Ecoer Logo

@bigchaindb

25

The blockchain database

steemit.com/@bigchaindb
VOTING POWER100.00%
DOWNVOTE POWER100.00%
RESOURCE CREDITS100.00%
REPUTATION PROGRESS0.00%
Net Worth
0.263USD
STEEM
0.806STEEM
SBD
0.000SBD
Own SP
3.736SP

Detailed Balance

STEEM
balance
0.806STEEM
market_balance
0.000STEEM
savings_balance
0.000STEEM
reward_steem_balance
0.000STEEM
STEEM POWER
Own SP
3.736SP
Delegated Out
0.000SP
Delegation In
0.000SP
Effective Power
3.736SP
Reward SP (pending)
0.000SP
SBD
sbd_balance
0.000SBD
sbd_conversions
0.000SBD
sbd_market_balance
0.000SBD
savings_sbd_balance
0.000SBD
reward_sbd_balance
0.000SBD
{
  "balance": "0.806 STEEM",
  "savings_balance": "0.000 STEEM",
  "reward_steem_balance": "0.000 STEEM",
  "vesting_shares": "6075.690847 VESTS",
  "delegated_vesting_shares": "0.000000 VESTS",
  "received_vesting_shares": "0.000000 VESTS",
  "sbd_balance": "0.000 SBD",
  "savings_sbd_balance": "0.000 SBD",
  "reward_sbd_balance": "0.000 SBD",
  "conversions": []
}

Account Info

namebigchaindb
id1108562
rank852,729
reputation1902396
created2018-08-14T22:19:12
recovery_accountblocktrades
proxyNone
post_count1
comment_count0
lifetime_vote_count0
witnesses_voted_for0
last_post2018-08-20T13:43:12
last_root_post2018-08-20T13:43:12
last_vote_time1970-01-01T00:00:00
proxied_vsf_votes0, 0, 0, 0
can_vote1
voting_power10,000
delayed_votes0
balance0.806 STEEM
savings_balance0.000 STEEM
sbd_balance0.000 SBD
savings_sbd_balance0.000 SBD
vesting_shares6075.690847 VESTS
delegated_vesting_shares0.000000 VESTS
received_vesting_shares0.000000 VESTS
reward_vesting_balance0.000000 VESTS
vesting_balance0.000 STEEM
vesting_withdraw_rate0.000000 VESTS
next_vesting_withdrawal1969-12-31T23:59:59
withdrawn0
to_withdraw0
withdraw_routes0
savings_withdraw_requests0
last_account_recovery1970-01-01T00:00:00
reset_accountnull
last_owner_update1970-01-01T00:00:00
last_account_update2018-08-16T12:06:09
minedNo
sbd_seconds0
sbd_last_interest_payment1970-01-01T00:00:00
savings_sbd_last_interest_payment1970-01-01T00:00:00
{
  "id": 1108562,
  "name": "bigchaindb",
  "owner": {
    "weight_threshold": 1,
    "account_auths": [],
    "key_auths": [
      [
        "STM5y9niu57WH1egWufDHfW2ocx5faF83RngzPM8bKpWB2ZPQi4Dm",
        1
      ]
    ]
  },
  "active": {
    "weight_threshold": 1,
    "account_auths": [],
    "key_auths": [
      [
        "STM5j1h3GAETRhRZViw2W23S7iRaa1kTwP2Lk1VeMEp79J35AjyDZ",
        1
      ]
    ]
  },
  "posting": {
    "weight_threshold": 1,
    "account_auths": [],
    "key_auths": [
      [
        "STM5fmCb1myt2BpQBnA4SQL1XMApoWRhq6znuxdQVorVvq1k4Kf6a",
        1
      ]
    ]
  },
  "memo_key": "STM5M77QKaGAStFx3r6r6ER1vTZ1fg7NCG3N4tUCBJaAw7t2dDrt3",
  "json_metadata": "{\"profile\":{\"name\":\"BigchainDB\",\"about\":\"The blockchain database \",\"location\":\"Berlin, Germany \",\"website\":\"https://www.bigchaindb.com/\",\"profile_image\":\"https://cdn.steemitimages.com/DQmQD17oh3wb2V8o4SjNDa3y2GWgUo4tTVNvbjmJwacJbEd/BDB%20icon%20original%201200x1200.jpg\",\"cover_image\":\"https://cdn.steemitimages.com/DQmYTPN2BsCBaebZdygnQBRd1q7HJb1ocYg4DEnEdrdXiDb/BigchaindDB%20key%20visual%20background%202000x1336%20(1).jpg\"}}",
  "posting_json_metadata": "{\"profile\":{\"name\":\"BigchainDB\",\"about\":\"The blockchain database \",\"location\":\"Berlin, Germany \",\"website\":\"https://www.bigchaindb.com/\",\"profile_image\":\"https://cdn.steemitimages.com/DQmQD17oh3wb2V8o4SjNDa3y2GWgUo4tTVNvbjmJwacJbEd/BDB%20icon%20original%201200x1200.jpg\",\"cover_image\":\"https://cdn.steemitimages.com/DQmYTPN2BsCBaebZdygnQBRd1q7HJb1ocYg4DEnEdrdXiDb/BigchaindDB%20key%20visual%20background%202000x1336%20(1).jpg\"}}",
  "proxy": "",
  "last_owner_update": "1970-01-01T00:00:00",
  "last_account_update": "2018-08-16T12:06:09",
  "created": "2018-08-14T22:19:12",
  "mined": false,
  "recovery_account": "blocktrades",
  "last_account_recovery": "1970-01-01T00:00:00",
  "reset_account": "null",
  "comment_count": 0,
  "lifetime_vote_count": 0,
  "post_count": 1,
  "can_vote": true,
  "voting_manabar": {
    "current_mana": 10000,
    "last_update_time": 1534285152
  },
  "downvote_manabar": {
    "current_mana": 0,
    "last_update_time": 1534285152
  },
  "voting_power": 10000,
  "balance": "0.806 STEEM",
  "savings_balance": "0.000 STEEM",
  "sbd_balance": "0.000 SBD",
  "sbd_seconds": "0",
  "sbd_seconds_last_update": "1970-01-01T00:00:00",
  "sbd_last_interest_payment": "1970-01-01T00:00:00",
  "savings_sbd_balance": "0.000 SBD",
  "savings_sbd_seconds": "0",
  "savings_sbd_seconds_last_update": "1970-01-01T00:00:00",
  "savings_sbd_last_interest_payment": "1970-01-01T00:00:00",
  "savings_withdraw_requests": 0,
  "reward_sbd_balance": "0.000 SBD",
  "reward_steem_balance": "0.000 STEEM",
  "reward_vesting_balance": "0.000000 VESTS",
  "reward_vesting_steem": "0.000 STEEM",
  "vesting_shares": "6075.690847 VESTS",
  "delegated_vesting_shares": "0.000000 VESTS",
  "received_vesting_shares": "0.000000 VESTS",
  "vesting_withdraw_rate": "0.000000 VESTS",
  "next_vesting_withdrawal": "1969-12-31T23:59:59",
  "withdrawn": 0,
  "to_withdraw": 0,
  "withdraw_routes": 0,
  "curation_rewards": 0,
  "posting_rewards": 0,
  "proxied_vsf_votes": [
    0,
    0,
    0,
    0
  ],
  "witnesses_voted_for": 0,
  "last_post": "2018-08-20T13:43:12",
  "last_root_post": "2018-08-20T13:43:12",
  "last_vote_time": "1970-01-01T00:00:00",
  "post_bandwidth": 0,
  "pending_claimed_accounts": 0,
  "vesting_balance": "0.000 STEEM",
  "reputation": 1902396,
  "transfer_history": [],
  "market_history": [],
  "post_history": [],
  "vote_history": [],
  "other_history": [],
  "witness_votes": [],
  "tags_usage": [],
  "guest_bloggers": [],
  "rank": 852729
}

Withdraw Routes

IncomingOutgoing
Empty
Empty
{
  "incoming": [],
  "outgoing": []
}
From Date
To Date
2019/08/14 23:01:09
authorsteemitboard
bodyCongratulations @bigchaindb! You received a personal award! <table><tr><td>https://steemitimages.com/70x70/http://steemitboard.com/@bigchaindb/birthday1.png</td><td>Happy Birthday! - You are on the Steem blockchain for 1 year!</td></tr></table> <sub>_You can view [your badges on your Steem Board](https://steemitboard.com/@bigchaindb) and compare to others on the [Steem Ranking](https://steemitboard.com/ranking/index.php?name=bigchaindb)_</sub> ###### [Vote for @Steemitboard as a witness](https://v2.steemconnect.com/sign/account-witness-vote?witness=steemitboard&approve=1) to get one more award and increased upvotes!
