPAN/CoAP. We have further implemented a prototype to prove the concept on actual field devices used by Philips Lighting. The operating system used by devices is Contiki-OS. The final system requires 10KBs of FLASH and allows caching of access control policies in the device. The access control system can be used in applications scenarios related to the Internet of Things. | en |
dc.format.extent | 74 | |
dc.identifier.uri | https://aaltodoc.aalto.fi/handle/123456789/100248 | |
dc.identifier.urn | URN:NBN:fi:aalto-2020122859079 | |
dc.language.iso | en | en |
dc.programme.major | Tietokoneverkot | fi |
dc.programme.mcode | T-110 | fi |
dc.rights.accesslevel | closedAccess | |
dc.subject.keyword | building automation | en |
dc.subject.keyword | security | en |
dc.subject.keyword | access control | en |
dc.subject.keyword | sensor networks | en |
dc.subject.keyword | constraint devices | en |
dc.title | Access control in building automation and control systems | en |
dc.type.okm | G2 Pro gradu, diplomityö | |
dc.type.ontasot | Master's thesis | en |
dc.type.ontasot | Pro gradu -tutkielma | fi |
dc.type.publication | masterThesis | |
local.aalto.digiauth | ask | |
local.aalto.digifolder | Aalto_00797 | |
local.aalto.idinssi | 45298 | |
local.aalto.openaccess | no |