Decentralized Identity Authentication with Auditability and Privacy

被引:6
|
作者
Alangot, Bithin [1 ]
Szalachowski, Pawel [1 ]
Dinh, Tien Tuan Anh [1 ]
Meftah, Souhail [2 ]
Gana, Jeff Ivanos [2 ]
Aung, Khin Mi Mi [2 ]
Li, Zengpeng [3 ]
机构
[1] Singapore Univ Technol & Design SUTD, Dept Informat Syst Technol & Design ISTD, Singapore 487372, Singapore
[2] ASTAR, Inst Infocomm Res I2R, Singapore 138632, Singapore
[3] Shandong Univ, Sch Cyber Sci & Technol, Qingdao 266237, Peoples R China
关键词
blockchain; decentralized identity; authentication; auditability; privacy;
D O I
10.3390/a16010004
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Decentralized identity (DID) systems aim to give users full control over their identities by using completely decentralized technologies, such as blockchain or distributed ledgers, as identity providers. However, when user credentials are compromised, it is impossible in existing DID systems for the users to detect credential misuse. In this paper, we propose new DID authentication protocols with two properties: auditability and privacy. The former enables the detection of malicious authentication events, while the latter prevents an adversary from linking an authentication event to the corresponding user and service provider. We present two protocols that achieve auditability with varying privacy and performance guarantees. The first protocol has high performance, but it reveals information about the user. The second protocol achieves full privacy, but it incurs a higher performance overhead. We present a formal security analysis of our privacy-preserving protocols by using the Tamarin prover. We implemented them and evaluated their performance with a permissioned blockchain deployed over the Amazon AWS and a local cloud infrastructure. The results demonstrate that the first protocol is able to support realistic authentication workloads, while the second is nearly practical.
引用
收藏
页数:25
相关论文
共 50 条
  • [1] BPA: A decentralized payment system that balances privacy and auditability
    Gao, Le
    Zhang, Junzhe
    Yu, Jiaxin
    Tang, Yin
    Zeng, Zhiqiang
    AIMS MATHEMATICS, 2024, 9 (03): : 6183 - 6206
  • [2] A Blockchain-Based Digital Identity System with Privacy, Controllability, and Auditability
    Song, Zhiming
    Yan, Enhua
    Song, Junrong
    Jiang, Rong
    Yu, Yimin
    Chen, Taowei
    ARABIAN JOURNAL FOR SCIENCE AND ENGINEERING, 2024,
  • [3] A Decentralized Lightweight Authentication and Privacy Protocol for Vehicular Networks
    Hakeem, Shimaa A. Abdel
    Abd El-Gawad, Mohamed A.
    Kim, Hyungwon
    IEEE ACCESS, 2019, 7 : 119689 - 119705
  • [4] Improving Identity Privacy and Authentication in SIP Transactions
    Kungpisdan, Supakorn
    Thongyon, Atipat
    2013 13TH INTERNATIONAL SYMPOSIUM ON COMMUNICATIONS AND INFORMATION TECHNOLOGIES (ISCIT): COMMUNICATION AND INFORMATION TECHNOLOGY FOR NEW LIFE STYLE BEYOND THE CLOUD, 2013, : 227 - 232
  • [5] A user authentication scheme with identity and location privacy
    Hirose, S
    Yoshida, S
    INFORMATION SECURITY AND PRIVACY, PROCEEDINGS, 2001, 2119 : 235 - 246
  • [6] Password authentication scheme preserving identity privacy
    Yang, Fuw-Yi
    Hsu, Chih-Wei
    Chiu, Su-Hui
    2014 SIXTH INTERNATIONAL CONFERENCE ON MEASURING TECHNOLOGY AND MECHATRONICS AUTOMATION (ICMTMA), 2014, : 443 - 447
  • [7] PGC: Decentralized Confidential Payment System with Auditability
    Chen, Yu
    Ma, Xuecheng
    Tang, Cong
    Au, Man Ho
    COMPUTER SECURITY - ESORICS 2020, PT I, 2020, 12308 : 591 - 610
  • [8] Decentralized Identity Authentication with Trust Distributed in Blockchain Backbone
    Wang, Jiahe
    Wei, Songjie
    Liu, Haozhe
    BLOCKCHAIN - ICBC 2019, 2019, 11521 : 202 - 210
  • [9] Decentralized and Scalable Privacy-Preserving Authentication Scheme in VANETs
    Tangade, Shrikant
    Manvi, Sunilkumar S.
    Lorenz, Pascal
    IEEE TRANSACTIONS ON VEHICULAR TECHNOLOGY, 2018, 67 (09) : 8647 - 8655
  • [10] Enhancing and Evaluating Identity Privacy and Authentication Strength by Utilizing the Identity Ecosystem
    Chang, Kai Chih
    Zaeem, Razieh Nokhbeh
    Barber, K. Suzanne
    PROCEEDINGS OF THE 2018 WORKSHOP ON PRIVACY IN THE ELECTRONIC SOCIETY (WPES'18), 2018, : 114 - 120