json metadata{"image":["https://steemitboard.com/img/notify.png"]}
parent authorbigchaindb
parent permlinkcertified-for-life-decentralized-diploma-management-system-a-solution-envisioning-report-prepared-by-bigchaindb-consulting-for
permlinksteemitboard-notify-bigchaindb-20190814t230108000z
title
Transaction InfoBlock #35557611/Trx ea39030a0a3d65bf581b6e8839727c1b295e38ee
View Raw JSON Data
{
  "block": 35557611,
  "op": [
    "comment",
    {
      "author": "steemitboard",
      "body": "Congratulations @bigchaindb! You received a personal award!\n\n<table><tr><td>https://steemitimages.com/70x70/http://steemitboard.com/@bigchaindb/birthday1.png</td><td>Happy Birthday! - You are on the Steem blockchain for 1 year!</td></tr></table>\n\n<sub>_You can view [your badges on your Steem Board](https://steemitboard.com/@bigchaindb) and compare to others on the [Steem Ranking](https://steemitboard.com/ranking/index.php?name=bigchaindb)_</sub>\n\n\n###### [Vote for @Steemitboard as a witness](https://v2.steemconnect.com/sign/account-witness-vote?witness=steemitboard&approve=1) to get one more award and increased upvotes!",
      "json_metadata": "{\"image\":[\"https://steemitboard.com/img/notify.png\"]}",
      "parent_author": "bigchaindb",
      "parent_permlink": "certified-for-life-decentralized-diploma-management-system-a-solution-envisioning-report-prepared-by-bigchaindb-consulting-for",
      "permlink": "steemitboard-notify-bigchaindb-20190814t230108000z",
      "title": ""
    }
  ],
  "op_in_trx": 0,
  "timestamp": "2019-08-14T23:01:09",
  "trx_id": "ea39030a0a3d65bf581b6e8839727c1b295e38ee",
  "trx_in_block": 5,
  "virtual_op": 0
}
smitopblockchain operation: transfer from savings
2018/08/29 23:08:33
amount3.333 SBD
fromsmitop
memoHi, it looks like you're not voting for any witnesses. Witnesses help secure the Steem network. You should vote for some, at https://steemit.com/~witnesses, or by pressing 'Vote for witnesses' in the Steemit sidebar (top right corner). I'm a bot.
request id14510
tobigchaindb
Transaction InfoBlock #25504896/Trx 1803cda643915417332ebf0ff0bbe2929befe819
View Raw JSON Data
{
  "block": 25504896,
  "op": [
    "transfer_from_savings",
    {
      "amount": "3.333 SBD",
      "from": "smitop",
      "memo": "Hi, it looks like you're not voting for any witnesses. Witnesses help secure the Steem network. You should vote for some, at https://steemit.com/~witnesses, or by pressing 'Vote for witnesses' in the Steemit sidebar (top right corner). I'm a bot.",
      "request_id": 14510,
      "to": "bigchaindb"
    }
  ],
  "op_in_trx": 0,
  "timestamp": "2018-08-29T23:08:33",
  "trx_id": "1803cda643915417332ebf0ff0bbe2929befe819",
  "trx_in_block": 0,
  "virtual_op": 0
}
2018/08/20 18:20:18
authorbigchaindb
permlinkcertified-for-life-decentralized-diploma-management-system-a-solution-envisioning-report-prepared-by-bigchaindb-consulting-for
voterdaniel.duseuil
weight10000 (100.00%)
Transaction InfoBlock #25240062/Trx 146b0bb666a3cb2610541062b11275d23a1b560e
View Raw JSON Data
{
  "block": 25240062,
  "op": [
    "vote",
    {
      "author": "bigchaindb",
      "permlink": "certified-for-life-decentralized-diploma-management-system-a-solution-envisioning-report-prepared-by-bigchaindb-consulting-for",
      "voter": "daniel.duseuil",
      "weight": 10000
    }
  ],
  "op_in_trx": 0,
  "timestamp": "2018-08-20T18:20:18",
  "trx_id": "146b0bb666a3cb2610541062b11275d23a1b560e",
  "trx_in_block": 23,
  "virtual_op": 0
}
2018/08/20 14:54:57
authorbigchaindb
permlinkcertified-for-life-decentralized-diploma-management-system-a-solution-envisioning-report-prepared-by-bigchaindb-consulting-for
votersensation
weight10000 (100.00%)
Transaction InfoBlock #25235955/Trx 54f84c186e5a51c993517990a2b304e4cdd30c42
View Raw JSON Data
{
  "block": 25235955,
  "op": [
    "vote",
    {
      "author": "bigchaindb",
      "permlink": "certified-for-life-decentralized-diploma-management-system-a-solution-envisioning-report-prepared-by-bigchaindb-consulting-for",
      "voter": "sensation",
      "weight": 10000
    }
  ],
  "op_in_trx": 0,
  "timestamp": "2018-08-20T14:54:57",
  "trx_id": "54f84c186e5a51c993517990a2b304e4cdd30c42",
  "trx_in_block": 6,
  "virtual_op": 0
}
2018/08/20 13:43:12
authorbigchaindb
body![1_OJdRU6ZXkFZXO28lC8Wf8A.png](https://cdn.steemitimages.com/DQmNQ3iCKSzdi5TChztpbCAdWomKVFxZVnqaGx1DFWtk6c3/1_OJdRU6ZXkFZXO28lC8Wf8A.png) --- <b>Prepared By</b>: Gautam Dhameja, <a href="https://www.bigchaindb.com/">BigchainDB</a> <b>Reviewed By</b>: Dimitri De Jonghe, <a href="https://www.bigchaindb.com/">BigchainDB</a> <b>Prepared For</b>: <a href="https://overheid.vlaanderen.be/informatie-vlaanderen/">Informatie Vlaanderen</a> and Partners <b>Dated</b>: July 10, 2018 --- <b>Introduction</b> In the education sector, availability and accessibility of diploma/certificate data is crucial for faster growth and better utilization of higher education and job opportunities. Today, the process of sharing and managing diploma data is mostly centralized with control being held by the authorities. To make the process simplified and to give more control to the students and graduates over their diploma data, <a href="https://overheid.vlaanderen.be/informatie-vlaanderen/">Informatie Vlaanderen</a>, along with their partners, are exploring blockchain based solutions. As a first step, Information Vlaanderen and Federation Wallonie-Bruxelles did a proof of concept about international exchange of diploma data - <a href="https://medium.com/wearetheledger/certified-for-life-international-exchange-authentication-of-diplomas-via-blockchain-4e947720edd9">Certified For Life</a>. There were some options analyzed and a simple prototype was developed to showcase the exchange and sharing of diploma data using a blockchain based system. During the prototyping, some issues were encountered mainly around GDPR compliance, data ownership and authenticity of data sources. To address these issues, Information Vlaanderen asked the BigchainDB Consulting team to come with an alternative approach. This report proposes a decentralized diploma data management solution and addresses the issues encountered during the initial prototyping. The report also proposes possible extensions and enhancements on top of the proposed solution. --- <b>Abstract</b> Currently, the diploma data is stored in centralized servers at universities of different countries, affiliated with different governments. In scenarios when the graduates need to share their diploma data with other schools in different countries for higher education or with third-parties for recruitment purposes, it becomes difficult for the graduates to control access and share their diploma data with the interested parties. This report proposes a decentralized solution for management and sharing of diploma data between students, universities, governments, and other third-parties interested in that data. The solution aims at giving more control and ownership to the graduates who have earned the diploma so that they can decide on whether to share the information or not. The solution also aims at making the diploma data more accessible and easier to share while also enhancing security and tamper resistance. The solution we propose gives full control and ownership of the diploma data to the graduates. From a high level, the solution consists of the following flow - the schools create and digitally sign the diploma and provide this digital and signed copy of the diploma to the respective graduate. The graduate holds and can share the diploma data in full or in parts with any interested third parties - other schools and recruiters when needed. All requests, responses and sharing of data is recorded on a blockchain to provide an immutable trail of the entire history of a diploma and its access control. The schools and governments are collective caretakers of the blockchain network. The solution is also GDPR compliant as no personally identifiable information is being stored on the blockchain which cannot be deleted. <b>Design Goals</b> For the Certified For Life decentralized system, we have the following design goals. <b>Owner Controlled Data </b>- The diploma data should be in direct control of the graduate who has earned the diploma. This control should provide the graduates the ability to share and manage this data without going through any permissions or access control layer of the schools and governments. This ability will make the system faster and robust as the need for multiple authorization and authentication will be eliminated. <b>Tamper Proof </b>- The diploma data managed and shared on the system should be fully tamper resistant. Only the schools should have the access to create or update the diploma data. This will ultimately add more trust to the system as the readers and verifiers of the diploma data (other schools and recruiters) will be able to trust this data. <b>GDPR Compliant</b> - The system should be fully GDPR compliant. The system should provide a way to exercise the right to forget in case any of the users intend to do so. For this, the system should not store any personally identifiable information on such data stores where it cannot be deleted (blockchain, append only stores). <b>Ease of Access</b> - The diploma data should be easily accessible by the graduates so that it can be shared when needed. Once the data is shared by the graduates, it should be easy for the audience (other schools and graduates) to read and verify the data. <b>Immutable Audit Trail</b> - The system should provide the entire history of access and sharing of diploma data so that it can be easily verified. This history should be immutable. <b>Key Concepts</b> This section covers the key concepts and technologies, in brief, which are part of the proposed solution. 1. <b>Blockchain</b> - At it's very core, a blockchain is an <i>append only</i> store of data which is <i>cryptographically secured</i> using public-key cryptography. In the beginning, any particular blockchain network has default/genesis state which is the starting point for all nodes participating in the network. To append data to the state of the blockchain, transactions are submitted to any of the participating nodes. These transactions are then verified by all other nodes in batches called blocks. Once all nodes agree on the validity of a block, it is committed to the state of the blockchain. This way the state of the blockchain gets updated with new data. The proposed solution uses a blockchain network for storage of logs for access control of diploma data. 2. <b>Self-sovereign Data</b> - <a href="https://blockchainhub.net/blog/blog/self-sovereign-identity-vs-data/">Self-sovereign data</a> is a paradigm used to describe data which is fully in control of the user it is associated with. The primary use cases of self-sovereign data come from digital identity use cases where the identity information of a user is owned and controlled by the user himself instead of being stored and controlled by a centralized organization. This way the possibility of hacking identity data of thousands of people from a centralized system is significantly decreased as the identity data is with every individual and not with any server. The proposed solution uses the generic concept of self-sovereign data for diploma data to be owned and controlled by the diploma holder. 3. <b>Verifiable Claims</b> - <a href="https://www.w3.org/TR/verifiable-claims-data-model/">Verifiable claims</a> contain basic information about entities and data representing their background. The information contained in these claims help proves the uniqueness and authenticity of the data associated with the entity. These claims are issued by the issuer of the data itself and can be verified by any interested third party. For example, in an identity data scenario, the issues can be the authorities issuing passports and other identity information. These issues will also be issuing digitally signed verifiable claims to the user so that they can prove the validity and authenticity of their identity data. The proposed system uses the concepts of verifiable claims to prove the authenticity of diploma data. 4. <b>Decentralized Identifiers (DIDs)</b> - <a href="https://w3c-ccg.github.io/did-spec/">Decentralized Identifiers</a> is a standard to represent identities on decentralized systems. The specification describes a standard for an object encapsulating identity related data and also the functions which can be performed on the object. The proposed system uses DIDs to represent the identities of the schools so that they can be easily looked up on the underlying blockchain network. <b>Proposed Solution</b> In this section, the proposed decentralized solution is described. This section is organized into several sub-sections. We start with giving the high-level overview of the system and then we detail out the various components, architecture and process flows of the system. <b>Actors </b> Following are the primary actors in the system, participating in the information flow. 1. School - Schools or universities create the diploma for a student/graduate. 2. Government - Governments store and manage the diploma data at a regional and country level. 3. Graduate - The diploma holder. 4. Requestor - Any third party requesting diploma data from the graduate. <b>Components</b> The solution will have the following primary components from a high level. Some other additional components might also be needed for improving performance and security of the system, but they will be identified as part of a detailed low-level design at a later stage. <b>School/Government Data Store</b> - This is the existing data store for the schools and governments where the diploma data is stored in a standardized format. The diploma data will continue to be stored in these databases. The idea is that the primary source of data should not be broken or replaced completely. This is to ensure backward compatibility of the new system. In general, the schools will also be populating the government databases with the diploma data. Every school will sign and publish diploma data on these government databases. This way the government databases become an authentic "single source of truth" for a region or country and the students, data requestors and other schools can fully trust them. <b>Client Application</b> - This is a client application which supports a digital wallet functionality. This application can be a mobile or desktop application or both. It will be connected to the school/government backend systems. The diploma data associated with a graduate can be downloaded and stored in the digital wallet using this application from the school databases. <b>Web Portal </b>- The web portal is for the requesting parties to request and view the diploma data from the graduates. When a school or recruiter wants to see diploma data of a graduate, they will request it through this portal and the diploma holder will get a notification on their client application. If the data is shared by the graduate, the requester will be able to see the data using this portal. The basic purpose of the portal is to connect the graduates with the data requestors. The portal will not store any data shared through it. <b>Blockchain Network</b> - This is the underlying blockchain network recording all transactions and logs related to issuing and sharing of diploma data. This network will be hosted by schools and governments collectively as part of a consortium. In phase 1 of the system, the blockchain will act as an immutable log and this is important to keep track of all the access rights and activity in the system. Further, in phase 2, with verifiable claims for diploma data, the blockchain network will have more integration. <b>Schools Registry</b> - The school registry will be a collection of identity objects stored on the blockchain network in the DID standard format. The school DIDs will have the verification keys from the schools so that the diploma data can be easily verified. <b>Identity and Key Management System</b> - To make the system fully GDPR compliant, we need to make sure that the identity data is not stored on a distributed immutable store. Identity systems already exist at schools because they record student information during the enrollment period. The proposed system utilizes these identity management systems from the schools to link the diploma data with the client-side wallet. The existing identity management systems will be extended to support key management as well. <b>Response Middleware</b> - The response middleware is a publish-subscribe system for publishing responses from the users for the requests coming from the requestors. These responses can be pre-published in case of data being offered by the student or they can be reactive when the user shares data based on a request. <b>Authorization and Authentication Module</b> - The client app, school backends, and blockchain nodes will be secured with industry standard authorization and authentication systems to secure the system from unauthorized access. <b>Functional Overview</b> The following sequence diagram shows how the different components and actors interact with each other and it also depicts the functional flow of the system. ![1_5hHFLGZLTObh3nixWyMS8A.png](https://cdn.steemitimages.com/DQmbgjyHSfgdfAeGn4nKUGwAViN42HtkbxNEAiCTHbjmof3/1_5hHFLGZLTObh3nixWyMS8A.png) The following steps provide a functional overview of the system, 1. Schools publish their identities and verification (public) keys encapsulated in DIDs on the blockchain network. The school DID also has information about its affiliation with a government, backend endpoint addresses and other information which can help identify the school and its affiliation. The DIDs will be signed by the respective schools and the public keys will be published at the authentic data sources for verification. This can be as simple as publishing it along with the list of affiliated schools by the governments. 2. Graduate/citizen registers and creates his diploma wallet using a client-side application. The client-side application connects to the respective government database backend based on region and school selected by school by the user. 3. School creates and digitally signs the diploma and stores it in the government and school database. 4. Graduate downloads the digitally signed diploma in his diploma wallet on the client application. 5. Third-parties including other schools, recruiters, governments can request access to the diploma using a web portal. 6. The student can approve/decline the request from the client application. 7. If the student approves the request, the diploma data is shared with the respective audience. 