NSSIA: A New Self-Sovereign Identity Scheme with Accountability

06/10/2022
by   Qiuyun Lyu, et al.
0

Self-Sovereign Identity (SSI) is a new distributed method for identity management, commonly used to address the problem that users are lack of control over their identities. However, the excessive pursuit of self-sovereignty in the most existing SSI schemes hinders sanctions against attackers. To deal with the malicious behavior, a few SSI schemes introduce accountability mechanisms, but they sacrifice users' privacy. What's more, the digital identities (static strings or updatable chains) in the existing SSI schemes are as inputs to a third-party executable program (mobile app, smart contract, etc.) to achieve identity reading, storing and proving, users' self-sovereignty are weakened. To solve the above problems, we present a new self-sovereign identity scheme to strike a balance between privacy and accountability and get rid of the dependence on the third-party program. In our scheme, one and only individual-specific executable code is generated as a digital avatar-i for each human to interact with others in cyberspace without a third-party program, in which the embedding of biometrics enhances uniqueness and user control over their identity. In addition, a joint accountability mechanism, which is based on the shamir (t, n) threshold algorithm and a consortium blockchain, is designed to restrict the power of each regulatory authority and protect users' privacy. Finally, we analyze the security, SSI properties and conduct detailed experiments in term of the cost of computation, storage and blockchain gas. The analysis results indicate that our scheme resists the known attacks and fulfills all the six SSI properties. Compared with the state-of-the-art schemes, the extensive experiment results show that the cost is larger in server storage, blockchain storage and blockchain gas, but is still low enough for practical situations.

READ FULL TEXT

page 6

page 7

page 13

page 15

page 16

page 17

page 21

page 22

research
04/27/2020

Identity Management on Blockchain – Privacy and Security Aspects

In the last years, identity management solutions on blockchain were prop...
research
01/10/2018

A First Look at Identity Management Schemes on the Blockchain

The emergence of distributed ledger technology (DLT) based upon a blockc...
research
07/22/2023

Blockchain-based Cloud Data Deduplication Scheme with Fair Incentives

With the rapid development of cloud computing, vast amounts of duplicate...
research
06/26/2019

Smart Contract Federated Identity Management without Third Party Authentication Services

Federated identity management enables users to access multiple systems u...
research
04/07/2021

Decentralized Cross-Network Identity Management for Blockchain Interoperation

Interoperation for data sharing between permissioned blockchain networks...
research
01/16/2021

AGChain: A Blockchain-based Gateway for Permanent, Distributed, and Secure App Delegation from Existing Mobile App Markets

Mobile app markets are emerging with the popularity of smartphones. Howe...
research
06/20/2018

UniqueID: Decentralized Proof-of-Unique-Human

Bitcoin and Ethereum are novel mechanisms for decentralizing the concept...

Please sign up or login with your details

Forgot password? Click here to reset