| 研究生: |
張芸禎 Chang, Yun-Chen |
|---|---|
| 論文名稱: |
基於身分基底之階層式數位錢包與金鑰絕緣多重簽密法研究:以國際醫療服務為例 A Study of Identity-Based Hierarchical Digital Wallets and Key-Insulated Multi-Signcryption for International Medical Services |
| 指導教授: |
左瑞麟
Tso, Ray-Lin 許建隆 Hsu, Chien-Lung |
| 口試委員: |
高大宇
Kao, Da-yu 許見章 Hsu,Chien-Chang 黃正達 Huang, Cheng-Ta |
| 學位類別: |
碩士
Master |
| 系所名稱: |
資訊學院 - 資訊安全碩士學位學程 Master Program in Information Security |
| 論文出版年: | 2026 |
| 畢業學年度: | 114 |
| 語文別: | 英文 |
| 論文頁數: | 108 |
| 中文關鍵詞: | 數位皮夾 、階層式 、簽密法 、可驗證憑證 、去中心化身分 |
| 外文關鍵詞: | Digital Wallet, Hierarchical, Signcryption, Verifiable Credentials (VC), Decentralized Identity (DID) |
| 相關次數: | 點閱:19 下載:0 |
| 分享至: |
| 查詢本校圖書館目錄 查詢臺灣博碩士論文知識加值系統 勘誤回報 |
隨著數位轉型的加速,跨國醫療憑證的驗證已成為全球醫療產業 的關鍵需求。歐洲區塊鏈服務基礎設施(EBSI)雖提供了基於去中心 化識別碼(DID)與可驗證憑證(VC)的信任鏈模型,但其現行架構 高度依賴即時的區塊鏈查詢以驗證信任關係,導致系統無法在離線環 境下運作,且維護中心化白名單的成本過高。為此,本論文提出兩項機制。第一,提出身分基礎階層式數位錢包與金鑰產生架構,將主管機關至使用者的授權關係嵌入信任鏈,無須即時查詢鏈上名單即可驗證憑證來源,支援離線驗證並提升擴充性。第二,提出具金鑰絕緣之多方簽密稽核機制,確保醫療服務與資料授權經醫生、病人雙方同意,結合 IPFS 鏈下保存與區塊鏈鏈上索引,雙方皆能授權稽核者存取,以維護資料機密、完整與多方不可否認性。本研究可協助境外醫療機構於網路受限時驗證憑證,並於跨國醫療爭議、保險審查或合規稽核時,提供由病患控制揭露範圍、具醫病共同責任歸屬的可信證據。
With the acceleration of digital transformation, the verification of cross-border medical credentials has become a critical requirement in the global healthcare industry. Although the European Blockchain Services Infrastructure (EBSI) provides a trust chain model based on Decentralized Identifiers (DIDs) and Verifiable Credentials (VCs), its current architecture relies heavily on real-time blockchain queries to verify trust relationships. This dependency prevents the system from operating in offline environments and incurs excessive costs for maintaining centralized whitelists. To address these challenges, this thesis proposes two mechanisms. First, an identity-based hierarchical digital wallet and key generation architecture is proposed. By embedding the authorization relationships—from competent authorities down to end-users—into the trust chain, this architecture allows verifiers to authenticate credential sources without real-time queries to on-chain registries, thereby supporting offline verification and enhancing scalability. Second, a key-insulated multi-party signcryption auditing mechanism is proposed to ensure that medical services and data authorizations are mutually agreed upon by both the doctor and the patient. By integrating off-chain storage via IPFS with on-chain indexing via blockchain, both parties can authorize designated auditors to access the records, which maintains data confidentiality, integrity, and multi-party non-repudiation.
This research can assist overseas medical institutions in verifying credentials under network constraints. Furthermore, in the event of cross-border medical disputes, insurance reviews, or compliance audits, it provides trusted evidence featuring joint doctor-patient accountability and patient-controlled selective disclosure.