8. All these steps are recorded on the blockchain network to verify the access control history of the diploma data. <b>Architecture</b> The following diagram depicts a high-level architecture of the system showing how the components described above connect with each other. ![1__ylyoRRmrgWoOXG0HU2oUw.png](https://cdn.steemitimages.com/DQmRdQjfov8syLybP7YUCdmZzGdLoRoGVLDNLQmrsc1Tjmk/1__ylyoRRmrgWoOXG0HU2oUw.png) --- <b>Solution Maturity Stages</b> The solution has two stages of maturity and both stages are described in separate subsections below. <b>Stage 1 - Full data sharing</b> The stage 1 of the solution is when full diploma data will be shared by the graduates when the data is requested by a requestor. <b>Process Flow</b> This subsection describes the process and information flow for stage 1 of the system. <b>Registration</b> - The user downloads the client application on his device and registers in the system. The registration process includes the following steps, 1. Create a digital wallet on the user's device. 2. Encrypt the wallet with user's passphrase. 3. Create a unique ID for user's wallet. 4. Register user wallet ID with the identity system of the school through the school backend. 5. Synchronize/download diploma data from the government database using information in the school DID. 6. This also adds an entry to the web-portal backend for the user to participate in the data sharing process, if the user chooses to opt-in. 7. The registration process also initiates the user-diploma timeline on the blockchain. The blockchain data will be fully anonymized. <b>Diploma Creation and Assignment</b> - The diploma creation will be done by the schools. This can be done using the existing systems by extending them to support integration with digital signatures. Once the diploma is created it is assigned to the graduate by updating the database record with the diploma and user mapping from the identity system of the school. The diploma and user mapping will also be added to the user timeline on the blockchain. All the diploma information is also stored on the government databases so that the client application can synchronize with them. <b>Data Offer </b>- As the primary actor in the system, the graduate can set permissions on data using the client-side application. The graduate can choose to offer his diploma data so that the requestors can directly access it when needed. This functionality will be supported using the middleware. If the graduate chooses to put his data on offer, then a response is pre-stored on the middleware which can be directly accessed by the requestors. <b>Request for data</b> - The requestors can request the diploma data using the web-portal. The web-portal provides a functionality to search for users and the requestors can reach out to the user. If a requestor reaches out to a user for diploma information, the user gets an alert/notification on his client application. The interface for requesting will be through the blockchain network. <b>Response </b>- The response for a data request can be based on the following two scenarios: 1. <b>User has already shared his data as an offer</b> - In this scenario, when the requestor requests the user's data then it is directly returned by the middleware. 2. <b>User has not already shared his data</b> - In this scenario, the user receives a notification for request of data from a requestor. He can then decide to approve/reject the request. If he chooses to approve the request, then the diploma information will be shared with the requestor on the web portal from the user's wallet through the middleware. The interface for response is not through the blockchain because we do not want to publish diploma information on it. The sharing of data happens directly from the user's wallet in the client-side application through the middleware. This way the student/graduate does not have to depend on permissions and access from the school for sharing his own data. The middleware allows the request and response to be processed at different times. The user does not have to be online all the time. They can respond to data requests when they go online the next time as the requests will be available through the middleware. <b>Verification </b>- In case the requestor wants to validate the information shared by the user, they can verify it using the digital signature of the issuer school as all the diploma data will be digitally signed. The verification process will use the DID of the issuing school to get the verification (public) keys. The functionality of signature validation will also be part of the web portal. <b>Stage 2 - Controlled Data Sharing - Verifiable Claims</b> The stage 2 of the proposed system will allow the diploma data to be shared in a controlled way using the concept of verifiable claims. In this case, along with issuing the diploma to the graduates, the schools will also issue verifiable claims to the graduates based on the diploma data. For example, the following can be claims issued to a graduate, 1. The diploma was completed in the expected duration. 2. The total marks scored by the graduate are greater than a predefined threshold. 3. The graduate actually holds the diploma. All these verifiable claims will be digitally signed by the issuing schools so that they can be easily verified using DIDs of the schools. <b>Process flow</b> This subsection describes the process and information flow for stage 2 of the system. <b>Registration</b> 1. All steps of stage 1. 2. A DID is also created for the student and it is populated by the information in the school's identity management system. This step also connects the student ID with the student DID. 3. <b>Diploma creation </b>- Same as stage 1. 4. <b>Claims assignment </b>- After creation of the diploma, the school also creates and signs verifiable claims based on the diploma data and stores them in the school and government databases. These claims are assigned to the DID of the student. 5. <b>Request for data</b> - Same as stage 1. 6. <b>Response</b> - Based on the request for diploma data, the graduate can choose to share the entire information or just a claim. For example, in case of sharing the data with another school for higher education purposes, the graduate can choose to share the entire data, however, in case of sharing the data with a recruiter the graduate can only share a claim to prove the existence of diploma. This way the trust on the requestor can be reduced. 7. <b>Claims verification</b> - The verification of claims can be done in the same way by verifying the digital signature of the issuing school after looking up the verification key from the school's DID. <b>Data Recovery</b> In case the user loses access to his client-side application and data - this can be because of loss of device or device being unusable - then he can re-sync the data in a new device by following a sub-set of the registration process on the new device. The diploma data will be always stored in the school and government databases, so it will be available to the graduates to download anytime and on any number of devices. <b>Blockchain Network Governance</b> The blockchain network hosted as part of the Certified For Life decentralized system will be a private-permissioned blockchain network. The governance of the blockchain will be defined collectively by the schools and governments participating and maintaining the system. <b>Stakeholders</b> The stakeholders or node hosts of the private blockchain network will be the regional and national governments. The schools will publish their identity information (DID) on the blockchain network to identify themselves for the client applications and for diploma verification on the web-portal. Along with the governments, the schools can also host nodes of the blockchain network in order to provide more decentralization and availability to the system. <b>Benefits of the Decentralized System</b> The proposed system has the following benefits as compared to the existing centralized system, 1. The diploma data is fully in control of the graduate who owns it. 2. The sharing and verification of diploma data is easier. The users don't have to depend on permission and availability from the issuing schools. 3. The system is GDPR compliant. 4. The entire process flow can be easily verified using the immutable audit trails available on the blockchain. 5. The system motivates collaboration between the schools and governments of different countries hence improving education and employment opportunities for potential candidates. 6. The decentralized system helps get a country and region wide overview of the education system. <b>Possible Extensions</b> Following can be possible extensions of the system in the next phases. <b>Zero Knowledge Proofs </b>- The trust on the requestor should be minimized so that the diploma data cannot be misused. One way of achieving that is implementing zero-knowledge proofs for verification of diploma data. In this solution, the graduate will be able to prove that he has the diploma without sharing any details about it. An interesting application of zero knowledge proofs in this scenario can be <a href="https://github.com/ing-bank/zkrangeproof">range proofs</a>, where the commitments can be made by respective schools and the GPA of a candidate can be validated to be in a range. <b>Proxy Re-encryption</b> - Proxy re-encryption allows a cipher text to be shared between two parties without revealing the keys by either of them. This is achieved by using a semi-trusted third-party for re-encryption of the data. In the Certified For Life system, the issuing school can be the semi-trusted third party between the graduate and the requestor hence enabling sharing of encrypted diploma data between the two parties. --- <b>Conclusion</b> In this report, we proposed a decentralized solution for sharing and management of diplomas. The solution is aimed at solving issues like GDPR compliance and data ownership. While enough details are provided to support feasibility of the solution, a more detailed and practical solution can be defined by doing further analysis of existing systems and processes and by doing a detailed design exercise for the new system.
