A Decentralized Self-Sovereign-Identity Management and On-Boarding Framework for Industrial IoT Environment

Tafseer Akhtar, Ilias Politis · 2025

Traditional web authentication relies heavily on passwords, a known vulnerability exposing online ecosystems to risks like phishing and credential reuse. As web services proliferate, users struggle to manage credentials securely, exacerbating these threats. Passwordless solutions (e.g., FIDO2) and multi-factor authentication (MFA) mitigate some issues but often depend on centralized identity providers (IdPs) or federated systems, enabling user profiling and clashing with privacy regulations like GDPR. Self-Sovereign Identity (SSI) offers a user-centric alternative, decentralizing credential control. We propose an attribute-based authentication and authorization framework leveraging the Hyperledger Identus (HI) cloud agent, integrated with KeyCloak and KRS. This enables selective attribute disclosure without raw data exposure, aligning with SSI principles and privacy-by-design mandates, ensuring compliance while eliminating reliance on central authorities.

Read the paper · More papers on PaperTik