致謝 i
摘要 ii
Abstract iii
List of Figures vii
List of Tables viii
1 Introduction 1
1.1 Motivation 4
1.2 Contribution 6
2 Related Work 9
2.1 Digital Wallet Applications 9
2.2 Decentralized Identifiers 10
2.3 Verifiable Credentials 12
2.4 Convertible Multi-Authenticated Encryption with Key Insulation 14
2.5 Key-insulation 20
3 Hierarchical Digital Wallet Architecture 24
3.1 Research Problem and Related Work 24
3.2 System Model and Architecture 24
3.3 System Function Definitions 25
3.4 The Proposed Protocol 27
3.5 Case Study 38
3.6 Comparative Analysis with Related Literature 41
4 Multi-Signature Signcryption Scheme for Digital Wallets 47
4.1 Research Problem and Related Work 47
4.2 System Model and Architecture 49
4.3 System Function Definitions 50
4.4 The Proposed Protocol 54
4.5 Case Study 63
4.6 Comparative Analysis with Related Work 68
5 Analysis and Discussion 73
5.1 Security Analysis 73
5.2 Security Analysis of the Hierarchical Key Generation Architecture 75
5.3 Security Analysis of the Key-Insulated Multi-Signcryption Scheme 82
6 Conclusion and Future Work 89
6.1 Conclusion 89
6.2 Future Work 90
Reference 92
Appendix 1: ProVerif code for Hierarchical Digital Wallet Architecture 97
Appendix 2: AVISPA code for Hierarchical Digital Wallet Architecture 99
Appendix 3: ProVerif code for Multi-Signature Signcryption Scheme for Digital Wallets 102
Appendix 4: AVISPA code for Multi-Signature Signcryption Scheme for Digital Wallets 105
[1] World Wide Web Consortium (W3C). Decentralized identifiers (dids) v1.0. https://www.w3.org/TR/did-core/, 19, July, 2022.
[2] Van Roijen, Danny. The European Digital Identity Wallet: A Healthcare Perspective. Blockchain in Healthcare Today, vol. 7, 2024.
[3] Junli Fang, Tao Feng, Xian Guo, Xusheng Wang. Privacy-Enhanced Distributed Revocable Identity Management Scheme Based Self-Sovereign Identity. Journal of Cloud Computing, vol. 13, article no. 715-8, 2024.
[4] Aviral Goel, Yogachandran Rahulamathavan. A Comparative Survey of Centralised and Decentralised Identity Management Systems: Analysing Scalability, Security, and Feasibility. Future Internet, vol. 17, 2024.
[5] World Wide Web Consortium (W3C). Verifiable credentials data model v2.0. https://www.w3.org/TR/vc-data-model-2.0/, 19, December, 2024.
[6] World Wide Web Consortium (W3C). Decentralized identifiers (dids) v1.1. https://www.w3.org/TR/did-1.1/, 05, March, 2026.
[7] M. Allende López. Self-Sovereign Identity: The Future of Identity: Self-Sovereignty, Digital Wallets, and Blockchain. Inter-American Development Bank (IADB) Publication, 2020.
[8] Sanae Seidi, Abderrahim Abdellaoui. Securing and Ensuring the Confidentiality of Medical Data in the Era of Decentralized Technologies: A Blockchain and Self-Sovereign Identity-Based Approach, Journal of Network and Systems Management, 33, (4), 81, 2025.
[10] Carlo Mazzocca, Abbas Acar, Selcuk Uluagac, Rebecca Montanari, Paolo Bellavista, Mauro Conti. A Survey on Decentralized Identifiers and Verifiable Credentials, JOURNAL OF LATEX CLASS FILES, vol. 14, 2021.
[11] Kushwah, Prashant, and Sunder Lal. Efficient Identity based Public Verifiable Signcryption Scheme. International Journal of Computer Science and Technology (IJCST), vol. 2, no. 3, pp. 513-518, 2011.
