arXivDaily arXiv每日学术速递 周一至周五更新
arXiv周末暂无论文更新,休息一下吧,周末愉快~~
arXiv 2607.10747cs.CRcs.CY

一种以验证者为中心的数字凭证生态系统概念模型

A Verifier-Centric Conceptual Model for Digital Credential Ecosystems

Shigeya Suzuki, Ryosuke Abe

首次发表
浏览论文内容

中文总结 AI 辅助

研究数字凭证生态系统互不兼容问题,提出以验证者为中心的概念模型,该模型基于两种分解,能解释互操作性失败等问题,应用于学习者凭证栈和现有生态系统,揭示了逐个元素比较未解决的多种问题。

中文摘要 AI 辅助

数字凭证生态系统越来越多地整合多种标准。由于跨司法管辖区和应用领域的实施是独立发展的,通常带有“数字凭证”这一共同标签的系统仍互不兼容。传统对标识符、数据模型、凭证格式、协议和签名算法逐个元素的比较,既无法解释即便栈共享数据模型时互操作性为何失败,也无法确定验证者在接受凭证前必须获取和信任什么。我们提出了一个基于两种分解的以验证者为中心的概念模型。第一种将凭证处理分为签名验证(L1)、语义解释(L2)和验证(L3),并通过两个正交平面为支持材料建模:宪法平面,它捕获生态系统层面的安排和信任声明;物流平面,它捕获验证材料的存储和交付方式;Shinken框架使所有五个功能中的信任假设明确化。第二种沿三个维度(放置、时间和披露)描述每个功能可能的位置。从可验证的条件出发,该模型得出七个结果,分为定义性推论、操作影响和设计权衡。将该模型应用于四个学习者凭证栈和包括认证联盟在内的现有生态系统,我们表明它解释了逐个元素比较未解决的互操作性失败、验证者端负担、离线可验证性、隐私影响和术语模糊性。

英文摘要

Digital credential ecosystems increasingly combine multiple standards. Because implementations have evolved independently across jurisdictions and application domains, systems described under the common label ``digital credential'' often remain mutually non-interoperable. Conventional element-by-element comparisons of identifiers, data models, credential formats, protocols, and signature algorithms do not explain why interoperability fails even when stacks share a data model, nor do they identify what a verifier must obtain, and what it must trust, before accepting a credential. We present a verifier-centric conceptual model built on two decompositions. The first separates credential processing into signature verification (L1), semantic interpretation (L2), and validation (L3), and models the supporting materials through two orthogonal planes: Constitution, which captures ecosystem-level arrangements and trust declarations, and Logistics, which captures how verification materials are stored and delivered; the Shinken framework makes trust assumptions explicit across all five functions. The second characterizes where each function may be placed along three dimensions (placement, timing, and disclosure). From the condition of being verifiable, the model derives seven consequences, distinguished as definitional corollaries, operational implications, and design trade-offs. Applying the model to four learner-credential stacks and to existing ecosystems including authentication federations, we show that it explains interoperability failures, verifier-side burden, offline verifiability, privacy implications, and terminological ambiguities that element-wise comparison leaves unresolved.

发表机构

  • Global Research Institute, Keio University(庆应义塾大学全球研究院)
  • Japan Advanced Institute of Science and Technology(日本科学技术高等学院)

机构由 AI 辅助整理,请以论文原文为准。

补充信息

↑