Towards Domain-Specific and Privacy-Preserving Qualified eID in a User-Centric Identity Model

Thomas Lenz, Vesna Krnjic

Research output: Chapter in Book/Report/Conference proceedingConference paperpeer-review

Abstract

Unique and qualified identification is essential in numerous security-critical areas, like eGovernment, or eBusiness. Therefore, many countries have already deployed eID solutions to confirm identity information of entities and to increase trust into the identity information. Many of these confirmation solutions only support an all-or-nothing disclosure, which means that selective disclosure of single attributes is not possible. Some other work has dealt with this privacy issue by using anonymous credentials or malleable signatures. However, all of these solutions lacks in flexible generation of qualified and provable pseudonyms that based on confirmed eID information. In this paper, we propose an advanced and lightweight model for user-centric and qualified identity information that facilitates selective disclosure and domain-specific altering of single identity attributes in order to protect the citizen's privacy. We illustrate the practical applicability of our model by implementing all components as prototype applications. Finally, we evaluate our model and compare it with other approaches for selective disclosure.
Original languageEnglish
Title of host publication2018 17th IEEE International Conference On Trust, Security And Privacy In Computing And Communications/ 12th IEEE International Conference On Big Data Science And Engineering (TrustCom/BigDataSE)
PublisherIEEE Computer Society
Pages1157-1163
ISBN (Electronic)978-1-5386-4388-4
ISBN (Print)978-1-5386-4389-1
DOIs
Publication statusPublished - 6 Sept 2018
Event17th IEEE International Conference on Trust, Security and Privacy in Computing and Communications and 12th IEEE International Conference on Big Data Science and Engineering: Trustcom/BigDataSE 2018 - New York, United States
Duration: 31 Jul 20183 Aug 2018

Conference

Conference17th IEEE International Conference on Trust, Security and Privacy in Computing and Communications and 12th IEEE International Conference on Big Data Science and Engineering
Country/TerritoryUnited States
CityNew York
Period31/07/183/08/18

Keywords

  • privacy
  • Digital signatures
  • Smart devices
  • Cryptography
  • Stakeholders
  • authentication
  • Data models

Fingerprint

Dive into the research topics of 'Towards Domain-Specific and Privacy-Preserving Qualified eID in a User-Centric Identity Model'. Together they form a unique fingerprint.

Cite this