[12] Emmanouil Koukoularis, Vasileios Markopoulos, and Nikos Voutsinas. A self-sovereign way to exchange educational credentials. Proceedings of European Uni-versity, 95:311-319, 2023.
[13] Comandè, Giovanni, and Varilek. The Many Features Which Make the eIDAS 2 Digital Wallet Either Risky or the Ideal Vehicle for the Transition to Post-Quantum Encryption. Computer Law & Security Review, vol. 54, 2024.
[14] Sedlmeir, Johannes, Tom Barbereau, Jasmin Huber, Linda Weigl, and Tamara Roth. Transition Pathways towards Design Principles of Self-Sovereign Identity. Proceedings of the 43rd International Conference on Information Systems (ICIS 2022), Copenhagen, Denmark, 2022.
[15] Degen, Konrad, and Timm Teubner. Wallet Wars or Digital Public Infrastructure? Orchestrating a Digital Identity Data Ecosystem from a Government Perspective. Electronic Markets, vol. 34, no. 1, pp. 1-25, 2024.
[16] CD Nassar Kyriakidou, AM Papathanasiou, I Pittaras, N Fotiou, Thomas, andGCPolyzos. Attribute-based access control utilizing verifiable credentials for multi-systems. In 2024 IEEE 4th International Conference on Elecinications, Internet of Things and Big Data ICEIB), pages 57-62, IEEE, 2024.
[17] Frederico Schardong, Ricardo Custódi. Self-Sovereign Identity: A Systematic Review, Mapping and Taxonomy. Sensors, vol. 22, no. 15, p. 5641, 2022.
[18] Pöhn, Daniela, Michael Grabatin, and Wolfgang Hommel. Analyzing the Threats to Blockchain-Based Self-Sovereign Identities by Conducting a Literature Survey. Applied Sciences, vol. 14, no. 1, article no. 139, 2024.
[19] Tan, Evrim, Ellen Lerouge, Jan Du Caju, and Daniël Du Seuil. Verification of Education Credentials on European Blockchain Services Infrastructure (EBSI): Action Research in a Cross-Border Use Case between Belgium and Italy. Big Data and Cognitive Computing, vol. 7, no. 2, article no. 79, 2023.
[20] Harrell, Daniel Toshio, et al. Technical Design and Development of a Self-Sovereign Identity Management Platform for Patient-Centric Health Care Using Blockchain Technology. Blockchain in Healthcare Today, vol. 5, 2022.
[21] European Commission. European blockchain services infrastructure. https://digital-strategy.ec.europa.eu/en/policies/european-blockchain-services-infrastructure, 29 April 2025.
[22] Mazzocca, Carlo, Abbas Acar, Selcuk Uluagac, Rebecca Montanari, Paolo Bellavista, and Mauro Conti. A Survey on Decentralized Identifiers and Verifiable Credentials. IEEE Communications Surveys & Tutorials, vol. 27, no. 6, pp. 3641-3672, 2025.
[23] Dzurenda, Petr, Sara Ricci, Patrik Ilgner, Lukas Malina, and Cristina Anglès-Tafalla. Privacy-Preserving Solution for European Union Digital Vaccine Certificates. Applied Sciences, vol. 13, no. 19, article no. 10986, 2023.
[24] Zhan, Wanbing, Chin-Ling Chen, Wei Weng, Woei-Jiunn Tsaur, Zi-Yi Lim, and Yong-Yuan Deng. Incentive EMR Sharing System Based on Consortium Blockchain and IPFS. Healthcare, vol. 10, no. 10, article no. 1840, 2022.
[25] Ibrahim Tariq Javed, Fares Alharbi, Badr Bellaj, Tiziana Margaria, Noel Crespi and Kashif Naseer Qureshi. Health-ID: A Blockchain-Based Decentralized Identity Management for Remote Healthcare. Healthcare, vol. 9, no. 6, p. 712, 2021.
