首页> 外文会议>IEEE International Conference on Blockchain and Cryptocurrency >Decentralized Cross-Network Identity Management for Blockchain Interoperation
【24h】

Decentralized Cross-Network Identity Management for Blockchain Interoperation

机译:区块链互操作的分散式跨网络标识管理

获取原文

摘要

Interoperation for data sharing between permissioned blockchain networks relies on networks’ abilities to independently authenticate requests and validate proofs accompanying the data; these typically contain digital signatures. This requires counterparty networks to know the identities and certification chains of each other’s members, establishing a common trust basis rooted in identity. But permissioned networks are ad hoc consortia of existing organizations, whose network affiliations may not be well-known or well-established even though their individual identities are. In this paper, we describe an architecture and set of protocols for distributed identity management across permissioned blockchain networks to establish a trust basis for data sharing. Networks wishing to interoperate can associate with one or more distributed identity registries that maintain credentials on shared ledgers managed by groups of reputed identity providers. A network’s participants possess self-sovereign decentralized identities (DIDs) on these registries and can obtain privacy-preserving verifiable membership credentials. During interoperation, networks can securely and dynamically discover each others’ latest membership lists and members’ credentials. We implement a solution based on Hyperledger Indy and Aries, and demonstrate its viability and usefulness by linking a trade finance network with a trade logistics network, both built on Hyperledger Fabric. We also analyze the extensibility, security, and trustworthiness of our system.
机译:互操作于网络间区块链之间的数据共享依赖于网络的能力来独立地认证请求并验证伴随数据的证明;这些通常包含数字签名。这需要对手网络来了解彼此成员的身份和认证链,建立植根于身份的共同信任基础。但许可的网络是现有组织的临时联盟,即使他们的个人身份也是如此。在本文中,我们描述了跨公共区块网络的分布式标识管理的架构和一组协议,以建立数据共享的信任基础。希望互操作的网络可以与一个或多个分布式身份注册表相关联,这些注册表维护由一组被信誉识别提供商组管理的共享LEDGERS上的凭据。网络的参与者拥有这些注册管理机构的自主权分散的身份(DID),并可以获得隐私保留可验证的会员资格证书。在互操作期间,网络可以安全地和动态地发现其他人的最新会员列表和成员的凭据。我们通过将贸易金融网络与贸易物流网络联系起来,展示其基于超载杂志Indy和白羊座的解决方案,并通过基于超载手面料。我们还分析了我们系统的可扩展性,安全性和可信度。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号