Open Access System for Information Sharing

Login Library

 

Thesis
Cited 0 time in webofscience Cited 0 time in scopus
Metadata Downloads
Full metadata record
Files in This Item:
There are no files associated with this item.
DC FieldValueLanguage
dc.contributor.author홍상원-
dc.date.accessioned2022-03-29T03:46:27Z-
dc.date.available2022-03-29T03:46:27Z-
dc.date.issued2021-
dc.identifier.otherOAK-2015-09247-
dc.identifier.urihttp://postech.dcollection.net/common/orgView/200000372539ko_KR
dc.identifier.urihttps://oasis.postech.ac.kr/handle/2014.oak/112052-
dc.descriptionMaster-
dc.description.abstractAuthorization problems deal with how to give third parties access to specific resources. OAuth 2.0 is an open standard protocol for authorization that is widely used in industry. OAuth 2.0 enables a resource owner, i.e. a user, to grant a client access to user resources without disclosing his user credentials. However, OAuth 2.0 has several problems: (1) it is complicated to meet security requirements because so many parts in the OAuth 2.0 core specification, i.e. RFC 6749, are left optional for flexibility; (2) it depends on centralized authorization servers, e.g. Google, Facebook or Yahoo, so that if authorization servers are compromised, the compromise cascades throughout clients; (3) it is inefficient because a user should grant each client access to the same resources every time. Moreover, there are strong trends to strengthen user sovereignty over user resources such as GDPR (General Data Protection Regulation) and SSI (Self-Sovereign Identity). In this thesis, we propose DOAuth 2.0, a decentralized authorization protocol that applies blockchain technology to OAuth 2.0. It is shown that DOAuth 2.0 solves the problems of OAuth 2.0 while keeping the open standard of OAuth 2.0. In addition, DOAuth 2.0 fits well with the current trends to strengthen user sovereignty over user resources.-
dc.languageeng-
dc.publisher포항공과대학교-
dc.titleDOAuth 2.0: A Decentralized Authorization Protocol based on OAuth 2.0-
dc.title.alternativeDOAuth 2.0: OAuth 2.0 기반 분산형 인가 프로토콜-
dc.typeThesis-
dc.contributor.college일반대학원 컴퓨터공학과-
dc.date.degree2021- 2-

qr_code

  • mendeley

Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.

Views & Downloads

Browse