Abstract
Distributed Ledger Technology is a powerful tool to support direct collaboration between organisations, without requiring full trust into a centralised infrastructure. By defining a program logic and access policies with smart contracts, all interactions are verified in the distributed network and the history of the data is recorded on the ledger. Blockchain implementations targeting enterprise use cases also provide means for private transactions, where the content of the transaction is only readable by authorized participants. Direct access to the ledger requires a node with reliable connection to the network and sufficient computational resources, which usually cannot be fulfilled with lightweight Internet of Things devices and mobile applications. We present an advanced system for accessing an enterprise Blockchain through dedicated gateway nodes, while preserving the functionality of private transactions. A hybrid approach is used to allow computation- and storage restricted clients to send private transactions through a central gateway, and use Light Ethereum Subprotocol to verify the data integrity based on proofs from distributed nodes. To increase the client-side security level, we introduce a dedicated Hardware Security Module for key management and efficient execution of the cryptographic primitives. A proof-of-concept implementation, using the Quorum Blockchain client and an extension for the Tessera transaction manager, validates the feasibility of the approach and can be used for further research in this field.
Originalsprache | englisch |
---|---|
Titel | 5th IEEE Conference on Dependable and Secure Computing, DSC 2022 and SECSOC 2022 Workshop, PASS4IoT 2022 Workshop SICSA International Paper/Poster Competition in Cybersecurity |
Herausgeber (Verlag) | Institute of Electrical and Electronics Engineers |
Seitenumfang | 8 |
ISBN (elektronisch) | 9781665421416 |
DOIs | |
Publikationsstatus | Veröffentlicht - 2022 |
Veranstaltung | 5th IEEE Conference on Dependable and Secure Computing: DSC 2022 - Edinburgh, Großbritannien / Vereinigtes Königreich Dauer: 22 Juni 2022 → 24 Juni 2022 |
Konferenz
Konferenz | 5th IEEE Conference on Dependable and Secure Computing |
---|---|
Kurztitel | DSC 2022 |
Land/Gebiet | Großbritannien / Vereinigtes Königreich |
Ort | Edinburgh |
Zeitraum | 22/06/22 → 24/06/22 |
ASJC Scopus subject areas
- Computernetzwerke und -kommunikation
- Informationssysteme und -management
- Sicherheit, Risiko, Zuverlässigkeit und Qualität