44
0

Capability-Based Multi-Tenant Access Management in Crowdsourced Drone Services

Main:5 Pages
3 Figures
Bibliography:1 Pages
Abstract

We propose a capability-based access control method that leverages OAuth 2.0 and Verifiable Credentials (VCs) to share resources in crowdsourced drone services. VCs securely encode claims about entities, offering flexibility. However, standardized protocols for VCs are lacking, limiting their adoption. To address this, we integrate VCs into OAuth 2.0, creating a novel access token. This token encapsulates VCs using JSON Web Tokens (JWT) and employs JWT-based methods for proof of possession. Our method streamlines VC verification with JSON Web Signatures (JWS) requires only minor adjustments to current OAuth 2.0 systems. Furthermore, in order to increase security and efficiency in multi-tenant environments, we provide a novel protocol for VC creation that makes use of the OAuth 2.0 client credentials grant. Using VCs as access tokens enhances OAuth 2.0, supporting long-term use and efficient data management. This system aids bushfire management authorities by ensuring high availability, enhanced privacy, and improved data portability. It supports multi-tenancy, allowing drone operators to control data access policies in a decentralized environment.

View on arXiv
@article{akram2025_2505.01048,
  title={ Capability-Based Multi-Tenant Access Management in Crowdsourced Drone Services },
  author={ Junaid Akram and Ali Anaissi and Awais Akram and Youcef Djenouri and Palash Ingle and Rutvij H. Jhaveri },
  journal={arXiv preprint arXiv:2505.01048},
  year={ 2025 }
}
Comments on this paper