A Decentralized Data Sharing Framework based on a Key-Redistribution method
Contributo in Atti di convegno
Data di Pubblicazione:
2023
Abstract:
One of the problems of cloud-based data services is the trust involved in its management, since service managers can easily access the data on their servers. The problem is exacerbated in decentralized data services, where managers and operators are pseudo-anonymous by default, to the point where these systems are not compliant with data protection regulations such as GDPR. These problems have historically been dealt with data encryption, but this inhibits data sharing. To enable data-sharing for a encrypted decentralized file storage, we propose Key-Redistribution Proxy Re-Encryption (KeRePRE). KeRePRE is a decentralized and encrypted data-service where managers in the form of authorization servers are part of a threshold proxy re-encryption scheme. In particular, to solve the problem of malicious nodes, we extend the work in Umbral with a system based on a key-redistribution mechanism to add and remove managers in a decentralized and trustless way, and we provide a proof of concept implementation. Data access control is based on an access control list stored on a DLT which can be read-only accessed by the authorization servers.
Tipologia CRIS:
04A-Conference paper in volume
Keywords:
Data Sharing; Decentralized File System; GDPR; Proxy re-encryption; Threshold scheme
Elenco autori:
Barbara F.; Zichichi M.; Ferretti S.; Schifanella C.
Link alla scheda completa:
Titolo del libro:
CEUR Workshop Proceedings
Pubblicato in: