论文标题

自我主张身份的分布式证明撤销

Distributed Attestation Revocation in Self-Sovereign Identity

论文作者

Chotkan, Rowdy, Decouchant, Jérémie, Pouwelse, Johan

论文摘要

自我主持的身份(SSI)渴望通过将公民置于数据的中心,从而为互联网创建标准化的身份层,从而削弱了对当前数字身份的大型技术的控制。但是,由于每年数以百万计的物理和数字身份都丢失,因此SSI也有必要被吊销以防止滥用。以前设计吊销机制的尝试通常通过依靠中央信任的组件来违反SSI的原理。缺乏分布式撤销机制会阻碍SSI的发展。在本文中,我们解决了这一限制,并介绍了不依赖于专门的受信任节点的第一个完全分布的SSI撤销机制。我们基于八卦的新型繁殖算法在整个网络中传播了撤销,并为节点提供了撤销证明,从而可以离线验证撤销。我们通过模拟证明我们的协议将足够的规模扩展到国家级别。

Self-Sovereign Identity (SSI) aspires to create a standardised identity layer for the Internet by placing citizens at the centre of their data, thereby weakening the grip of big tech on current digital identities. However, as millions of both physical and digital identities are lost annually, it is also necessary for SSIs to possibly be revoked to prevent misuse. Previous attempts at designing a revocation mechanism typically violate the principles of SSI by relying on central trusted components. This lack of a distributed revocation mechanism hampers the development of SSI. In this paper, we address this limitation and present the first fully distributed SSI revocation mechanism that does not rely on specialised trusted nodes. Our novel gossip-based propagation algorithm disseminates revocations throughout the network and provides nodes with a proof of revocation that enables offline verification of revocations. We demonstrate through simulations that our protocol adequately scales to national levels.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源