Enabling Integrity and Compliance Auditing in Blockchain-Based GDPR-Compliant Data Management

被引:2
|
作者
Wang, Lipeng [1 ,2 ]
Guan, Zhi [1 ]
Chen, Zhong [1 ]
Hu, Mingsheng [2 ]
机构
[1] Peking Univ, Sch Comp Sci, Beijing 100871, Peoples R China
[2] Zhengzhou Normal Univ, Sch Informat Sci & Technol, Zhengzhou 450044, Peoples R China
关键词
Blockchain; data compliance; data integrity; general data protection regulation (GDPR); provable data possession (PDP); DATA POSSESSION CHECKING; INTERNET; MODEL;
D O I
10.1109/JIOT.2023.3285211
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The general data protection regulation (GDPR) is a European Union (EU) data protection and privacy law. According to the GDPR, the data on a hosting platform must meet semantic consistency and data integrity requirements. Semantic consistency means that the data operation should comply with the GDPR, while data integrity is meant to ensure that the outsourcing data should be intact. The two terms are not interchangeable. For example, if a cloud service provider migrates data to foreign storage nodes without authorization of the data owner, the data integrity requirement of the GDPR is met but the semantic consistency requirement is not. How to ensure data integrity and compliance is the main challenge for a GDPR-compliant data supervision platform. To achieve this aim, we leverage a blockchain-based data management framework to check the data compliance, which can break the black box of the data hosting platform and demonstrate its logic to data owners, allowing for inspection. We propose a new provable data possession (PDP) scheme for the aforementioned framework that can check for semantic consistency and data integrity simultaneously. The verifier does not need to hold any audited data, which can reduce bandwidth usage. The verification result can be regarded as the proof for subsequent data recovery and accountability. Experimental results show higher efficiency of the PDP scheme.
引用
下载
收藏
页码:20955 / 20968
页数:14
相关论文
共 50 条
  • [31] Sec-Auditor: A Blockchain-Based Data Auditing Solution for Ensuring Integrity and Semantic Correctness
    Han, Guodong
    Li, Hecheng
    CMC-COMPUTERS MATERIALS & CONTINUA, 2024, 80 (02): : 2121 - 2137
  • [32] Data cart - designing a tool for the GDPR-compliant handling of personal data by employees
    Tolsdorf, Jan
    Dehling, Florian
    Iacono, Luigi Lo
    BEHAVIOUR & INFORMATION TECHNOLOGY, 2022, 41 (10) : 2070 - 2105
  • [33] Blockchain-Based Incentive and Arbitrable Data Auditing Scheme
    Tian, Junfeng
    Song, Qianqian
    Wang, Haoning
    52ND ANNUAL IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS WORKSHOP VOLUME (DSN-W 2022), 2022, : 170 - 177
  • [34] Merkle Tree and Blockchain-Based Cloud Data Auditing
    Mohan, Arun Prasad
    Asfak, Mohamed R.
    Gladston, Angelin
    INTERNATIONAL JOURNAL OF CLOUD APPLICATIONS AND COMPUTING, 2020, 10 (03) : 54 - 66
  • [35] Blockchain-Based Transparent Integrity Auditing and Encrypted Deduplication for Cloud Storage
    Li, Shanshan
    Xu, Chunxiang
    Zhang, Yuan
    Du, Yicong
    Chen, Kefei
    IEEE TRANSACTIONS ON SERVICES COMPUTING, 2023, 16 (01) : 134 - 146
  • [36] Blockchain-Based Deduplication and Integrity Auditing Over Encrypted Cloud Storage
    Song, Mingyang
    Hua, Zhongyun
    Zheng, Yifeng
    Huang, Hejiao
    Jia, Xiaohua
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2023, 20 (06) : 4928 - 4945
  • [37] SPChain: A Smart and Private Blockchain-Enabled Framework for Combining GDPR-Compliant Digital Assets Management With AI Models
    Lee, Wei-Shan
    John, A.
    Hsu, Hsiu-Chun
    Hsiung, Pao-Ann
    IEEE ACCESS, 2022, 10 : 130424 - 130443
  • [38] EDCOMA: Enabling Efficient Double Compressed Auditing for Blockchain-Based Decentralized Storage
    Yu H.
    Chen Y.
    Yang Z.
    Chen Y.
    Yu S.
    IEEE Transactions on Services Computing, 2024, 17 (05): : 1 - 14
  • [39] Blockchain-based Secure Outsourcing Data Integrity Auditing for Internet of Things in Cloud-edge Environment
    Lin, Yangfei
    Wu, Celimuge
    Ji, Yusheng
    Li, Jie
    Liu, Zhi
    2022 18TH INTERNATIONAL CONFERENCE ON MOBILITY, SENSING AND NETWORKING, MSN, 2022, : 355 - 362
  • [40] GDPR Compliant Audit Log Management System with Blockchain
    Aslan, Ulas
    Sen, Baha
    2021 15TH TURKISH NATIONAL SOFTWARE ENGINEERING SYMPOSIUM (UYMS), 2021, : 82 - 84