json metadata{"tags":["blockchain","distributedledgers","decentralization","educationtechnology","digitaltransformation"],"image":["https://cdn.steemitimages.com/DQmNQ3iCKSzdi5TChztpbCAdWomKVFxZVnqaGx1DFWtk6c3/1_OJdRU6ZXkFZXO28lC8Wf8A.png","https://cdn.steemitimages.com/DQmbgjyHSfgdfAeGn4nKUGwAViN42HtkbxNEAiCTHbjmof3/1_5hHFLGZLTObh3nixWyMS8A.png","https://cdn.steemitimages.com/DQmRdQjfov8syLybP7YUCdmZzGdLoRoGVLDNLQmrsc1Tjmk/1__ylyoRRmrgWoOXG0HU2oUw.png"],"links":["https://www.bigchaindb.com/","https://overheid.vlaanderen.be/informatie-vlaanderen/","https://medium.com/wearetheledger/certified-for-life-international-exchange-authentication-of-diplomas-via-blockchain-4e947720edd9","https://blockchainhub.net/blog/blog/self-sovereign-identity-vs-data/","https://www.w3.org/TR/verifiable-claims-data-model/","https://w3c-ccg.github.io/did-spec/","https://github.com/ing-bank/zkrangeproof"],"app":"steemit/0.1","format":"markdown"}
parent author
parent permlinkblockchain
permlinkcertified-for-life-decentralized-diploma-management-system-a-solution-envisioning-report-prepared-by-bigchaindb-consulting-for
titleCertified For Life - Decentralized Diploma Management System: A solution envisioning report prepared by BigchainDB Consulting for Information Vlaanderen (Flemish Government, Belgium)
Transaction InfoBlock #25234521/Trx 874288bcc157d940b8cf96b7c754eb99d6065f61
View Raw JSON Data
{
  "block": 25234521,
  "op": [
    "comment",
    {
      "author": "bigchaindb",
      "body": "![1_OJdRU6ZXkFZXO28lC8Wf8A.png](https://cdn.steemitimages.com/DQmNQ3iCKSzdi5TChztpbCAdWomKVFxZVnqaGx1DFWtk6c3/1_OJdRU6ZXkFZXO28lC8Wf8A.png)\n\n---\n\n<b>Prepared By</b>: Gautam Dhameja, <a href=\"https://www.bigchaindb.com/\">BigchainDB</a>\n<b>Reviewed By</b>: Dimitri De Jonghe, <a href=\"https://www.bigchaindb.com/\">BigchainDB</a>\n<b>Prepared For</b>: <a href=\"https://overheid.vlaanderen.be/informatie-vlaanderen/\">Informatie Vlaanderen</a> and Partners\n<b>Dated</b>: July 10, 2018\n\n\n---\n\n<b>Introduction</b>\n\nIn the education sector, availability and accessibility of diploma/certificate data is crucial for faster growth and better utilization of higher education and job opportunities. Today, the process of sharing and managing diploma data is mostly centralized with control being held by the authorities. To make the process simplified and to give more control to the students and graduates over their diploma data, <a href=\"https://overheid.vlaanderen.be/informatie-vlaanderen/\">Informatie Vlaanderen</a>, along with their partners, are exploring blockchain based solutions. As a first step, Information Vlaanderen and Federation Wallonie-Bruxelles did a proof of concept about international exchange of diploma data - <a href=\"https://medium.com/wearetheledger/certified-for-life-international-exchange-authentication-of-diplomas-via-blockchain-4e947720edd9\">Certified For Life</a>. There were some options analyzed and a simple prototype was developed to showcase the exchange and sharing of diploma data using a blockchain based system. During the prototyping, some issues were encountered mainly around GDPR compliance, data ownership and authenticity of data sources. To address these issues, Information Vlaanderen asked the BigchainDB Consulting team to come with an alternative approach.\n\nThis report proposes a decentralized diploma data management solution and addresses the issues encountered during the initial prototyping. The report also proposes possible extensions and enhancements on top of the proposed solution.\n\n\n---\n\n<b>Abstract</b>\n\nCurrently, the diploma data is stored in centralized servers at universities of different countries, affiliated with different governments. In scenarios when the graduates need to share their diploma data with other schools in different countries for higher education or with third-parties for recruitment purposes, it becomes difficult for the graduates to control access and share their diploma data with the interested parties. This report proposes a decentralized solution for management and sharing of diploma data between students, universities, governments, and other third-parties interested in that data.\n\nThe solution aims at giving more control and ownership to the graduates who have earned the diploma so that they can decide on whether to share the information or not. The solution also aims at making the diploma data more accessible and easier to share while also enhancing security and tamper resistance.\n\nThe solution we propose gives full control and ownership of the diploma data to the graduates. From a high level, the solution consists of the following flow - the schools create and digitally sign the diploma and provide this digital and signed copy of the diploma to the respective graduate. The graduate holds and can share the diploma data in full or in parts with any interested third parties - other schools and recruiters when needed. All requests, responses and sharing of data is recorded on a blockchain to provide an immutable trail of the entire history of a diploma and its access control. The schools and governments are collective caretakers of the blockchain network.\n\nThe solution is also GDPR compliant as no personally identifiable information is being stored on the blockchain which cannot be deleted.\n\n<b>Design Goals</b>\n\nFor the Certified For Life decentralized system, we have the following design goals.\n\n<b>Owner Controlled Data </b>- The diploma data should be in direct control of the graduate who has earned the diploma. This control should provide the graduates the ability to share and manage this data without going through any permissions or access control layer of the schools and governments. This ability will make the system faster and robust as the need for multiple authorization and authentication will be eliminated.\n\n<b>Tamper Proof </b>- The diploma data managed and shared on the system should be fully tamper resistant. Only the schools should have the access to create or update the diploma data. This will ultimately add more trust to the system as the readers and verifiers of the diploma data (other schools and recruiters) will be able to trust this data.\n\n<b>GDPR Compliant</b> - The system should be fully GDPR compliant. The system should provide a way to exercise the right to forget in case any of the users intend to do so. For this, the system should not store any personally identifiable information on such data stores where it cannot be deleted (blockchain, append only stores).\n\n<b>Ease of Access</b> - The diploma data should be easily accessible by the graduates so that it can be shared when needed. Once the data is shared by the graduates, it should be easy for the audience (other schools and graduates) to read and verify the data.\n\n<b>Immutable Audit Trail</b> - The system should provide the entire history of access and sharing of diploma data so that it can be easily verified. This history should be immutable.\n\n<b>Key Concepts</b>\n\nThis section covers the key concepts and technologies, in brief, which are part of the proposed solution.\n\n1. <b>Blockchain</b> - At it's very core, a blockchain is an <i>append only</i> store of data which is <i>cryptographically secured</i> using public-key cryptography. In the beginning, any particular blockchain network has default/genesis state which is the starting point for all nodes participating in the network. To append data to the state of the blockchain, transactions are submitted to any of the participating nodes. These transactions are then verified by all other nodes in batches called blocks. Once all nodes agree on the validity of a block, it is committed to the state of the blockchain. This way the state of the blockchain gets updated with new data.\n\nThe proposed solution uses a blockchain network for storage of logs for access control of diploma data.\n\n2. <b>Self-sovereign Data</b> - <a href=\"https://blockchainhub.net/blog/blog/self-sovereign-identity-vs-data/\">Self-sovereign data</a> is a paradigm used to describe data which is fully in control of the user it is associated with. The primary use cases of self-sovereign data come from digital identity use cases where the identity information of a user is owned and controlled by the user himself instead of being stored and controlled by a centralized organization. This way the possibility of hacking identity data of thousands of people from a centralized system is significantly decreased as the identity data is with every individual and not with any server.\n\nThe proposed solution uses the generic concept of self-sovereign data for diploma data to be owned and controlled by the diploma holder.\n\n3. <b>Verifiable Claims</b> - <a href=\"https://www.w3.org/TR/verifiable-claims-data-model/\">Verifiable claims</a>  contain basic information about entities and data representing their background. The information contained in these claims help proves the uniqueness and authenticity of the data associated with the entity. These claims are issued by the issuer of the data itself and can be verified by any interested third party. For example, in an identity data scenario, the issues can be the authorities issuing passports and other identity information. These issues will also be issuing digitally signed verifiable claims to the user so that they can prove the validity and authenticity of their identity data.