Enabling Integrity and Compliance Auditing in Blockchain-Based GDPR-Compliant Data Management

被引:2
|
作者
Wang, Lipeng [1 ,2 ]
Guan, Zhi [1 ]
Chen, Zhong [1 ]
Hu, Mingsheng [2 ]
机构
[1] Peking Univ, Sch Comp Sci, Beijing 100871, Peoples R China
[2] Zhengzhou Normal Univ, Sch Informat Sci & Technol, Zhengzhou 450044, Peoples R China
关键词
Blockchain; data compliance; data integrity; general data protection regulation (GDPR); provable data possession (PDP); DATA POSSESSION CHECKING; INTERNET; MODEL;
D O I
10.1109/JIOT.2023.3285211
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The general data protection regulation (GDPR) is a European Union (EU) data protection and privacy law. According to the GDPR, the data on a hosting platform must meet semantic consistency and data integrity requirements. Semantic consistency means that the data operation should comply with the GDPR, while data integrity is meant to ensure that the outsourcing data should be intact. The two terms are not interchangeable. For example, if a cloud service provider migrates data to foreign storage nodes without authorization of the data owner, the data integrity requirement of the GDPR is met but the semantic consistency requirement is not. How to ensure data integrity and compliance is the main challenge for a GDPR-compliant data supervision platform. To achieve this aim, we leverage a blockchain-based data management framework to check the data compliance, which can break the black box of the data hosting platform and demonstrate its logic to data owners, allowing for inspection. We propose a new provable data possession (PDP) scheme for the aforementioned framework that can check for semantic consistency and data integrity simultaneously. The verifier does not need to hold any audited data, which can reduce bandwidth usage. The verification result can be regarded as the proof for subsequent data recovery and accountability. Experimental results show higher efficiency of the PDP scheme.
引用
收藏
页码:20955 / 20968
页数:14
相关论文
共 50 条
  • [1] GDPR-Compliant Personal Data Management: A Blockchain-Based Solution
    Nguyen Binh Truong
    Sun, Kai
    Lee, Gyu Myoung
    Guo, Yike
    [J]. IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2020, 15 : 1746 - 1761
  • [2] Lightweight Blockchain-based Platform for GDPR-Compliant Personal Data Management
    Dauden-Esmel, Cristofol
    Castella-Roca, Jordi
    Viejo, Alexandre
    Domingo-Ferrer, Josep
    [J]. 2021 IEEE 5TH INTERNATIONAL CONFERENCE ON CRYPTOGRAPHY, SECURITY AND PRIVACY (ICCSP), 2021, : 68 - 73
  • [3] Blockchain-based access control system for efficient and GDPR-compliant personal data management
    Dauden-Esmel, Cristofol
    Castella-Roca, Jordi
    Viejo, Alexandre
    [J]. COMPUTER COMMUNICATIONS, 2024, 214 : 67 - 87
  • [4] Towards a GDPR-Compliant Blockchain-Based COVID Vaccination Passport
    Haque, A. K. M. Bahalul
    Naqvi, Bilal
    Islam, A. K. M. Najmul
    Hyrynsalmi, Sami
    [J]. APPLIED SCIENCES-BASEL, 2021, 11 (13):
  • [5] Implementing GDPR-Compliant Surveys Using Blockchain
    Goncalves, Ricardo Martins
    da Silva, Miguel Mira
    da Cunha, Paulo
    [J]. FUTURE INTERNET, 2023, 15 (04)
  • [6] A survey on blockchain-based integrity auditing for cloud data
    Haoxiang Han
    Shufan Fei
    Zheng Yan
    Xiaokang Zhou
    [J]. Digital Communications and Networks, 2022, 8 (05) : 591 - 603
  • [7] Blockchain-Based Shared Data Integrity Auditing and Deduplication
    Miao, Ying
    Gai, Keke
    Zhu, Liehuang
    Choo, Kim-Kwang Raymond
    Vaidya, Jaideep
    [J]. IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2024, 21 (04) : 3688 - 3703
  • [8] Blockchain-Based Distributed Data Integrity Auditing Scheme
    Han Baofu
    Li Hui
    Wei Chuansi
    [J]. 2021 IEEE 6TH INTERNATIONAL CONFERENCE ON BIG DATA ANALYTICS (ICBDA 2021), 2021, : 143 - 149
  • [9] A survey on blockchain-based integrity auditing for cloud data
    Han, Haoxiang
    Fei, Shufan
    Yan, Zheng
    Zhou, Xiaokang
    [J]. DIGITAL COMMUNICATIONS AND NETWORKS, 2022, 8 (05) : 591 - 603
  • [10] GDPR-Compliant Data Breach Detection: Leveraging Semantic Web and Blockchain
    Ansar, Kainat
    Ahmed, Mansoor
    Khalid, Muhammad Irfan
    Helfert, Markus
    [J]. GOOD PRACTICES AND NEW PERSPECTIVES IN INFORMATION SYSTEMS AND TECHNOLOGIES, VOL 6, WORLDCIST 2024, 2024, 990 : 3 - 11