Logo des Repositoriums
 

Gaining Back the Control Over Identity Attributes: Access Management Systems Based on Self-Sovereign Identity

dc.contributor.authorKeil, Kenneth-Raphael
dc.contributor.authorBochnia, Ricardo
dc.contributor.authorGudymenko, Ivan
dc.contributor.authorKöpsell, Stefan
dc.contributor.authorAnke, Jürgen
dc.contributor.editorRoßnagel, Heiko
dc.contributor.editorSchunck, Christian H.
dc.contributor.editorSousa, Filipe
dc.date.accessioned2024-06-07T08:59:58Z
dc.date.available2024-06-07T08:59:58Z
dc.date.issued2024
dc.description.abstractDigital employee cards used for door access control offer benefits, but concerns about traceability, profiling and performance monitoring have led to opposition from workers’ councils and employees. However, the emerging identity management approach, Self-Sovereign Identity (SSI), can address these concerns by giving control over disclosed identity attributes back to the end user. This paper analyzes a real-world access management scenario in a hospital building and applies the SSI paradigm to address the identified issues. The analysis assumes a semi-honest observing attacker sniffing on the payload and the transport layer. The SSI-based proof of concept is shown to have a high potential to protect against traceability and profiling. However, in addition to the careful technical implementation of SSI, it is important to consider non-technical factors such as governance for a holistic solution. We propose potential strategies to further minimize privacy risks associated with SSI-based employee identity management using mediators.en
dc.identifier.doi10.18420/OID2024_05
dc.identifier.isbn978-3-88579-744-9
dc.identifier.pissn1617-5468
dc.identifier.urihttps://dl.gi.de/handle/20.500.12116/44104
dc.language.isoen
dc.publisherGesellschaft für Informatik e.V.
dc.relation.ispartofOpen Identity Summit 2024
dc.relation.ispartofseriesLecture Notes in Informatics (LNI) - Proceedings, Volume P-350
dc.subjectSelf-Sovereign Identity
dc.subjectTraceability
dc.subjectPrivacy
dc.subjectAccess Control
dc.subjectProfiling
dc.subjectArchitecture
dc.titleGaining Back the Control Over Identity Attributes: Access Management Systems Based on Self-Sovereign Identityen
dc.typeText/Conference Paper
gi.citation.endPage72
gi.citation.publisherPlaceBonn
gi.citation.startPage61
gi.conference.date20.-21. June 2024
gi.conference.locationPorto, Portugal
gi.conference.sessiontitleRegular Research Papers

Dateien

Originalbündel
1 - 1 von 1
Vorschaubild nicht verfügbar
Name:
proceedings-05.pdf
Größe:
625.17 KB
Format:
Adobe Portable Document Format