A Trusted Approach for Decentralised and Privacy-Preserving Identity Management

被引:11
|
作者
Torres Moreno, Rafael [1 ]
Garcia-Rodriguez, Jesus [1 ]
Bernal Bernabe, Jorge [1 ]
Skarmeta, Antonio [1 ]
机构
[1] Univ Murcia, Dept Informat & Commun Engn, Murcia 30100, Spain
基金
欧盟地平线“2020”;
关键词
Privacy; Security; Data privacy; Blockchains; Password; Europe; Distributed ledger; Blockchain; digital identities; DLT; identity management; privacy; privacy enhancing technologies; privacy-preserving; security;
D O I
10.1109/ACCESS.2021.3099837
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Identity Management (IdM) systems have traditionally relied on a centralized model prone to privacy, trust, and security problems, like potential massive data breaches or identity spoofing. Identity providers accumulate excessive power that might allow them to become a big brother, analyzing and storing as much data as possible. Users should be able to trust identity providers and manage their personal information straightforwardly without compromising their privacy. The European OLYMPUS project introduces a distributed approach for IdM based on enhanced Attribute-Based Credentials (ABC) that splits the role of Identity Provider to limit their influence and chances to become a unique point of failure. However, the trust relationship between service providers, users, and identity providers is still a gap in those kinds of privacy-preserving ABC systems. Decentralized technologies are an opportunity to break away from the centralized model and propose systems that respect privacy while increasing users' trust. This paper presents an evolution of the OLYMPUS architecture, maintaining all the privacy features and incorporating distributed ledger technologies to enhance trust and security in online transactions and IdM systems. The proposed system has been implemented, tested, and validated, showing its performance and feasibility to manage user's identity in a fully privacy-preserving, distributed and reliable way.
引用
收藏
页码:105788 / 105804
页数:17
相关论文
共 50 条
  • [1] BlindIdM: A privacy-preserving approach for identity management as a service
    Nunez, David
    Agudo, Isaac
    [J]. INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2014, 13 (02) : 199 - 215
  • [2] BlindIdM: A privacy-preserving approach for identity management as a service
    David Nuñez
    Isaac Agudo
    [J]. International Journal of Information Security, 2014, 13 : 199 - 215
  • [3] PRIDE: A Privacy-Preserving Decentralised Key Management System
    Kester, David
    Li, Tianyu
    Erkin, Zekeriya
    [J]. 2022 IEEE INTERNATIONAL WORKSHOP ON INFORMATION FORENSICS AND SECURITY (WIFS), 2022,
  • [4] Nonlinear Model Combination Approach to Decentralised and Privacy-Preserving Classification
    Alkhozae, Mona
    Zeng, Xiao-Jun
    [J]. ADVANCES IN COMPUTATIONAL INTELLIGENCE SYSTEMS, UKCI 2022, 2024, 1454 : 142 - 157
  • [5] Secure and Privacy-Preserving Identity Management in the Cloud
    Zwattendorfer, Bernd
    Krenn, Stephan
    Loruenser, Thomas
    [J]. ERCIM NEWS, 2016, (104): : 44 - +
  • [6] Privacy-Preserving Decentralised Singular Value Decomposition
    Liu, Bowen
    Tang, Qiang
    [J]. INFORMATION AND COMMUNICATIONS SECURITY (ICICS 2019), 2020, 11999 : 703 - 721
  • [7] OLYMPUS: A distributed privacy-preserving identity management system
    Torres Moreno, Rafael
    Garcia Rodriguez, Jesus
    Timon Lopez, Cristina
    Bernal Bernabe, Jorge
    Skarmeta, Antonio
    [J]. 2020 GLOBAL INTERNET OF THINGS SUMMIT (GIOTS), 2020,
  • [8] Privacy-Preserving Data Deduplication on Trusted Processors
    Dang, Hung
    Chang, Ee-Chien
    [J]. 2017 IEEE 10TH INTERNATIONAL CONFERENCE ON CLOUD COMPUTING (CLOUD), 2017, : 66 - 73
  • [9] A Trusted and Privacy-Preserving Internet of Mobile Energy
    Jurdak, Raja
    Dorri, Ali
    Vilathgamuwa, Mahinda
    [J]. IEEE COMMUNICATIONS MAGAZINE, 2021, 59 (06) : 89 - 95
  • [10] Trusted and privacy-preserving sensor data onloading
    Liu, Yin
    Cruz, Breno Dantas
    Tilevich, Eli
    [J]. COMPUTER COMMUNICATIONS, 2023, 206 : 133 - 151