摘要
互联网的中心化身份管理模式存在单点故障、信任等隐私问题,没有赋予用户对自己身份的自主权,因此不再受到特定应用领域的用户信任。区块链的去中心化、公开透明、安全可靠等特性,使其成为自主身份管理的关键技术之一。讨论互联网应用身份管理发展现状,分析基于区块链的自主身份管理模式相较于传统中心化身份管理模式的优势以及区块链技术在实现自主身份管理方面的优势。然后,根据自主身份原则,提出一种基于区块链的自主身份管理方案,使用户能够对自己的身份拥有控制权;在此基础上,针对自主身份最小化原则,提出一种选择性披露方法增强方案的隐私保护能力。基于以太坊平台和智能合约技术,对提出的方案进行仿真实现,实验结果证明了该方案的正确性和可行性。
The centralized identity management of the Internet has privacy problems such as single point of failure and trust,which does not give users the autonomy of their own identity,so they are no longer trusted by users in specific application fields.The characteristics of block-chain,such as decentralization,openness and transparency,security and reliability,make it one of the key technologies for self-sovereign identity management.This paper mainly discusses the development status of Internet application identity management and analyzes the advan-tages of blockchain-based self-sovereign identity management compared with traditional centralized identity management.Secondly,it analyz-es the advantages of blockchain technology in realizing self-sovereign identity management.Then,according to the principle of autonomous identity,an autonomous identity management scheme based on blockchain is proposed to enable users to have control over their identity.On this basis,a selective disclosure method is proposed to enhance the privacy protection ability of the scheme in view of the principle of minimi-zation.Based on Ethereum platform and intelligent contract technology,the proposed scheme is simulated and implemented.The experimental results show that the scheme is correct and feasible.
作者
张慧
沈苏彬
ZHANG Hui;SHEN Subin(School of Computer Science,Nanjing University of Posts and Telecommunications;National Engineering Research Center on Communication and Networking,Nanjing University of Posts and Telecommunications,Nanjing 210023,China)
出处
《软件导刊》
2024年第4期131-140,共10页
Software Guide
基金
江苏省未来网络前瞻性研究项目(BY20130951108)。
关键词
区块链
去中心化
身份管理
自主身份
隐私保护
blockchain
decentralization
identity management
self-sovereign identity
privacy protection