Scalable Key Management for Elastic Security Domains in Fog Networks
Yacine Challal, Fatima Zohra Benhamida, Omar Nouali · 2018
Fog computing is a promising technology that ensures sharing resources and services in the neighborhood of a network while enhancing their secrecy and availability. Indeed, sharing through the cloud raises fears when it comes to share sensitive and private data. Many studies show that users, enterprises and stakeholders are more keen to share and collaborate if that sensitive data were managed locally at the edge of the network. Therefore, Fog computing comes to alleviate those fears and allow users to manage sensitive services at the edge of the network. However, since the fog is an extension of the cloud to the edge of the networks, it brings new challenges with respect to implementing security policies relating to shared data and services among multiple consumers, especially when those consumers are dynamic. In this paper, we propose a group key management scheme that allows to manage elastic security domains where dynamic consumers share sensitive services. The elasticity of the scheme supports dynamic adaptation of security domains' size through activating or deactivating proxy services at the fog gateways in order to minimize group key management overheads (1-affects-n and encryption key translation).