重庆邮电大学学报(自然科学版)2024,Vol.36Issue(1) :9-19.DOI:10.3979/j.issn.1673-825X.202207060169

面向联盟链的隐私保护技术综述

Overview of privacy protection technology for consortium blockchain

孙爽 唐华云 丁旋 王延昭 李荣
重庆邮电大学学报(自然科学版)2024,Vol.36Issue(1) :9-19.DOI:10.3979/j.issn.1673-825X.202207060169

面向联盟链的隐私保护技术综述

Overview of privacy protection technology for consortium blockchain

孙爽 1唐华云 2丁旋 3王延昭 2李荣2
扫码查看

作者信息

  • 1. 中央国债登记结算有限责任公司博士后工作站,北京 100033;中债金科信息技术有限公司区块链实验室,北京 100044;清华大学博士后流动站,北京 100084
  • 2. 中债金科信息技术有限公司区块链实验室,北京 100044
  • 3. 清华大学软件学院,北京 100084
  • 折叠

摘要

区块链通过账本数据公开和计算透明来为上层应用提供可信服务,但公开透明的特性容易造成敏感信息泄露,阻碍区块链的发展,隐私保护技术由此成为了研究热点.与公有链不同,联盟链通过权限管理机制完成对网络层和存储层数据的安全隔离,实现外部入侵防御.然而,权限控制不支持用户的身份匿名,无法隐藏交易过程中金额等敏感信息,因此,现有联盟链平台通过嵌入密码功能模块和可信硬件来增强自身的隐私保护能力.该文调研了联盟链面临的隐私泄露风险;分析Hyperledger Fabric、FISCO BCOS和ChainMaker等3个国内外主流联盟链平台中涉及的权限控制、密码技术和可信执行环境,从能否支持身份匿名、交易内容隐藏和隐私计算角度出发,对比平台的隐私保护能力;指出了面向联盟链的隐私保护技术的研究方向.

Abstract

Blockchain provides trusted services via ledger disclosure and computational transparency,but the openness and transparency features are easy to cause the leakage of sensitive information,which hinders the development of blockchain.Privacy protection technology has become a research hotspot.Different from the public blockchain,consortium blockchain achieves security isolation of network layer and storage layer data via the authority management mechanism to achieve exter-nal intrusion prevention.However,permission control does not support the anonymity of users'identities,and cannot hide amounts of information during the transaction process.Therefore,the existing consortium blockchain platform enhances its privacy protection capabilities by embedding the cryptography function module and trusted hardware.Firstly,this paper in-vestigates the privacy leakage risk faced by the consortium blockchain.Secondly,this paper compares and analyzes the pri-vacy protection technologies involved in the three mainstream consortium blockchain platforms,Hyperledger Fabric,FISCO BCOS and ChainMaker,and compares the privacy protection capabilities of platforms from the perspective of whether it can support identity anonymity,transaction hiding and privacy computing.Finally,this paper points out the research direction of privacy protection technology for consortium blockchain.

关键词

联盟链/隐私泄露/权限控制/密码技术/可信执行环境/隐私保护

Key words

consortium blockchain/privacy disclosure/permission control/cryptography/trusted execution environment/privacy protection

引用本文复制引用

出版年

2024
重庆邮电大学学报(自然科学版)
重庆邮电大学

重庆邮电大学学报(自然科学版)

CSTPCD北大核心
影响因子:0.66
ISSN:1673-825X
参考文献量32
段落导航相关论文