信息安全研究 ›› 2023, Vol. 9 ›› Issue (3): 220-.

• 新型电力系统数据安全与隐私保护专题 • 上一篇    下一篇

基于区块链的能源数据共享访问控制方案

余晗;李俊妮;刘文思;宣东海;   

  1. (国家电网有限公司大数据中心北京100052)
  • 出版日期:2023-03-04 发布日期:2023-03-03
  • 通讯作者: 余晗 硕士,工程师.主要研究方向为区块链、能源互联网、大数据. hanyu1@sgcc.com.cn
  • 作者简介:余晗 硕士,工程师.主要研究方向为区块链、能源互联网、大数据. hanyu1@sgcc.com.cn 李俊妮 硕士,经济师.主要研究方向为能源大数据、大数据标准、大数据管理. junnili@sgcc.com.cn 刘文思 硕士,高级工程师.主要研究方向为能源大数据技术及应用. wensiliu@sgcc.com.cn 宣东海 博士,高级工程师.主要研究方向为能源大数据技术. saintsuan@126.com

Energy Data Sharing Access Control Model Based on Blockchain

  • Online:2023-03-04 Published:2023-03-03

摘要: 针对传统的能源数据共享模型中存在的能源企业部门间访问控制中心化、访问透明度低和效率低等问题,提出一种基于区块链的能源数据共享访问控制方案.首先,设计了基于区块链和能源数据分级的访问控制模型,以零信任的“永不信任,始终验证”为原则,将区块链与基于属性的访问控制(attributebased access control, ABAC)相结合,利用区块链智能合约保证访问控制自动可信的判决,利用ABAC实现以属性为决定因素的细粒度访问控制;其次,对能源数据进行分级,体现其资源的隐私程度,设计相应的访问控制策略.实验结果表明,该方案能够保证在大规模访问控制策略下,能源数据实现可控共享.


关键词: 零信任, 区块链, 数据共享, 访问控制, 能源数据分级

Abstract: Aiming at the problems of centralization, low transparency and low efficiency of interdepartmental access control in the traditional energy data sharing model, a blockchainbased hierarchical access control scheme for energy data sharing is proposed. Firstly, an Access Control model based on blockchain and energy data classification is designed. Based on the principle of “never trust, always verify” with zerotrust, blockchain is combined with AttributeBased access control (ABAC). The smart contract of blockchain is used to guarantee the automatic and credible decision of access control, and the finegrained access control with attribute as the determining factor is realized by ABAC. Secondly, the energy data is classified to reflect the privacy degree of its resources, and the corresponding access control strategy is designed. The final experimental results show that the scheme can ensure the controllable sharing of energy data under the largescale access control strategy.

Key words: zero trust, blockchain, data sharing, access control, energy data classification

中图分类号: