Combining ID's, Attributes, and Policies in Hyperledger Fabric

07/04/2022
by   Daan Gordijn, et al.
0

This work aims to provide a more secure access control in Hyperledger Fabric blockchain by combining multiple ID's, attributes, and policies with the components that regulate access control. The access control system currently used by Hyperledger Fabric is first completely analyzed. Next, a new implementation is proposed that builds upon the existing solution but provides users and developers with easier ways to make access control decisions based on combinations of multiple ID's, attributes, and policies. Our proposed implementation encapsulates the Fabric CA client to facilitate attribute addition and simplify the process of registering and enrolling a newly created certificate (corresponding to a new user). This research, concludes that it is possible to combine multiple ID's, attributes, and policies with the help of Hyperledger Fabric's smart contract technology. Furthermore, it could be seen that the performance impact for real-world applications is negligible compared to the insecure case of always providing access to a resource without performing access control.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
03/17/2019

Multi-Authority Attribute-Based Access Control with Smart Contract

Attribute-based access control makes access control decisions based on t...
research
09/07/2020

Attribute-Based Access Control for Smart Cities: A Smart Contract-Driven Framework

Efficient and reliable access control in smart cities is critical for th...
research
10/16/2019

Blockchain Tree as Solution for Distributed Storage of Personal ID Data and Document Access Control

This paper introduces a new method of Blockchain formation for reliable ...
research
12/19/2018

Using the decision support algorithms combining different security policies

During the development of the security subsystem of modern information s...
research
08/19/2020

Learning Attribute-Based and Relationship-Based Access Control Policies with Unknown Values

Attribute-Based Access Control (ABAC) and Relationship-based access cont...
research
05/31/2023

An Insider Threat Mitigation Framework Using Attribute Based Access Control

Insider Threat is a significant and potentially dangerous security issue...
research
12/15/2020

Building an ID Card Repository with Progressive Web Application to Mitigate Fraud

A lot of service requires identity of users to mitigate undesirable inci...

Please sign up or login with your details

Forgot password? Click here to reset