Distributed attribute-based access control system using permissioned blockchain

被引:31
|
作者
Rouhani, Sara [1 ]
Belchior, Rafael [2 ]
Cruz, Rui S. [2 ]
Deters, Ralph [1 ]
机构
[1] Univ Saskatchewan, Dept Comp Sci, Saskatoon, SK S7N 5C9, Canada
[2] Univ Lisbon, Inst Super Tecn, Dept Comp Sci & Engn, Lisbon, Portugal
关键词
Distributed access control; Attribute-based access control; Blockchain; Hyperledger fabric; Performance; MANAGEMENT; FRAMEWORK; SECURITY; INTERNET; IOT;
D O I
10.1007/s11280-021-00874-7
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Auditing provides essential security control in computer systems by keeping track of all access attempts, including both legitimate and illegal access attempts. This phase can be useful in the context of audits, where eventual misbehaving parties can be held accountable. Blockchain technology can provide the trusted auditability required for access control systems. In this paper, we propose a distributed Attribute-Based Access Control (ABAC) system based on blockchain to provide trusted auditing of access attempts. Besides auditability, our system presents a level of transparency that both access requesters and resource owners can benefit from it. We present a system architecture with an implementation based on Hyperledger Fabric, achieving high efficiency and low computational overhead. The proposed solution is validated through a use case of independent digital libraries. Detailed performance analysis of our implementation is presented, taking into account different consensus mechanisms and databases. The experimental evaluation shows that our presented system can effectively handle a transaction throughput of 270 transactions per second, with an average latency of 0.54 seconds per transaction.
引用
收藏
页码:1617 / 1644
页数:28
相关论文
共 50 条
  • [31] Accountable privacy preserving attribute-based access control for cloud services enforced using blockchain
    Amal Ghorbel
    Mahmoud Ghorbel
    Mohamed Jmaiel
    International Journal of Information Security, 2022, 21 : 489 - 508
  • [32] Accountable privacy preserving attribute-based access control for cloud services enforced using blockchain
    Ghorbel, Amal
    Ghorbel, Mahmoud
    Jmaiel, Mohamed
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2022, 21 (03) : 489 - 508
  • [33] Attribute-based access control scheme for secure storage and sharing of EHRs using blockchain and IPFS
    Kaur, Jasleen
    Rani, Rinkle
    Kalra, Nidhi
    CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS, 2024, 27 (01): : 1047 - 1061
  • [34] Blockchain-enabled efficient distributed attribute-based access control framework with privacy-preserving in IoV
    Zhang, Ye
    Zhang, Leyou
    Wu, Qing
    Mu, Yi
    JOURNAL OF KING SAUD UNIVERSITY-COMPUTER AND INFORMATION SCIENCES, 2022, 34 (10) : 9216 - 9227
  • [35] Multiauthority Attribute-Based Access Control for Supply Chain Information Sharing in Blockchain
    Liu, Chenlei
    Xiang, Feng
    Sun, Zhixin
    SECURITY AND COMMUNICATION NETWORKS, 2022, 2022
  • [36] A Non-Interactive Attribute-Based Access Control Scheme by Blockchain for IoT
    Yang, Qiliang
    Zhang, Mingrui
    Zhou, Yanwei
    Wang, Tao
    Xia, Zhe
    Yang, Bo
    ELECTRONICS, 2021, 10 (15)
  • [37] Smart contracts attribute-based access control model for security & privacy of IoT system using blockchain and edge computing
    Chen, Zhonghua
    Goyal, S. B.
    Rajawat, Anand Singh
    JOURNAL OF SUPERCOMPUTING, 2024, 80 (02): : 1396 - 1425
  • [38] Smart contracts attribute-based access control model for security & privacy of IoT system using blockchain and edge computing
    Chen Zhonghua
    S. B. Goyal
    Anand Singh Rajawat
    The Journal of Supercomputing, 2024, 80 : 1396 - 1425
  • [39] Access control scheme based on blockchain and attribute-based searchable encryption in cloud environment
    Yan, Liang
    Ge, Lina
    Wang, Zhe
    Zhang, Guifen
    Xu, Jingya
    Hu, Zheng
    JOURNAL OF CLOUD COMPUTING-ADVANCES SYSTEMS AND APPLICATIONS, 2023, 12 (01):
  • [40] Access control scheme based on blockchain and attribute-based searchable encryption in cloud environment
    Liang Yan
    Lina Ge
    Zhe Wang
    Guifen Zhang
    Jingya Xu
    Zheng Hu
    Journal of Cloud Computing, 12