%0 Conference Proceedings %T CapBAC in Hyperledger Sawtooth %+ Dipartimento di Matematica e Informatica [Perugia] (DMI) %+ Linnaeus University %A Bistarelli, Stefano %A Pannacci, Claudio %A Santini, Francesco %< avec comité de lecture %( Lecture Notes in Computer Science %B 19th IFIP International Conference on Distributed Applications and Interoperable Systems (DAIS) %C Kongens Lyngby, Denmark %Y José Pereira %Y Laura Ricci %I Springer International Publishing %3 Distributed Applications and Interoperable Systems %V LNCS-11534 %P 152-169 %8 2019-06-17 %D 2019 %R 10.1007/978-3-030-22496-7_10 %Z Computer Science [cs] %Z Computer Science [cs]/Networking and Internet Architecture [cs.NI]Conference papers %X In the Internet of Things (IoT) context, the number of connected devices can be too large for a centralised server. This paper focuses on how to enforce authorisation in such a distributed and dynamic environment. The key idea is to use a blockchain-based technology both as a way to maintain a common distributed ledger to store and use access control information, and as a way to enforce Access Control policies in the form of smart contracts. An implementation of an access-control system is presented as a proof of concept: it corresponds to an adaptation of the Capability-based Access Control Model (CapBAC) in the form of a transaction family in Hyperledger Sawtooth. The main claim is that the features and simplicity of CapBAC magnify the usefulness of a blockchain to control the access in the IoT. %G English %Z TC 6 %Z WG 6.1 %2 https://inria.hal.science/hal-02319579/document %2 https://inria.hal.science/hal-02319579/file/485766_1_En_10_Chapter.pdf %L hal-02319579 %U https://inria.hal.science/hal-02319579 %~ IFIP-LNCS %~ IFIP %~ IFIP-TC %~ IFIP-WG %~ IFIP-TC6 %~ IFIP-WG6-1 %~ IFIP-DAIS %~ IFIP-DISCOTEC %~ IFIP-LNCS-11534