Decentralized Identifier and Access Control Based Architecture for Privacy-Sensitive Data Distribution Service

被引:1
|
作者
Oku, Reiya [1 ]
Shiomoto, Kohei [1 ]
Ohba, Yoshihiro [2 ]
机构
[1] Tokyo City Univ, Grad Sch Integrat Sci & Engn, Tokyo, Japan
[2] Kioxia Corp, Minato Ku, Tokyo, Japan
关键词
Distributed Ledgers; Decentralized Identifier; Access Control; Data Exchange; Personal Information;
D O I
10.1109/WF-IOT54382.2022.10152128
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
In today's world, users' privacy-sensitive information is collected and managed by organizations and businesses. However, users do not have the option to choose the information that can be shared, nor can they track the sharing process. To address this limitation, we propose a privacy-sensitive information protection and management architecture that incorporates two emerging technologies: (1) Self-Sovereign Decentralized Identifier (DID), and (2) a policy description language to implement an automated access policy control. The proposed architecture defines a schema for privacy-sensitive information and leverages a policy description language to describe policies for handling the privacy-sensitive information to implement automated distribution of information. Users can prove the authenticity of their personal information without the need for centralized control, such as a public key infrastructure. The transaction records of accessing privacy-sensitive information can be tracked while keeping anonymization; no one can identify the real entity of the transacting party. We implemented a prototype system using Hyperledger Aries, Indy, and Sawtooth Projects for the DID management mechanisms, and Open Policy Agent for an automated access policy control.
引用
收藏
页数:6
相关论文
共 50 条
  • [21] Privacy aware decentralized access control system
    Shafeeq, Sehrish
    Alam, Masoom
    Khan, Abid
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2019, 101 : 420 - 433
  • [22] EDDAC: An Efficient and Decentralized Data Access Control Scheme With Attribute Privacy Preservation
    Wang, Lanyan
    Ding, Wenxiu
    Yan, Zheng
    Qiu, Su
    Wang, Mingjun
    Wan, Zhiguo
    IEEE INTERNET OF THINGS JOURNAL, 2024, 11 (08): : 14579 - 14592
  • [23] Adopting Attribute-Based Access Control to Data Distribution Service
    Murugesan, Priya
    Chinnappa, Swanima
    Alaerjan, Alaa
    Kim, Dae-Kyoo
    PROCEEDINGS 2017 INTERNATIONAL CONFERENCE ON SOFTWARE SECURITY AND ASSURANCE (ICSSA), 2017, : 112 - 115
  • [24] An Efficient Activity Recognition Framework: Toward Privacy-Sensitive Health Data Sensing
    Samarah, Samer
    Al Zamil, Mohammed Gh
    Aleroud, Ahmed F.
    Rawashdeh, Majdi
    Alhamid, Mohammed F.
    Alamri, Atif
    IEEE ACCESS, 2017, 5 : 3848 - 3859
  • [25] On Outsourcing Artificial Neural Network Learning of Privacy-Sensitive Medical Data to the Cloud
    Melissourgos, Dimitrios
    Gao, Hanzhi
    Ma, Chaoyi
    Chen, Shigang
    Wu, Samuel S.
    2021 IEEE 33RD INTERNATIONAL CONFERENCE ON TOOLS WITH ARTIFICIAL INTELLIGENCE (ICTAI 2021), 2021, : 381 - 385
  • [26] DSMAC: Privacy-Aware Decentralized Self-Management of Data Access Control Based on Blockchain for Health Data
    Saidi, Hafida
    Labraoui, Nabila
    Ari, Ado Adamou Abba
    Maglaras, Leandros A.
    Emati, Joel Herve Mboussam
    IEEE ACCESS, 2022, 10 : 101011 - 101028
  • [27] Handling Privacy-Sensitive Medical Data With Federated Learning: Challenges and Future Directions
    Aouedi, Ons
    Sacco, Alessio
    Piamrat, Kandaraj
    Marchetto, Guido
    IEEE JOURNAL OF BIOMEDICAL AND HEALTH INFORMATICS, 2023, 27 (02) : 790 - 803
  • [28] Data Access, Control, and Privacy Protection in the VODAN-Africa Architecture
    Putu Hadi Purnama Jati
    Mirjam van Reisen
    Erik Flikkenschild
    Fransisca Oladipo
    Bert Meerman
    Ruduan Plug
    Sara Nodehi
    Data Intelligence, 2022, (04) : 938 - 954
  • [29] Data Access, Control, and Privacy Protection in the VODAN-Africa Architecture
    Purnama Jati, Putu Hadi
    van Reisen, Mirjam
    Flikkenschild, Erik
    Oladipo, Fransisca
    Meerman, Bert
    Plug, Ruduan
    Nodehi, Sara
    DATA INTELLIGENCE, 2022, 4 (04) : 938 - 954
  • [30] Vallum: Privacy, Confidentiality and Access Control for Sensitive Data in Cloud Environments
    Peterson, Ronny
    Carvalho, Andre
    da Silva, Altigran
    Fernandez, Gabriel
    Martin, Andre
    Fetzer, Christof
    Brito, Andrey
    11TH IEEE INTERNATIONAL CONFERENCE ON CLOUD COMPUTING TECHNOLOGY AND SCIENCE (CLOUDCOM 2019), 2019, : 103 - 110