This paper presents a new design approach forAccess Control services leveraging smart contracts providedby blockchain technology. The key idea of our proposal is tocodify Access Control policies as executable smart contracts ona blockchain. This transforms the policy evaluation process intocompletely distributed smart contract executions. In our fullyblockchain based approach also the Attribute Managers requiredfor the evaluation of the Access Control policies are managed bythe blockchain, i.e., they are implemented as smart contracts aswell. To study the feasibility of our proposal we present a workingreference implementation using XACML policies and Soliditywritten smart contracts deployed on Ethereum. Finally weevaluate the advantages and drawbacks of the proposal, makingalso use of experimental results of our reference implementation.

Blockchain Based Access Control Service

P Mori;
2018

Abstract

This paper presents a new design approach forAccess Control services leveraging smart contracts providedby blockchain technology. The key idea of our proposal is tocodify Access Control policies as executable smart contracts ona blockchain. This transforms the policy evaluation process intocompletely distributed smart contract executions. In our fullyblockchain based approach also the Attribute Managers requiredfor the evaluation of the Access Control policies are managed bythe blockchain, i.e., they are implemented as smart contracts aswell. To study the feasibility of our proposal we present a workingreference implementation using XACML policies and Soliditywritten smart contracts deployed on Ethereum. Finally weevaluate the advantages and drawbacks of the proposal, makingalso use of experimental results of our reference implementation.
2018
Istituto di informatica e telematica - IIT
Access Control
blockchain
Distributed Ledgers
Ethereum
File in questo prodotto:
Non ci sono file associati a questo prodotto.

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/20.500.14243/356099
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus ND
  • ???jsp.display-item.citation.isi??? ND
social impact