User-empowered secure privacy-preserving authentication scheme for Digital Twin

User-empowered secure privacy-preserving authentication scheme for Digital Twin
复制标题

用户授权的数字孪生安全隐私保护认证方案

DOI:
10.1016/j.cose.2024.103793
复制
发表时间:
2024
影响因子:
5.6
通讯作者:
Patel C
Patel C
中科院分区:
计算机科学3区
文献类型:
--
作者:
Patel C

文献摘要

相似文献

数字孪生(DT)是一项革命性的技术,改变了智能制造行业开展日常活动的方式。DT可以提供许多优势,例如实时同步功能,监控和数据分析。然而,DT中的安全和隐私问题还没有得到彻底的研究。本文提出了一种基于用户授权的隐私保护认证协议,该协议使用分散式标识符(decentralized Identifier, DID)和可验证凭证(Verifiable Credential, VC)用于基于云的数字孪生。在这里,用户授权为用户提供了对自己身份的完全控制,在VC的帮助下,用户可以证明自己的真实性并保护自己的隐私。尽管DID已经成为一种很有前途的引入用户授权的技术,但它存在一些基本问题,如可用性和可审计性。在这里,我们解决了所有这些问题,并为DT提出了一个支持用户撤销的安全解决方案。对该方案的安全性分析表明,该方案能够抵御重大的安全威胁。通过性能分析,我们证明了所提出的工作有效地保证了DT中的安全性和隐私性。
Digital Twin (DT) is a revolutionary technology changing how a smart manufacturing industry carries out its day-to-day activities. DT can provide numerous advantages such as real-time synchronised functioning, monitoring and data analysis. However, security and privacy issues in DT have not been thoroughly investigated. This article proposes a user-empowerment-based privacy-preserving authentication protocol for a cloud-based Digital Twin using a Decentralised Identifier (DID) and Verifiable Credential (VC). Here, user empowerment provides full control to users over their identities, and with the help of VC, users can prove their authenticity and preserve their privacy. Although DID has emerged as a promising technology for introducing user empowerment, it suffers from some fundamental problems such asusabilityandauditability. Here we address all these issues and propose a user-revocation-enabled security solution for the DT. A security analysis of the proposed scheme shows that it is secured against significant security threats. With the help of performance analysis, we prove that the proposed work effectively ensures security and privacy in DT.