A Blockchain-Based Access Control Scheme for Zero Trust Cross-Organizational Data Sharing

被引:13
|
作者
Gai, Keke [1 ,2 ]
She, Yufeng [3 ]
Zhu, Liehuang [4 ]
Choo, Kim-Kwang Raymond [5 ]
Wan, Zhiguo [6 ]
机构
[1] Beijing Inst Technol, Sch Cyberspace Sci & Technol, Beijing, Peoples R China
[2] Beijing Inst Technol, Yangtze Delta Reg Acad, Jiaxing, Zhejiang, Peoples R China
[3] Beijing Inst Technol, Sch Comp Sci & Technol, Beijing, Peoples R China
[4] Beijing Inst Technol, Sch Cyberspace Sci & Technol, Beijing, Peoples R China
[5] Univ Texas San Antonio, Dept Informat Syst & Cyber Secur, San Antonio, TX USA
[6] Zhejiang Lab, Hangzhou Shi, Peoples R China
基金
中国国家自然科学基金;
关键词
Consortium blockchain; zero trust; multi-signature; access control; multi-organizational data sharing; SIGNATURES; RBAC; IOT;
D O I
10.1145/3511899
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Multi-organization data sharing is becoming increasingly prevalent due to the interconnectivity of systems and the need for collaboration across organizations (e.g., exchange of data in a supply chain involving multiple upstream and downstream vendors). There are, however, data security concerns due to lack of trust between organizations that may be located in jurisdictions with varying security and privacy legislation and culture (also referred to as a zero trust environment). Hence, in such a zero trust setting, one should introduce strengthened, yet efficient, access control mechanisms to facilitate cross-organizational data access and exchange requests. Contemporary access control schemes generally focus on protecting a single objective rather than multiple parties, due to higher security costs. In this article, we propose a blockchain-based access control scheme, designed to facilitate lightweight data sharing among different organizations. Specifically, our approach utilizes the consortium blockchain to establish a trustworthy environment, in which a Role-Based Access Control (RBAC) model is then deployed using our proposed multi-signature protocol and smart contract methods. Evaluation of our proposed approach is performed on the HyperLedger Fabric consortium blockchain platform using both Caliper and BFT-SMaRT benchmarks, and the findings demonstrate the utility of our approach.
引用
收藏
页数:25
相关论文
共 50 条
  • [1] A Blockchain-Based Trustworthy Access Control Scheme for Medical Data Sharing
    Wang, Canling
    Wu, Wei
    Chen, Fulong
    Shu, Hong
    Zhang, Ji
    Zhang, Yuxuan
    Wang, Taochun
    Xie, Dong
    Zhao, Chuanxin
    [J]. IET INFORMATION SECURITY, 2024, 2024
  • [2] Blockchain-based Cross-organizational Workflow Platform
    Geng, Jiahui
    Rehman, Ali Akbar
    Mou, Yongli
    Decker, Stefan
    Rong, Chunming
    [J]. 2022 IEEE INTERNATIONAL CONFERENCE ON CLOUD COMPUTING TECHNOLOGY AND SCIENCE (CLOUDCOM 2022), 2022, : 53 - 59
  • [3] Blockchain-based and multi-authority hierarchical access control data sharing scheme
    Du, Jianming
    Dong, Guofang
    Ning, Juangui
    Xu, Zhengnan
    Yang, Ruicheng
    [J]. COMPUTERS & ELECTRICAL ENGINEERING, 2024, 119
  • [4] A Blockchain-based access control scheme with multiple attribute authorities for secure cloud data sharing
    Qin, Xuanmei
    Huang, Yongfeng
    Yang, Zhen
    Li, Xing
    [J]. JOURNAL OF SYSTEMS ARCHITECTURE, 2021, 112
  • [5] Blockchain-based Access Control Mechanism of Federated Data Sharing System
    Ding, Yan
    Feng, Liaoliao
    Qin, Ying
    Dong, Pan
    Huang, Chenlin
    Gao, Long
    Tan, Yusong
    [J]. 2020 IEEE INTL SYMP ON PARALLEL & DISTRIBUTED PROCESSING WITH APPLICATIONS, INTL CONF ON BIG DATA & CLOUD COMPUTING, INTL SYMP SOCIAL COMPUTING & NETWORKING, INTL CONF ON SUSTAINABLE COMPUTING & COMMUNICATIONS (ISPA/BDCLOUD/SOCIALCOM/SUSTAINCOM 2020), 2020, : 277 - 284
  • [6] Blockchain-based collaborative business process data sharing and access control
    Sun X.
    Wei Y.
    Shen H.
    [J]. Journal of Reliable Intelligent Environments, 2024, 10 (01) : 3 - 17
  • [7] Blockchain-based Bidirectional Transformations for Access Control and Data Sharing in EMRs
    Zan, Tao
    Hu, Zhenjiang
    [J]. THE 12TH ASIA-PACIFIC SYMPOSIUM ON INTERNETWARE, INTERNETWARE 2020, 2021, : 71 - 80
  • [8] BSSPD: A Blockchain-Based Security Sharing Scheme for Personal Data with Fine-Grained Access Control
    Gao, Hongmin
    Ma, Zhaofeng
    Luo, Shoushan
    Xu, Yanping
    Wu, Zheng
    [J]. WIRELESS COMMUNICATIONS & MOBILE COMPUTING, 2021, 2021
  • [9] B-FLACS: blockchain-based flexible lightweight access control scheme for data sharing in cloud
    Tao, Qi
    Cui, Xiaohui
    [J]. CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS, 2023, 26 (06): : 3931 - 3941
  • [10] BACTDS: Blockchain-Based Fined-Grained Access Control Scheme with Traceablity for IoT Data Sharing
    Lu, Wei
    Yu, Jiguo
    Yan, Biwei
    Liu, Suhui
    Chai, Baobao
    [J]. ALGORITHMS AND ARCHITECTURES FOR PARALLEL PROCESSING, ICA3PP 2023, PT I, 2024, 14487 : 97 - 108