Smart Contract Federated Identity Management without Third Party Authentication Services

06/26/2019
by   Peter Mell, et al.
0

Federated identity management enables users to access multiple systems using a single login credential. However, to achieve this a complex privacy compromising authentication has to occur between the user, relying party (RP) (e.g., a business), and a credential service provider (CSP) that performs the authentication. In this work, we use a smart contract on a blockchain to enable an architecture where authentication no longer involves the CSP. Authentication is performed solely through user to RP communications (eliminating fees and enhancing privacy). No third party needs to be contacted, not even the smart contract. No public key infrastructure (PKI) needs to be maintained. And no revocation lists need to be checked. In contrast to competing smart contract approaches, ours is hierarchically managed (like a PKI) enabling better validation of attribute providers and making it more useful for large entities to provide identity services for their constituents (e.g., a government) while still enabling users to maintain a level of self-sovereignty.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
04/19/2018

Anonymous Single-Sign-On for n designated services with traceability

Anonymous Single-Sign-On authentication schemes have been proposed to al...
research
08/20/2019

Securing HPC using Federated Authentication

Federated authentication can drastically reduce the overhead of basic ac...
research
12/10/2018

An Air-Gapped 2-Factor Authentication for Smart-Contract Wallets

With the recent rise of cryptocurrencies, the security and management of...
research
11/20/2018

Killing the Password and Preserving Privacy with Device-Centric and Attribute-based Authentication

Current authentication methods on the Web have serious weaknesses. First...
research
12/08/2020

On Aadhaar Identity Management System

A unique identification for citizens can lead to effective governance to...
research
06/10/2022

NSSIA: A New Self-Sovereign Identity Scheme with Accountability

Self-Sovereign Identity (SSI) is a new distributed method for identity m...
research
12/16/2021

Federated 3GPP Mobile Edge Computing Systems: A Transparent Proxy for Third Party Authentication with Application Mobility Support

Multi-Access or Mobile Edge Computing (MEC) is being deployed by 4G/5G o...

Please sign up or login with your details

Forgot password? Click here to reset