Blockchain-based Verifiable Credential Sharing with Selective Disclosure

Blockchain-based Verifiable Credential Sharing with Selective Disclosure
复制标题

基于区块链的可验证凭证共享和选择性披露

DOI:
--
复制
发表时间:
2020
期刊:
International Conference on Trust, Security and Privacy in Computing and Communications
影响因子:
--
通讯作者:
S. Kanhere
S. Kanhere
中科院分区:
--
文献类型:
--
作者:
R. Mukta;James Martens;Hye;Q. Lu;S. Kanhere

文献摘要

被引文献

相似文献

共享凭证可能会引发隐私问题。为了使数字证书被广泛接受,需要一种端到端系统,其提供(i)参与者身份和证书的安全验证以增加信任,以及(ii)数据最小化机制以降低过度共享证书数据的风险。本文提出了CredChain,这是一种基于区块链的自我主权身份(SSI)平台架构,允许安全创建,共享和验证凭据。除了身份和凭证的验证之外,还提出了一种使用可编辑签名的灵活的选择性披露解决方案。凭证通过分散的应用程序/钱包进行管理,允许用户在完全控制下私下存储凭证数据,并在必要时重新使用。我们的评估结果表明,CredChain架构是可行的,安全的,并且表现出的性能水平在知名区块链平台Parity Ethereum的预期基准范围内。
Sharing credentials could raise privacy concerns. For digital credentials to be widely accepted, there is a need for an end-to-end system that provides (i) secure verification of the participant identities and credentials to increase trust, and (ii) a data minimisation mechanism to reduce the risk of oversharing the credential data. This paper proposes CredChain, a blockchain-based Self-Sovereign Identity (SSI) platform architecture that allows secure creation, sharing and verification of credentials. Beyond the verification of identities and credentials, a flexible selective disclosure solution is proposed using redactable signatures. The credentials are managed through a decentralised application/wallet which allows users to store their credential data privately under their full control and re-use as necessary. Our evaluation results show that CredChain architecture is feasible, secure and exhibits the level of performance that is within the expected benchmarks of the well-known blockchain platform, Parity Ethereum.