[26] Lemieux, Victoria L., Artemij Voskobojnikov, and Meng-Chow Kang. Addressing Audit and Accountability Issues in Self-Sovereign Identity Blockchain Systems Using Archival Science Principles. Proceedings of the 45th IEEE Annual Computers, Software, and Applications Conference (COMPSAC 2021), pp. 1210-1216, 2021.
[27] Naghmouchi, Montassar, Maryline Laurent, Claire Levallois-Barth, and Nesrine Kaaniche. Comparative Analysis of Technical and Legal Frameworks of Various National Digital Identity Solutions. arXiv preprint arXiv:2310.01006, 2023.
[28] Zhou, Lu, Abebe Diro, Akanksha Saini, Shahriar Kaisar, and Pham Cong Hiep. Leveraging Zero-Knowledge Proofs for Blockchain-Based Identity Sharing: A Survey of Advancements, Challenges and Opportunities. Journal of Information Security and Applications, vol. 80, article no. 103678, 2024.
[29] Hsu, Chien-Lung., and Han-Yu Lin. New Identity-based Key-insulated Convertible Multi-Authenticated Encryption Scheme. Journal of Network and Computer Applications, Vol 34, Issue 5, pp 1724-1731, 2011.
[30] Dodis, Y., Katz, J., Xu, S., Yung, M. Key-Insulated Public Key Cryptosystems. Lecture Notes in Computer Science, Vol 2332, pp 65-82, 2002.
[31] Dodis, Y., Katz, J., Xu, S., Yung, M. Strong Key-Insulated Signature Schemes. Lecture Notes in Computer Science, Vol 2567, pp 130-144, 2003.
[32] Libert, B., Quisquater, J.J., and Yung, M. Parallel Key-Insulated Public Key Encryption without Random Oracles. in 10th International Conference on Theory and Practice in Public-Key Cryptography (PKC 2007), China (Beijing), pp. 298-314, 2007.
[33] Hanaoka Y, Hanaoka G, Shikata J, Imai H. Identity-Based Hierarchical Strongly Key-Insulated Encryption and Its Application. In: Proceedings of the Advances in Cryptology—ASIACRYPT’05. Berlin: Springer-Verlag, pp. 495-514, 2005.
[34] Zhou, Y., Cao, Z., & Chai, Z. Identity Based Key Insulated Signature. In: Proceedings of the ISPEC 2006, Lecture Notes on Computer Science, Berlin: Springer-Verlag, Vol. 3903, pp. 226-234, 2006.
[35] Hanaoka, G., Hanaoka, Y., and Imai, H. Parallel Key-Insulated Public Key Encryption. In Public Key Cryptography-PKC 2006: 9th International Conference on Theory and Practice in Public-Key Cryptography, New York, Vol.9, pp. 105-122, 2006.
[36] Weng J, Liu S, Chen K, Zheng D, Qiu W., “Identity-Based Threshold Key-Insulated Encryption without Random Oracles,” In Cryptographers’ Track at The RSA Conference, Berlin: Springer-Verlag, Vol. 4964, pp. 203-220, 2008.
[37] Yu, C. W., Tseng, Y. M., and Wu, T. Y., “A new key-insulated signature and its novel application,” In: Proceedings of cryptology and information security conference (CISC 2010), Taiwan, 2010.
[38] He, Wei-Hua. On the Design of Signcryption Schemes. Master's thesis, Department of Computer Science and Information Engineering, National Taiwan University of Science and Technology, Taipei, Taiwan, 2000.
[39] European Commission. The European Digital Identity Wallet Architecture and Reference Framework. eu-digital-identity-wallet GitHub repository, 2023–2025.
[40] eu-digital-identity-wallet.github.io. Architecture and Reference Framework. version 2.5.0, 2025.
全文公開日期 2031/08/25