【24h】

A Compromise-Tolerant Key Management Framework for Private Blockchain

机译:私人区块链的妥协宽容密钥管理框架

获取原文
获取原文并翻译 | 示例
           

摘要

One major threat for enterprise private blockchains is the compromise of the trust-enabling Public Key Infrastructure (PKI). While the invention of private blockchains has addressed the trust problem in inter-organisational information sharing, the confidentiality, integrity, and availability of information within one organisation is still reliant on traditional, centralised key management like PKI. This design has introduced a number of risks including: a) trust reliance on a few people creating an insider threat vulnerability; b) potential loss of assets, reputation, and privacy; c) single-point-of-failure; and d) defeating the distributed trust introduced by the invention of public blockchains. To mitigate these risks, this work proposes a compromise-tolerant key management approach that combines decentralised blockchain-based trusted PKI with the enforcement of multi-signature and smart contract features. Using a multi-signature feature allows the combination of decentralised blockchains and centralised PKIs, whereas smart contract enables key management transparency among all network participants to establish the distributed trust and mitigate insider and outsider threats.
机译:企业私有区块链的一个主要威胁是信任支持公钥基础架构(PKI)的妥协。虽然私有区块链的发明已经解决了组织间信息共享的信任问题,但一个组织内信息的机密性,完整性和可用性仍然依赖于像PKI这样的传统集中密钥管理。这种设计引入了许多风险,包括:a)信任对少数人创造内幕威胁漏洞的依赖; b)潜在的资产丧失,声誉和隐私; c)单点失败;而d)击败公共区块链引入的分布式信任。为了减轻这些风险,这项工作提出了一种折衷的关键管理方法,将基于分散的基因链的受信任PKI与多签名和智能合同功能相结合。使用多签名功能允许分散的区块链和集中式PKI的组合,而智能合同使所有网络参与者之间的关键管理透明度能够建立分布式信任和缓解内幕和局外威胁。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号