%0 Conference Proceedings %T Blockchain Based Access Control %+ University of Pisa - Università di Pisa %+ Istituto di Informatica e Telematica (IIT-CNR) %A Di Francesco Maesa, Damiano %A Mori, Paolo %A Ricci, Laura %Z Part 5: Making Things Safe (Security) %< avec comité de lecture %( Lecture Notes in Computer Science %B 17th IFIP International Conference on Distributed Applications and Interoperable Systems (DAIS) %C Neuchâtel, Switzerland %Y Lydia Y. Chen %Y Hans Reiser %I Springer International Publishing %3 Distributed Applications and Interoperable Systems %V LNCS-10320 %P 206-220 %8 2017-06-19 %D 2017 %R 10.1007/978-3-319-59665-5_15 %K Bitcoin %K Blockchain %K Access control %K XACML %Z Computer Science [cs] %Z Computer Science [cs]/Networking and Internet Architecture [cs.NI]Conference papers %X Access Control systems are used in computer security to regulate the access to critical or valuable resources. The rights of subjects to access such resources are typically expressed through access control policies, which are evaluated at access request time against the current access context. This paper proposes a new approach based on blockchain technology to publish the policies expressing the right to access a resource and to allow the distributed transfer of such right among users. In our proposed protocol the policies and the rights exchanges are publicly visible on the blockchain, consequently any user can know at any time the policy paired with a resource and the subjects who currently have the rights to access the resource. This solution allows distributed auditability, preventing a party from fraudulently denying the rights granted by an enforceable policy. We also show a possible working implementation based on XACML policies, deployed on the Bitcoin blockchain. %G English %Z TC 6 %Z WG 6.1 %2 https://inria.hal.science/hal-01800124/document %2 https://inria.hal.science/hal-01800124/file/450046_1_En_15_Chapter.pdf %L hal-01800124 %U https://inria.hal.science/hal-01800124 %~ IFIP-LNCS %~ IFIP %~ IFIP-TC %~ IFIP-WG %~ IFIP-TC6 %~ IFIP-WG6-1 %~ IFIP-DAIS %~ IFIP-DISCOTEC %~ IFIP-LNCS-10320