论文标题
具有被动RFID标签和区块链的物流信息的真实性证明
Proof of Authenticity of Logistics Information with Passive RFID Tags and Blockchain
论文作者
论文摘要
在追踪大量商品的(机器人自动化)物流时,出于成本原因而优先使用廉价的被动RFID标签。因此,此类标签和读者之间的安全性主要是在许多RFID问题中研究的。但是,如果物流服务可以提供虚假信息,则无法保证数据的真实性。尽管经常讨论区块链的使用,但这只是一个录制系统,因此有可能写入错误记录的风险。 作为解决方案,我们提出了一种设计,其中一个数字签名,位置约束和篡改的读者原子上写了一个证据,以及其读取和编写标签。 通过半正式建模,我们确认信息的机密性和完整性可以在整个系统中维护,并且尽管有可能妥协私钥或签名算法或公共密钥证书到期,但可以在以后进行数字签名的数据。我们还引入了原型设计,以表明我们的建议是可行的。 这使得可以使用廉价的被动RFID标签跟踪真实的物流信息。此外,通过将读者/作者作为传感器/执行器抽象,该模型一般可以扩展到IoT。
In tracing the (robotically automated) logistics of large quantities of goods, inexpensive passive RFID tags are preferred for cost reasons. Accordingly, security between such tags and readers have primarily been studied among many issues of RFID. However, the authenticity of data cannot be guaranteed if logistics services can give false information. Although the use of blockchain is often discussed, it is simply a recording system, so there is a risk that false records may be written to it. As a solution, we propose a design in which a digitally signing, location-constrained and tamper-evident reader atomically writes an evidence to blockchain along with its reading and writing a tag. By semi-formal modeling, we confirmed that the confidentiality and integrity of the information can be maintained throughout the system, and digitally signed data can be verified later despite possible compromise of private keys or signature algorithms, or expiration of public key certificates. We also introduce a prototype design to show that our proposal is viable. This makes it possible to trace authentic logistics information using inexpensive passive RFID tags. Furthermore, by abstracting the reader/writer as a sensor/actuator, this model can be extended to IoT in general.