首页> 外文期刊>Computers & Security >A blockchain based approach for the definition of auditable Access Control systems
【24h】

A blockchain based approach for the definition of auditable Access Control systems

机译:用于定义可审计访问控制系统的基于区块链的方法

获取原文
获取原文并翻译 | 示例

摘要

This work proposes to exploit blockchain technology to define Access Control systems that guarantee the auditability of access control policies evaluation. The key idea of our proposal is to codify attribute-based Access Control policies as smart contracts and deploy them on a blockchain, hence transforming the policy evaluation process into a completely distributed smart contract execution. Not only the policies, but also the attributes required for their evaluation are managed by smart contracts deployed on the blockchain. The auditability property derives from the immutability and transparency properties of blockchain technology. This paper not only presents the proposed Access Control system in general, but also its application to the innovative reference scenario where the resources to be protected are themselves smart contracts. To prove the feasibility of our approach, we present a reference implementation exploiting XACML policies and Solidity written smart contracts deployed on the Ethereum blockchain. Finally, we evaluate the system performances through a set of experimental results, and we discuss the advantages and drawbacks of our proposal. (C) 2019 Elsevier Ltd. All rights reserved.
机译:这项工作建议利用区块链技术来定义访问控制系统,以保证访问控制策略评估的可审计性。我们提案的关键思想是将基于属性的访问控制策略编纂为智能合约,并将其部署在区块链上,从而将策略评估过程转变为完全分布式的智能合约执行。不仅策略,而且评估所需的属性也都由部署在区块链上的智能合约进行管理。可审核性属性源自区块链技术的不变性和透明性。本文不仅介绍了拟议的访问控制系统,而且还介绍了其在创新参考方案中的应用,在这些参考方案中,要保护的资源本身就是智能合约。为了证明我们方法的可行性,我们提供了一个参考实施,该参考实施利用了XACML策略和部署在以太坊区块链上的Solidity书面智能合约。最后,我们通过一组实验结果评估系统性能,并讨论了该建议的优缺点。 (C)2019 Elsevier Ltd.保留所有权利。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号