Knowledge Agora



Similar Articles

Title A Delegated Authorization Solution for Smart-City Mobile Applications
ID_Doc 38465
Authors Sciarretta, G; Carbone, R; Ranise, S
Title A Delegated Authorization Solution for Smart-City Mobile Applications
Year 2016
Published
Abstract An increasingly popular scenario for Smart Cities is the one in which mobile apps attempt to access resources (e.g., open data about public transportation or e-government services) made available by city authorities through the use of Application Programming Interfaces (APIs). There is a growing awareness of the benefits of using APIs to foster civic engagement through a more efficient and personalized delivery of government services, and as an enabler of a new wave of innovation contributing to a more automated and sustainable city functioning. Despite these advantages, there are several factors hindering the exploitation of APIs. One of the most important technical barriers to the creation of mobile apps following the recurrent pattern of consuming data (e.g., selected parts of open data or user profiles) stored by other applications or services is the lack of a secure delegation mechanism. In this paper, we discuss the main security issues underlying the design of such a delegation mechanism for Smart City mobile apps and present a solution-based on OAuth 2.0-overcoming the security problems. An implementation of the solution has been integrated in the Smart Community Platform for developing open services in the Trentino region and is being used daily by up to 13,000 users. To date, no security issue has been reported.
PDF

Similar Articles

ID Score Article
35962 Sucasas, V; Mantas, G; Althunibat, S; Oliveira, L; Antonopoulos, A; Otung, I; Rodriguez, J A privacy-enhanced OAuth 2.0 based protocol for Smart City mobile applications(2018)
45567 Papaioannou, M; Ribeiro, JC; Monteiro, V; Sucasas, V; Mantas, G; Rodriguez, J A Privacy-Preserving User Authentication Mechanism for Smart City Mobile Apps(2021)
37998 Khan, Z; Pervez, Z; Abbasi, AG Towards a secure service provisioning framework in a Smart city environment(2017)
43014 Lämmel, P; Tcholtchev, N; Schieferdecker, I Enhancing Cloud based Data Platforms for Smart Cities with Authentication and Authorization Features(2017)
40034 Elahi, H; Wang, GJ; Peng, T; Chen, J On Transparency and Accountability of Smart Assistants in Smart Cities(2019)Applied Sciences-Basel, 9, 24
Scroll