\n\nThe proposed system uses the concepts of verifiable claims to prove the authenticity of diploma data.\n\n4. <b>Decentralized Identifiers (DIDs)</b> - <a href=\"https://w3c-ccg.github.io/did-spec/\">Decentralized Identifiers</a> is a standard to represent identities on decentralized systems. The specification describes a standard for an object encapsulating identity related data and also the functions which can be performed on the object.\n\nThe proposed system uses DIDs to represent the identities of the schools so that they can be easily looked up on the underlying blockchain network.\n\n<b>Proposed Solution</b>\n\nIn this section, the proposed decentralized solution is described. This section is organized into several sub-sections. We start with giving the high-level overview of the system and then we detail out the various components, architecture and process flows of the system.\n\n<b>Actors </b>\n\nFollowing are the primary actors in the system, participating in the information flow.\n\n1. School - Schools or universities create the diploma for a student/graduate.\n\n2. Government - Governments store and manage the diploma data at a regional and country level.\n\n3. Graduate - The diploma holder.\n\n4. Requestor - Any third party requesting diploma data from the graduate.\n\n<b>Components</b>\n\nThe solution will have the following primary components from a high level. Some other additional components might also be needed for improving performance and security of the system, but they will be identified as part of a detailed low-level design at a later stage.\n\n<b>School/Government Data Store</b> - This is the existing data store for the schools and governments where the diploma data is stored in a standardized format. The diploma data will continue to be stored in these databases. The idea is that the primary source of data should not be broken or replaced completely. This is to ensure backward compatibility of the new system.\n\nIn general, the schools will also be populating the government databases with the diploma data. Every school will sign and publish diploma data on these government databases. This way the government databases become an authentic \"single source of truth\" for a region or country and the students, data requestors and other schools can fully trust them.\n\n<b>Client Application</b> - This is a client application which supports a digital wallet functionality. This application can be a mobile or desktop application or both. It will be connected to the school/government backend systems. The diploma data associated with a graduate can be downloaded and stored in the digital wallet using this application from the school databases.\n\n<b>Web Portal </b>- The web portal is for the requesting parties to request and view the diploma data from the graduates. When a school or recruiter wants to see diploma data of a graduate, they will request it through this portal and the diploma holder will get a notification on their client application. If the data is shared by the graduate, the requester will be able to see the data using this portal. The basic purpose of the portal is to connect the graduates with the data requestors. The portal will not store any data shared through it.\n\n<b>Blockchain Network</b> - This is the underlying blockchain network recording all transactions and logs related to issuing and sharing of diploma data. This network will be hosted by schools and governments collectively as part of a consortium. In phase 1 of the system, the blockchain will act as an immutable log and this is important to keep track of all the access rights and activity in the system. Further, in phase 2, with verifiable claims for diploma data, the blockchain network will have more integration.\n\n<b>Schools Registry</b> - The school registry will be a collection of identity objects stored on the blockchain network in the DID standard format. The school DIDs will have the verification keys from the schools so that the diploma data can be easily verified.\n\n<b>Identity and Key Management System</b> - To make the system fully GDPR compliant, we need to make sure that the identity data is not stored on a distributed immutable store. Identity systems already exist at schools because they record student information during the enrollment period. The proposed system utilizes these identity management systems from the schools to link the diploma data with the client-side wallet. The existing identity management systems will be extended to support key management as well.\n\n<b>Response Middleware</b> - The response middleware is a publish-subscribe system for publishing responses from the users for the requests coming from the requestors. These responses can be pre-published in case of data being offered by the student or they can be reactive when the user shares data based on a request.\n\n<b>Authorization and Authentication Module</b> - The client app, school backends, and blockchain nodes will be secured with industry standard authorization and authentication systems to secure the system from unauthorized access.\n\n<b>Functional Overview</b>\nThe following sequence diagram shows how the different components and actors interact with each other and it also depicts the functional flow of the system.\n\n![1_5hHFLGZLTObh3nixWyMS8A.png](https://cdn.steemitimages.com/DQmbgjyHSfgdfAeGn4nKUGwAViN42HtkbxNEAiCTHbjmof3/1_5hHFLGZLTObh3nixWyMS8A.png)\n\nThe following steps provide a functional overview of the system,\n\n1. Schools publish their identities and verification (public) keys encapsulated in DIDs on the blockchain network. The school DID also has information about its affiliation with a government, backend endpoint addresses and other information which can help identify the school and its affiliation. The DIDs will be signed by the respective schools and the public keys will be published at the authentic data sources for verification. This can be as simple as publishing it along with the list of affiliated schools by the governments.\n\n2. Graduate/citizen registers and creates his diploma wallet using a client-side application. The client-side application connects to the respective government database backend based on region and school selected by school by the user.\n\n3. School creates and digitally signs the diploma and stores it in the government and school database.\n\n4. Graduate downloads the digitally signed diploma in his diploma wallet on the client application.\n\n5. Third-parties including other schools, recruiters, governments can request access to the diploma using a web portal.\n\n6. The student can approve/decline the request from the client application.\n\n7. If the student approves the request, the diploma data is shared with the respective audience.\n\n8. All these steps are recorded on the blockchain network to verify the access control history of the diploma data.\n\n<b>Architecture</b>\n\nThe following diagram depicts a high-level architecture of the system showing how the components described above connect with each other.\n\n![1__ylyoRRmrgWoOXG0HU2oUw.png](https://cdn.steemitimages.com/DQmRdQjfov8syLybP7YUCdmZzGdLoRoGVLDNLQmrsc1Tjmk/1__ylyoRRmrgWoOXG0HU2oUw.png)\n\n---\n\n<b>Solution Maturity Stages</b>\n\nThe solution has two stages of maturity and both stages are described in separate subsections below.\n\n<b>Stage 1 - Full data sharing</b>\n\nThe stage 1 of the solution is when full diploma data will be shared by the graduates when the data is requested by a requestor.\n\n<b>Process Flow</b>\n\nThis subsection describes the process and information flow for stage 1 of the system.\n\n<b>Registration</b> - The user downloads the client application on his device and registers in the system. The registration process includes the following steps,\n\n1. Create a digital wallet on the user's device. \n\n2. Encrypt the wallet with user's passphrase.\n\n3. Create a unique ID for user's wallet.\n\n4. Register user wallet ID with the identity system of the school through the school backend.\n\n5. Synchronize/download diploma data from the government database using information in the school DID.\n\n6. This also adds an entry to the web-portal backend for the user to participate in the data sharing process, if the user chooses to opt-in.\n\n7. The registration process also initiates the user-diploma timeline on the blockchain. The blockchain data will be fully anonymized.\n\n<b>Diploma Creation and Assignment</b> - The diploma creation will be done by the schools. This can be done using the existing systems by extending them to support integration with digital signatures. Once the diploma is created it is assigned to the graduate by updating the database record with the diploma and user mapping from the identity system of the school. The diploma and user mapping will also be added to the user timeline on the blockchain. All the diploma information is also stored on the government databases so that the client application can synchronize with them.\n\n<b>Data Offer </b>- As the primary actor in the system, the graduate can set permissions on data using the client-side application. The graduate can choose to offer his diploma data so that the requestors can directly access it when needed. This functionality will be supported using the middleware. If the graduate chooses to put his data on offer, then a response is pre-stored on the middleware which can be directly accessed by the requestors.