| 本文已被:浏览 818次 下载 1143次 |
 码上扫一扫! |
|
|
| 面向联盟链的智能合约行为可信验证机制 |
|
张建标1,2, 康双1,2, 张兆乾3, 刘德田1,2
|
|
1.北京工业大学 计算机学院, 北京 100124;2.可信计算北京市重点实验室, 北京 100124;3.中国长江三峡集团有限公司 科学技术研究院, 北京 100038
|
|
| 摘要: |
| 针对联盟链系统中恶意攻击者利用智能合约中的安全漏洞带来的行为不可信问题, 提出一种面向联盟链的智能合约行为可信验证机制对合约行为完整性进行可信验证. 首先以系统调用作为最小行为单元, 以基于系统调用的行为序列描述历史行为状态, 然后在确保合约代码发布和执行环境可信的前提下, 在合约运行时根据预期行为规则进行可信验证, 最后对该机制进行了理论分析, 并在Hyperledger Fabric环境下进行实验评估. 结果表明, 该方法能够有效实现对智能合约行为的可信验证, 能够保障智能合约生命周期内的行为可信. |
| 关键词: 联盟链 智能合约 可信验证 主动度量 |
| DOI:10.13328/j.cnki.jos.007311 |
| 分类号:TP311 |
| 基金项目:北京市自然科学基金(M21039) |
|
| Trusted Verification Mechanism of Smart Contract Behaviour for Consortium Blockchain |
|
ZHANG Jian-Biao1,2, KANG Shuang1,2, ZHANG Zhao-Qian3, LIU De-Tian1,2
|
|
1.College of Computer Science, Beijing University of Technology, Beijing 100124, China;2.Beijing Key Laboratory of Trusted Computing, Beijing 100124, China;3.Institute of Science and Technology, China Three Gorges Corporation, Beijing 100038, China
|
| Abstract: |
| To address the issue of untrustworthy behaviors resulting from malicious attackers exploiting security vulnerabilities within smart contracts in the consortium blockchain system, this study introduces a trusted verification mechanism of smart contract behavior for consortium blockchain to conduct trusted verification for contract behavior integrity. Firstly, the proposed approach takes the system call as the smallest behavior unit and describes the historical behavioral state with the behavior sequence based on system calls. Subsequently, on the premise of ensuring the trustworthiness of contract code release and the execution environment, it performs trusted verification according to predefined behavioral rules during contract execution. Finally, a theoretical analysis of this mechanism is carried out, and an experimental evaluation is conducted in the Hyperledger Fabric environment. Results demonstrate that the proposed method can effectively achieve the trusted verification of smart contract behavior and ensure the credibility of behavior within the life cycle of smart contracts. |
| Key words: consortium blockchain smart contract trusted verification active measurement |