A new Model of Multi-Key Generation for RFID Access Control System

When studying traditional access control models, one could conclude that they have been proven inefficient in handling modern security threats, with access decisions influenced by several factors, including situational, environmental and risk factors. Accordingly, several studies have proposed risk-aware access control models to overcome the limitations of the traditional models. In this paper, the authors continue to improve on a previously proposed risk adaptive hybrid access control system, in which risk assessment is performed using a multilevel fuzzy inference system, by introducing an enhanced multi-key model for generating the symmetric encryption key dynamically for each user on demand. Consequently, the proposed model helps in solving the issue of having a single point of failure caused by employing a master encryption key, as in the previous models. The experimental results show that the proposed multi-key model does, indeed, improve the overall security of the system while preserving the previous model architecture and with negligible processing overhead.

[29] Yang L., Wu Q., Bai Y., Zheng H., and Lin S., An Improved Hash-Based RFID Two-Way Security Authentication Protocol And Application in Remote Education, Journal of Intelligent and Fuzzy Systems, vol. 31, no. 5, pp. 2713-2720, 2016. A new Model of Multi-Key Generation for RFID Access Control System 591 Mustafa Al-Fayoumi received a BSc degree in Computer Science from Yarmouk University, Irbid, Jordan, in 1988. He earned an MSc degree in Computer Science from the University of Jordan, Amman, Jordan, in 2003, and his PhD in Computer Science from the Faculty of Science and Technology at Anglia University, UK, in 2009. Currently, he is the Dean s Assistant for King Hussein School of computing sciences at Princess Sumaya University for Technology (PSUT), Jordan. His research interests include computer security, cryptography, identification and authentication, wireless and mobile networks security, e-application security, simulation and modelling, algorithm analyses and design, information retrieval, data mining and other related topics. Malek Al-Zewairi is an Information Security Researcher, Consultant, and Trainer. He has over six years of experience in the information security field and holds more than 16 Professional Security Certificates. He also sits on several International Security Boards and Committees. Malek is currently, a PhD candidate at Princess Sumaya University for Technology studying Computer Science with a focus on information security. His research interests lie primarily in the area of intelligence and security informatics, network security and RFID. Salam Hamdan is a PhD candidate in Computer Science at Princess Sumaya University for Technology. She received her bachelor s degree in Computer Engineering from Al- Balqa Applied University, 2012. She received her master s degree in Information System Security and Digital Criminology from Princess Sumaya University for Technology (PSUT), 2015. Her research interests include hardware security, network security and vehicular ad hoc networks.