\n\n<b>Request for data</b> - The requestors can request the diploma data using the web-portal. The web-portal provides a functionality to search for users and the requestors can reach out to the user. If a requestor reaches out to a user for diploma information, the user gets an alert/notification on his client application. The interface for requesting will be through the blockchain network.\n\n<b>Response </b>- The response for a data request can be based on the following two scenarios:\n\n1. <b>User has already shared his data as an offer</b> - In this scenario, when the requestor requests the user's data then it is directly returned by the middleware.\n\n2. <b>User has not already shared his data</b> - In this scenario, the user receives a notification for request of data from a requestor. He can then decide to approve/reject the request. If he chooses to approve the request, then the diploma information will be shared with the requestor on the web portal from the user's wallet through the middleware. The interface for response is not through the blockchain because we do not want to publish diploma information on it.\n\nThe sharing of data happens directly from the user's wallet in the client-side application through the middleware. This way the student/graduate does not have to depend on permissions and access from the school for sharing his own data.\n\nThe middleware allows the request and response to be processed at different times. The user does not have to be online all the time. They can respond to data requests when they go online the next time as the requests will be available through the middleware.\n\n<b>Verification </b>- In case the requestor wants to validate the information shared by the user, they can verify it using the digital signature of the issuer school as all the diploma data will be digitally signed. The verification process will use the DID of the issuing school to get the verification (public) keys.\n\nThe functionality of signature validation will also be part of the web portal.\n\n<b>Stage 2 - Controlled Data Sharing - Verifiable Claims</b>\n\nThe stage 2 of the proposed system will allow the diploma data to be shared in a controlled way using the concept of verifiable claims.\n\nIn this case, along with issuing the diploma to the graduates, the schools will also issue verifiable claims to the graduates based on the diploma data. For example, the following can be claims issued to a graduate,\n\n1. The diploma was completed in the expected duration.\n\n2. The total marks scored by the graduate are greater than a predefined threshold.\n\n3. The graduate actually holds the diploma.\n\nAll these verifiable claims will be digitally signed by the issuing schools so that they can be easily verified using DIDs of the schools.\n\n<b>Process flow</b>\n\nThis subsection describes the process and information flow for stage 2 of the system.\n\n<b>Registration</b>\n\n1. All steps of stage 1.\n\n2. A DID is also created for the student and it is populated by the information in the school's identity management system. This step also connects the student ID with the student DID.\n\n3. <b>Diploma creation </b>- Same as stage 1.\n\n4. <b>Claims assignment </b>- After creation of the diploma, the school also creates and signs verifiable claims based on the diploma data and stores them in the school and government databases. These claims are assigned to the DID of the student.\n\n5. <b>Request for data</b> - Same as stage 1.\n\n6. <b>Response</b> - Based on the request for diploma data, the graduate can choose to share the entire information or just a claim. For example, in case of sharing the data with another school for higher education purposes, the graduate can choose to share the entire data, however, in case of sharing the data with a recruiter the graduate can only share a claim to prove the existence of diploma. This way the trust on the requestor can be reduced.\n\n7. <b>Claims verification</b> - The verification of claims can be done in the same way by verifying the digital signature of the issuing school after looking up the verification key from the school's DID.\n\n<b>Data Recovery</b>\n\nIn case the user loses access to his client-side application and data - this can be because of loss of device or device being unusable - then he can re-sync the data in a new device by following a sub-set of the registration process on the new device.\n\nThe diploma data will be always stored in the school and government databases, so it will be available to the graduates to download anytime and on any number of devices.\n\n<b>Blockchain Network Governance</b>\n\nThe blockchain network hosted as part of the Certified For Life decentralized system will be a private-permissioned blockchain network. The governance of the blockchain will be defined collectively by the schools and governments participating and maintaining the system.\n\n<b>Stakeholders</b>\n\nThe stakeholders or node hosts of the private blockchain network will be the regional and national governments. The schools will publish their identity information (DID) on the blockchain network to identify themselves for the client applications and for diploma verification on the web-portal.\n\nAlong with the governments, the schools can also host nodes of the blockchain network in order to provide more decentralization and availability to the system.\n\n<b>Benefits of the Decentralized System</b>\n\nThe proposed system has the following benefits as compared to the existing centralized system,\n\n1. The diploma data is fully in control of the graduate who owns it.\n\n2. The sharing and verification of diploma data is easier. The users don't have to depend on permission and availability from the issuing schools. \n\n3. The system is GDPR compliant.\n\n4. The entire process flow can be easily verified using the immutable audit trails available on the blockchain.\n\n5. The system motivates collaboration between the schools and governments of different countries hence improving education and employment opportunities for potential candidates.\n\n6. The decentralized system helps get a country and region wide overview of the education system.\n\n<b>Possible Extensions</b>\n\nFollowing can be possible extensions of the system in the next phases.\n\n<b>Zero Knowledge Proofs </b>- The trust on the requestor should be minimized so that the diploma data cannot be misused. One way of achieving that is implementing zero-knowledge proofs for verification of diploma data. In this solution, the graduate will be able to prove that he has the diploma without sharing any details about it. An interesting application of zero knowledge proofs in this scenario can be <a href=\"https://github.com/ing-bank/zkrangeproof\">range proofs</a>, where the commitments can be made by respective schools and the GPA of a candidate can be validated to be in a range.\n\n<b>Proxy Re-encryption</b> - Proxy re-encryption allows a cipher text to be shared between two parties without revealing the keys by either of them. This is achieved by using a semi-trusted third-party for re-encryption of the data. In the Certified For Life system, the issuing school can be the semi-trusted third party between the graduate and the requestor hence enabling sharing of encrypted diploma data between the two parties.\n\n\n---\n\n<b>Conclusion</b>\n\nIn this report, we proposed a decentralized solution for sharing and management of diplomas. The solution is aimed at solving issues like GDPR compliance and data ownership. While enough details are provided to support feasibility of the solution, a more detailed and practical solution can be defined by doing further analysis of existing systems and processes and by doing a detailed design exercise for the new system.",
      "json_metadata": "{\"tags\":[\"blockchain\",\"distributedledgers\",\"decentralization\",\"educationtechnology\",\"digitaltransformation\"],\"image\":[\"https://cdn.steemitimages.com/DQmNQ3iCKSzdi5TChztpbCAdWomKVFxZVnqaGx1DFWtk6c3/1_OJdRU6ZXkFZXO28lC8Wf8A.png\",\"https://cdn.steemitimages.com/DQmbgjyHSfgdfAeGn4nKUGwAViN42HtkbxNEAiCTHbjmof3/1_5hHFLGZLTObh3nixWyMS8A.png\",\"https://cdn.steemitimages.com/DQmRdQjfov8syLybP7YUCdmZzGdLoRoGVLDNLQmrsc1Tjmk/1__ylyoRRmrgWoOXG0HU2oUw.png\"],\"links\":[\"https://www.bigchaindb.com/\",\"https://overheid.vlaanderen.be/informatie-vlaanderen/\",\"https://medium.com/wearetheledger/certified-for-life-international-exchange-authentication-of-diplomas-via-blockchain-4e947720edd9\",\"https://blockchainhub.net/blog/blog/self-sovereign-identity-vs-data/\",\"https://www.w3.org/TR/verifiable-claims-data-model/\",\"https://w3c-ccg.github.io/did-spec/\",\"https://github.com/ing-bank/zkrangeproof\"],\"app\":\"steemit/0.1\",\"format\":\"markdown\"}",
      "parent_author": "",
      "parent_permlink": "blockchain",
      "permlink": "certified-for-life-decentralized-diploma-management-system-a-solution-envisioning-report-prepared-by-bigchaindb-consulting-for",
      "title": "Certified For Life - Decentralized Diploma Management System: A solution envisioning report prepared by BigchainDB Consulting for Information Vlaanderen (Flemish Government, Belgium)"
    }
  ],
  "op_in_trx": 0,
  "timestamp": "2018-08-20T13:43:12",
  "trx_id": "874288bcc157d940b8cf96b7c754eb99d6065f61",
  "trx_in_block": 2,
  "virtual_op": 0
}
bigchaindbupdated their account properties
2018/08/16 12:06:09
accountbigchaindb
