Data management services frequently grapple with trust issues due to the easy access service managers have to server-stored data. Although decentralized data services and smart contracts offer solutions to the pitfalls of centralized authorities, they also raise concerns regarding compliance with data protection laws like GDPR. Historically, encryption has mitigated some of these issues but at the expense of hindering data sharing. To address this, we introduce the Key-Redistribution Proxy Re-Encryption (KeRePRE) system-a decentralized, encrypted data service that incorporates authorization servers as part of a threshold proxy re-encryption scheme. This system leverages a key-redistribution mechanism to seamlessly add or remove managers in a trustless environment, achieving proactive security. Our proof of concept, implemented via smart contracts on a Layer 2 of IOTA, showcases an access control list that authorizes read-only access by the servers.

DLT-based personal data access control with key-redistribution

Zichichi, Mirko;Schifanella, Claudio
2025-01-01

Abstract

Data management services frequently grapple with trust issues due to the easy access service managers have to server-stored data. Although decentralized data services and smart contracts offer solutions to the pitfalls of centralized authorities, they also raise concerns regarding compliance with data protection laws like GDPR. Historically, encryption has mitigated some of these issues but at the expense of hindering data sharing. To address this, we introduce the Key-Redistribution Proxy Re-Encryption (KeRePRE) system-a decentralized, encrypted data service that incorporates authorization servers as part of a threshold proxy re-encryption scheme. This system leverages a key-redistribution mechanism to seamlessly add or remove managers in a trustless environment, achieving proactive security. Our proof of concept, implemented via smart contracts on a Layer 2 of IOTA, showcases an access control list that authorizes read-only access by the servers.
2025
28
6
1
17
https://link.springer.com/article/10.1007/s10586-024-05016-y
Barbàra, Fadi; Zichichi, Mirko; Ferretti, Stefano; Schifanella, Claudio
File in questo prodotto:
File Dimensione Formato  
s10586-024-05016-y.pdf

Accesso aperto

Tipo di file: PDF EDITORIALE
Dimensione 1.73 MB
Formato Adobe PDF
1.73 MB Adobe PDF Visualizza/Apri

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/2318/2096690
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 1
  • ???jsp.display-item.citation.isi??? 0
social impact