TRABAC: a tokenized role-attribute based access control using smart contract for supply chain applications

Aisyah Ismail, Qian Wu, Mark Toohey, Young Choon Lee, Zhongli Dong, Albert Y. Zomaya

Research output: Chapter in Book/Report/Conference proceedingConference proceeding contributionpeer-review

6 Citations (Scopus)

Abstract

The use of smart contracts for access control has shown to be promising as it ensures integrity and governs access to stored data, thanks to blockchain's immutability. While several recent studies have shown such usage, their applicability to supply chain applications remains limited due to less governance control capability and implementation complexity with smart contracts. This paper proposes the use of a tokenized role-attribute based access control (TRABAC) as a two-level access control for supply chain applications. In particular, TRABAC combines the simplicity of Role-Based Access Control (RBAC) and the flexibility and fine-grained capacity of Attribute-Based Access Control (ABAC). We consider these methods coupled with the use of Non-Fungible Token (NFT) as virtual assets in the supply chain. We also define four roles or parties that can have distinct and varied access rights. These roles are incorporated into TRABAC. The efficacy of TRABAC has been evaluated in five access control scenarios. Our experimental results show that TRABAC is capable of delegating access to four different supply chain roles. Importantly, TRABAC can effectively prevent unauthorized access requests by accounts that lack a valid Level 1 role or accounts that lack a valid token attribute or a tag in Level 2 of TRABAC.

Original languageEnglish
Title of host publicationProceedings - 2021 IEEE International Conference on Blockchain, Blockchain 2021
EditorsYang Xiang, Ziyuan Wang, Honggang Wang, Valtteri Niemi
Place of PublicationPiscataway, NJ
PublisherInstitute of Electrical and Electronics Engineers (IEEE)
Pages584-589
Number of pages6
ISBN (Electronic)9781665417600
DOIs
Publication statusPublished - 2021
Event4th IEEE International Conference on Blockchain, Blockchain 2021 - Melbourne, Australia
Duration: 6 Dec 20218 Dec 2021

Publication series

NameProceedings - 2021 IEEE International Conference on Blockchain, Blockchain 2021

Conference

Conference4th IEEE International Conference on Blockchain, Blockchain 2021
Country/TerritoryAustralia
CityMelbourne
Period6/12/218/12/21

Fingerprint

Dive into the research topics of 'TRABAC: a tokenized role-attribute based access control using smart contract for supply chain applications'. Together they form a unique fingerprint.

Cite this