Distributed attribute-based access control system using permissioned blockchain
【Author】 Rouhani, Sara; Belchior, Rafael; Cruz, Rui S.; Deters, Ralph
【Source】WORLD WIDE WEB-INTERNET AND WEB INFORMATION SYSTEMS
【影响因子】3.000
【Abstract】Auditing provides essential security control in computer systems by keeping track of all access attempts, including both legitimate and illegal access attempts. This phase can be useful in the context of audits, where eventual misbehaving parties can be held accountable. Blockchain technology can provide the trusted auditability required for access control systems. In this paper, we propose a distributed Attribute-Based Access Control (ABAC) system based on blockchain to provide trusted auditing of access attempts. Besides auditability, our system presents a level of transparency that both access requesters and resource owners can benefit from it. We present a system architecture with an implementation based on Hyperledger Fabric, achieving high efficiency and low computational overhead. The proposed solution is validated through a use case of independent digital libraries. Detailed performance analysis of our implementation is presented, taking into account different consensus mechanisms and databases. The experimental evaluation shows that our presented system can effectively handle a transaction throughput of 270 transactions per second, with an average latency of 0.54 seconds per transaction.
【Keywords】Distributed access control; Attribute-based access control; Blockchain; Hyperledger fabric; Performance
【发表时间】2021 SEP
【收录时间】2022-01-02
【文献类型】
【主题类别】
--
评论