基于智能合约的工业互联网数据公开审计方案
作者:
作者单位:

作者简介:

李涛(1997-),男,硕士生,主要研究领域为区块链应用安全;翁健(1976-),男,博士,教授,博士生导师,CCF专业会员,主要研究领域为公钥密码学,云安全,区块链安全;杨安家(1989-),男,博士,副研究员,CCF专业会员,主要研究领域为物联网安全,区块链安全,应用密码学,数据审计;郭梓繁(1997-),男,硕士生,主要研究领域为数据审计,区块链安全.

通讯作者:

杨安家,ayang3-c@my.cityu.edu.hk

中图分类号:

TP309

基金项目:

广东省重点领域研发计划(2020B0101360001);国家重点研发计划(2021ZD0112802,2020YFB1005600,2017YFB0802200,2018YFB100370);国家自然科学基金(62072215,U1736203,61825203)


Public Auditing Scheme for Industrial Internet Data Based on Smart Contracts
Author:
Affiliation:

Fund Project:

  • 摘要
  • |
  • 图/表
  • |
  • 访问统计
  • |
  • 参考文献
  • |
  • 相似文献
  • |
  • 引证文献
  • |
  • 资源附件
  • |
  • 文章评论
    摘要:

    随着工业互联网产生的数据量日益增加,越来越多的企业选择将工业互联网数据外包存储在云服务器上以节省存储开销.为了防止外包存储的数据被篡改或删除,企业需要定期对其进行审计.提出了一种基于智能合约的工业互联网数据公开审计方案.该方案基于博弈论的思想,设计了一系列智能合约,以高效地抵抗参与者恶意行为.与现有抗合谋的公开审计方案相比,该方案不依赖于复杂的密码学工具实现对参与者恶意行为的抵抗,使得其更为高效,进而能够更好地应用于海量且频繁更新的工业互联网数据场景中.特别地,所设计的博弈合约作为一种独立的工具,能够与现有的公开审计方案有效结合,在不降低其审计效率的同时,增加方案的安全性.在本地环境和以太坊公有测试链Ropsten上对博弈合约以及整体方案进行了一系列的测试,结果表明,所设计的合约运行花费低且对运行环境适应性强,对原有完整性审计方案的效率影响小;同时,与其他抗审计者恶意行为的完整性方案相比,该方案更为高效.

    Abstract:

    As the amount of data generated by the Industrial Internet grows, more and more companies are choosing to outsource the storage for their Industrial Internet data to cloud servers to save storage costs. To prevent the outsourced data from being tampered or deleted, companies need to audit the data integrity regularly. This study proposes a public auditing scheme for Industrial Internet data based on smart contracts. Particularly, a series of game-theory based smart contracts are designed which can efficiently mitigate malicious participators including the third-party auditor and the cloud server. Compared to existing collusion-resistant public auditing schemes, the proposed scheme does not rely on complex cryptographic tools to achieve resistance to participant malicious behavior, and thus is more efficient and suitable to Industrial Internet applications where huge amount of data need to be frequently updated. Specifically, the game-based contract designed in this study as an individual solution, can be effectively combined with existing public auditing schemes to turn out a public auditing scheme with better security without losing efficiency. Finally, a series of tests are conducted on the proposed contract in the local environment and Ropsten, the common test chain for Ethereum. The results show that the designed contract is cheap to run and adaptable to the operating environment, has little impact on the efficiency of the original integrity audit solution, and is more efficient than other integrity schemes that resist the malicious behavior of auditors.

    参考文献
    相似文献
    引证文献
引用本文

李涛,杨安家,翁健,郭梓繁.基于智能合约的工业互联网数据公开审计方案.软件学报,2023,34(3):1491-1511

复制
分享
文章指标
  • 点击次数:
  • 下载次数:
  • HTML阅读次数:
  • 引用次数:
历史
  • 收稿日期:2022-01-06
  • 最后修改日期:2022-02-21
  • 录用日期:
  • 在线发布日期: 2022-07-22
  • 出版日期: 2023-03-06
文章二维码
您是第位访问者
版权所有:中国科学院软件研究所 京ICP备05046678号-3
地址:北京市海淀区中关村南四街4号,邮政编码:100190
电话:010-62562563 传真:010-62562533 Email:jos@iscas.ac.cn
技术支持:北京勤云科技发展有限公司

京公网安备 11040202500063号