Decentralized Identifier and Access Control Based Architecture for Privacy-Sensitive Data Distribution Service

被引:1
|
作者
Oku, Reiya [1 ]
Shiomoto, Kohei [1 ]
Ohba, Yoshihiro [2 ]
机构
[1] Tokyo City Univ, Grad Sch Integrat Sci & Engn, Tokyo, Japan
[2] Kioxia Corp, Minato Ku, Tokyo, Japan
关键词
Distributed Ledgers; Decentralized Identifier; Access Control; Data Exchange; Personal Information;
D O I
10.1109/WF-IOT54382.2022.10152128
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
In today's world, users' privacy-sensitive information is collected and managed by organizations and businesses. However, users do not have the option to choose the information that can be shared, nor can they track the sharing process. To address this limitation, we propose a privacy-sensitive information protection and management architecture that incorporates two emerging technologies: (1) Self-Sovereign Decentralized Identifier (DID), and (2) a policy description language to implement an automated access policy control. The proposed architecture defines a schema for privacy-sensitive information and leverages a policy description language to describe policies for handling the privacy-sensitive information to implement automated distribution of information. Users can prove the authenticity of their personal information without the need for centralized control, such as a public key infrastructure. The transaction records of accessing privacy-sensitive information can be tracked while keeping anonymization; no one can identify the real entity of the transacting party. We implemented a prototype system using Hyperledger Aries, Indy, and Sawtooth Projects for the DID management mechanisms, and Open Policy Agent for an automated access policy control.
引用
收藏
页数:6
相关论文
共 50 条
  • [31] A Privacy-Sensitive Approach for Group Convergence in Location-based Services
    Tan, Rong
    Si, Wen
    Sheng, Jieyu
    2016 INTERNATIONAL CONFERENCE ON CYBERWORLDS (CW), 2016, : 1 - 8
  • [32] Capturing spontaneous conversation and social dynamics: A privacy-sensitive data collection effort
    Wyatt, Danny
    Choudhury, Tanzeem
    Kautz, Henry
    2007 IEEE INTERNATIONAL CONFERENCE ON ACOUSTICS, SPEECH, AND SIGNAL PROCESSING, VOL IV, PTS 1-3, 2007, : 213 - +
  • [33] Privacy-Preserving Vehicular Cloud Computing Based on Blockchain and Decentralized Identifier
    Liu, Zaishuang
    Ma, Xiaoxu
    Bai, Jian
    Xiao, Min
    Tang, Fei
    International Journal of Network Security, 2023, 25 (05) : 849 - 858
  • [34] A collaborative distributed privacy-sensitive decision support system for monitoring heterogeneous data sources
    Kargupta, H
    Sarkar, K
    Aswath, D
    Handy, WD
    2005 INTERNATIONAL SYMPOSIUM ON COLLABORATIVE TECHNOLOGIES AND SYSTEMS, PROCEEDINGS, 2005, : 380 - 387
  • [35] Attribute-Based Access Control(ABAC) with Decentralized Identifier in the Blockchain-Based Energy Transaction Platform
    Kim, Beomseok
    Shin, Woonseob
    Hwang, Dong-Yeop
    Kim, Ki-Hyung
    35TH INTERNATIONAL CONFERENCE ON INFORMATION NETWORKING (ICOIN 2021), 2021, : 845 - 848
  • [36] A situation-aware access control based privacy-preserving service matchmaking approach for Service-Oriented Architecture
    Yau, Stephen S.
    Liu, Junwei
    2007 IEEE INTERNATIONAL CONFERENCE ON WEB SERVICES, PROCEEDINGS, 2007, : 1056 - +
  • [37] From web search to healthcare utilization: privacy-sensitive studies from mobile data
    White, Ryen
    Horvitz, Eric
    JOURNAL OF THE AMERICAN MEDICAL INFORMATICS ASSOCIATION, 2013, 20 (01) : 61 - 68
  • [38] Decentralized Health Data Distribution: A DLT-based Architecture for Data Protection
    Bigini, Gioele
    Zichichi, Mirko
    Lattanzi, Emanuele
    Ferretti, Stefano
    D'Angelo, Gabriele
    2022 IEEE INTERNATIONAL CONFERENCE ON BLOCKCHAIN (BLOCKCHAIN 2022), 2022, : 97 - 104
  • [39] Privacy-Preserving Distribution and Access Control of Personalized Healthcare Data
    Rajput, Amitesh Singh
    Raman, Balasubramanian
    IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2022, 18 (08) : 5584 - 5591
  • [40] Derepo: A Distributed Privacy-Preserving Data Repository with Decentralized Access Control for Smart Health
    Ding, Yepeng
    Sato, Hiroyuki
    2020 7TH IEEE INTERNATIONAL CONFERENCE ON CYBER SECURITY AND CLOUD COMPUTING (CSCLOUD 2020)/2020 6TH IEEE INTERNATIONAL CONFERENCE ON EDGE COMPUTING AND SCALABLE CLOUD (EDGECOM 2020), 2020, : 29 - 35