json metadata{"profile":{"name":"BigchainDB","about":"The blockchain database ","location":"Berlin, Germany ","website":"https://www.bigchaindb.com/","profile_image":"https://cdn.steemitimages.com/DQmQD17oh3wb2V8o4SjNDa3y2GWgUo4tTVNvbjmJwacJbEd/BDB%20icon%20original%201200x1200.jpg","cover_image":"https://cdn.steemitimages.com/DQmYTPN2BsCBaebZdygnQBRd1q7HJb1ocYg4DEnEdrdXiDb/BigchaindDB%20key%20visual%20background%202000x1336%20(1).jpg"}}
memo keySTM5M77QKaGAStFx3r6r6ER1vTZ1fg7NCG3N4tUCBJaAw7t2dDrt3
Transaction InfoBlock #25117426/Trx 38c5b8944ed02644dc36e940369ab59f268b4036
View Raw JSON Data
{
  "block": 25117426,
  "op": [
    "account_update",
    {
      "account": "bigchaindb",
      "json_metadata": "{\"profile\":{\"name\":\"BigchainDB\",\"about\":\"The blockchain database \",\"location\":\"Berlin, Germany \",\"website\":\"https://www.bigchaindb.com/\",\"profile_image\":\"https://cdn.steemitimages.com/DQmQD17oh3wb2V8o4SjNDa3y2GWgUo4tTVNvbjmJwacJbEd/BDB%20icon%20original%201200x1200.jpg\",\"cover_image\":\"https://cdn.steemitimages.com/DQmYTPN2BsCBaebZdygnQBRd1q7HJb1ocYg4DEnEdrdXiDb/BigchaindDB%20key%20visual%20background%202000x1336%20(1).jpg\"}}",
      "memo_key": "STM5M77QKaGAStFx3r6r6ER1vTZ1fg7NCG3N4tUCBJaAw7t2dDrt3"
    }
  ],
  "op_in_trx": 0,
  "timestamp": "2018-08-16T12:06:09",
  "trx_id": "38c5b8944ed02644dc36e940369ab59f268b4036",
  "trx_in_block": 30,
  "virtual_op": 0
}
bigchaindbupdated their account properties
2018/08/16 12:05:51
accountbigchaindb
json metadata{"profile":{"name":"BigchainDB","about":"The blockchain database ","location":"Berlin, Germany ","website":"https://www.bigchaindb.com/","profile_image":"https://cdn.steemitimages.com/DQmQD17oh3wb2V8o4SjNDa3y2GWgUo4tTVNvbjmJwacJbEd/BDB%20icon%20original%201200x1200.jpg"}}
memo keySTM5M77QKaGAStFx3r6r6ER1vTZ1fg7NCG3N4tUCBJaAw7t2dDrt3
Transaction InfoBlock #25117420/Trx ae7fe83629719b21dcdff6adb3da3846a3525e53
View Raw JSON Data
{
  "block": 25117420,
  "op": [
    "account_update",
    {
      "account": "bigchaindb",
      "json_metadata": "{\"profile\":{\"name\":\"BigchainDB\",\"about\":\"The blockchain database \",\"location\":\"Berlin, Germany \",\"website\":\"https://www.bigchaindb.com/\",\"profile_image\":\"https://cdn.steemitimages.com/DQmQD17oh3wb2V8o4SjNDa3y2GWgUo4tTVNvbjmJwacJbEd/BDB%20icon%20original%201200x1200.jpg\"}}",
      "memo_key": "STM5M77QKaGAStFx3r6r6ER1vTZ1fg7NCG3N4tUCBJaAw7t2dDrt3"
    }
  ],
  "op_in_trx": 0,
  "timestamp": "2018-08-16T12:05:51",
  "trx_id": "ae7fe83629719b21dcdff6adb3da3846a3525e53",
  "trx_in_block": 53,
  "virtual_op": 0
}
bigchaindbupdated their account properties
2018/08/16 12:05:30
accountbigchaindb
json metadata{"profile":{"name":"BigchainDB","about":"The blockchain database ","location":"Berlin, Germany ","website":"https://www.bigchaindb.com/"}}
memo keySTM5M77QKaGAStFx3r6r6ER1vTZ1fg7NCG3N4tUCBJaAw7t2dDrt3
Transaction InfoBlock #25117413/Trx 94954649c0b1b9b4c20e3877b726175b4e219088
View Raw JSON Data
{
  "block": 25117413,
  "op": [
    "account_update",
    {
      "account": "bigchaindb",
      "json_metadata": "{\"profile\":{\"name\":\"BigchainDB\",\"about\":\"The blockchain database \",\"location\":\"Berlin, Germany \",\"website\":\"https://www.bigchaindb.com/\"}}",
      "memo_key": "STM5M77QKaGAStFx3r6r6ER1vTZ1fg7NCG3N4tUCBJaAw7t2dDrt3"
    }
  ],
  "op_in_trx": 0,
  "timestamp": "2018-08-16T12:05:30",
  "trx_id": "94954649c0b1b9b4c20e3877b726175b4e219088",
  "trx_in_block": 1,
  "virtual_op": 0
}
bigchaindbupdated their account properties
2018/08/16 12:03:30
accountbigchaindb
json metadata{"profile":{"profile_image":"https://cdn.steemitimages.com/DQmQD17oh3wb2V8o4SjNDa3y2GWgUo4tTVNvbjmJwacJbEd/BDB%20icon%20original%201200x1200.jpg","cover_image":"https://cdn.steemitimages.com/DQmYTPN2BsCBaebZdygnQBRd1q7HJb1ocYg4DEnEdrdXiDb/BigchaindDB%20key%20visual%20background%202000x1336%20(1).jpg","name":"BigchainDB","about":"The blockchain database ","location":"Berlin, Germany ","website":"https://www.bigchaindb.com/"}}
memo keySTM5M77QKaGAStFx3r6r6ER1vTZ1fg7NCG3N4tUCBJaAw7t2dDrt3
Transaction InfoBlock #25117373/Trx 548fdddbe7bb4616411ee4d2816a2736c6983cb5
View Raw JSON Data
{
  "block": 25117373,
  "op": [
    "account_update",
    {
      "account": "bigchaindb",
      "json_metadata": "{\"profile\":{\"profile_image\":\"https://cdn.steemitimages.com/DQmQD17oh3wb2V8o4SjNDa3y2GWgUo4tTVNvbjmJwacJbEd/BDB%20icon%20original%201200x1200.jpg\",\"cover_image\":\"https://cdn.steemitimages.com/DQmYTPN2BsCBaebZdygnQBRd1q7HJb1ocYg4DEnEdrdXiDb/BigchaindDB%20key%20visual%20background%202000x1336%20(1).jpg\",\"name\":\"BigchainDB\",\"about\":\"The blockchain database \",\"location\":\"Berlin, Germany \",\"website\":\"https://www.bigchaindb.com/\"}}",
      "memo_key": "STM5M77QKaGAStFx3r6r6ER1vTZ1fg7NCG3N4tUCBJaAw7t2dDrt3"
    }
  ],
  "op_in_trx": 0,
  "timestamp": "2018-08-16T12:03:30",
  "trx_id": "548fdddbe7bb4616411ee4d2816a2736c6983cb5",
  "trx_in_block": 48,
  "virtual_op": 0
}
bigchaindbupdated their account properties
2018/08/16 12:00:42
accountbigchaindb
json metadata{"profile":{"profile_image":"https://cdn.steemitimages.com/DQmZzLg4HDoMzjLb4oQt6y295B4tGtJM7eaSiWSTCiCJPLx/BDB%20icon%20original%20600x600%20(2).png","cover_image":"https://cdn.steemitimages.com/DQmdwzxCmCH6hPGqWR5dR76o3ipm2SYstVjmZknR13Kdz7P/aurora-making-2.jpg","name":"BigchainDB","about":"The blockchain database ","location":"Berlin, Germany ","website":"https://www.bigchaindb.com/"}}
memo keySTM5M77QKaGAStFx3r6r6ER1vTZ1fg7NCG3N4tUCBJaAw7t2dDrt3
Transaction InfoBlock #25117317/Trx fa3b2398e40e4d4c235602d2c5cf33a509c3efc8
View Raw JSON Data
{
  "block": 25117317,
  "op": [
    "account_update",
    {
      "account": "bigchaindb",
      "json_metadata": "{\"profile\":{\"profile_image\":\"https://cdn.steemitimages.com/DQmZzLg4HDoMzjLb4oQt6y295B4tGtJM7eaSiWSTCiCJPLx/BDB%20icon%20original%20600x600%20(2).png\",\"cover_image\":\"https://cdn.steemitimages.com/DQmdwzxCmCH6hPGqWR5dR76o3ipm2SYstVjmZknR13Kdz7P/aurora-making-2.jpg\",\"name\":\"BigchainDB\",\"about\":\"The blockchain database \",\"location\":\"Berlin, Germany \",\"website\":\"https://www.bigchaindb.com/\"}}",
      "memo_key": "STM5M77QKaGAStFx3r6r6ER1vTZ1fg7NCG3N4tUCBJaAw7t2dDrt3"
    }
  ],
  "op_in_trx": 0,
  "timestamp": "2018-08-16T12:00:42",
  "trx_id": "fa3b2398e40e4d4c235602d2c5cf33a509c3efc8",
  "trx_in_block": 11,
  "virtual_op": 0
}
2018/08/16 11:58:30
idfollow
json["follow",{"follower":"bigchaindb","following":"daniel.duseuil","what":["blog"]}]
required auths[]
required posting auths["bigchaindb"]
Transaction InfoBlock #25117273/Trx e542c93da4653e5b22780214cccb820cf31e9876
View Raw JSON Data
{
  "block": 25117273,
  "op": [
    "custom_json",
    {
      "id": "follow",
      "json": "[\"follow\",{\"follower\":\"bigchaindb\",\"following\":\"daniel.duseuil\",\"what\":[\"blog\"]}]",
      "required_auths": [],
      "required_posting_auths": [
        "bigchaindb"
      ]
    }
  ],
  "op_in_trx": 0,
  "timestamp": "2018-08-16T11:58:30",
  "trx_id": "e542c93da4653e5b22780214cccb820cf31e9876",
  "trx_in_block": 43,
  "virtual_op": 0
}
blocktradessent 0.806 STEEM to @bigchaindb
2018/08/14 22:19:12
amount0.806 STEEM
fromblocktrades
memo
tobigchaindb
Transaction InfoBlock #25072099/Trx 55ec2ce6647a17d022565a368e35091acc6adb02
View Raw JSON Data
{
  "block": 25072099,
  "op": [
    "transfer",
    {
      "amount": "0.806 STEEM",
      "from": "blocktrades",
      "memo": "",
      "to": "bigchaindb"
    }
  ],
  "op_in_trx": 0,
  "timestamp": "2018-08-14T22:19:12",
  "trx_id": "55ec2ce6647a17d022565a368e35091acc6adb02",
  "trx_in_block": 16,
  "virtual_op": 0
}
blocktradescreated a new account: @bigchaindb
2018/08/14 22:19:12
active{"account_auths":[],"key_auths":[["STM5j1h3GAETRhRZViw2W23S7iRaa1kTwP2Lk1VeMEp79J35AjyDZ",1]],"weight_threshold":1}
creatorblocktrades
fee3.000 STEEM
json metadata{}
memo keySTM5M77QKaGAStFx3r6r6ER1vTZ1fg7NCG3N4tUCBJaAw7t2dDrt3
new account namebigchaindb
owner{"account_auths":[],"key_auths":[["STM5y9niu57WH1egWufDHfW2ocx5faF83RngzPM8bKpWB2ZPQi4Dm",1]],"weight_threshold":1}
posting{"account_auths":[],"key_auths":[["STM5fmCb1myt2BpQBnA4SQL1XMApoWRhq6znuxdQVorVvq1k4Kf6a",1]],"weight_threshold":1}
Transaction InfoBlock #25072099/Trx 55ec2ce6647a17d022565a368e35091acc6adb02
View Raw JSON Data
{
  "block": 25072099,
  "op": [
    "account_create",
    {
      "active": {
        "account_auths": [],
        "key_auths": [
          [
            "STM5j1h3GAETRhRZViw2W23S7iRaa1kTwP2Lk1VeMEp79J35AjyDZ",
            1
          ]
        ],
        "weight_threshold": 1
      },
      "creator": "blocktrades",
      "fee": "3.000 STEEM",
      "json_metadata": "{}",
      "memo_key": "STM5M77QKaGAStFx3r6r6ER1vTZ1fg7NCG3N4tUCBJaAw7t2dDrt3",
      "new_account_name": "bigchaindb",
      "owner": {
        "account_auths": [],
        "key_auths": [
          [
            "STM5y9niu57WH1egWufDHfW2ocx5faF83RngzPM8bKpWB2ZPQi4Dm",
            1
          ]
        ],
        "weight_threshold": 1
      },
      "posting": {
        "account_auths": [],
        "key_auths": [
          [
            "STM5fmCb1myt2BpQBnA4SQL1XMApoWRhq6znuxdQVorVvq1k4Kf6a",
            1
          ]
        ],
        "weight_threshold": 1
      }
    }
  ],
  "op_in_trx": 0,
  "timestamp": "2018-08-14T22:19:12",
  "trx_id": "55ec2ce6647a17d022565a368e35091acc6adb02",
  "trx_in_block": 16,
  "virtual_op": 0
}

Account Metadata

POSTING JSON METADATA
profile{"name":"BigchainDB","about":"The blockchain database ","location":"Berlin, Germany ","website":"https://www.bigchaindb.com/","profile_image":"https://cdn.steemitimages.com/DQmQD17oh3wb2V8o4SjNDa3y2GWgUo4tTVNvbjmJwacJbEd/BDB%20icon%20original%201200x1200.jpg","cover_image":"https://cdn.steemitimages.com/DQmYTPN2BsCBaebZdygnQBRd1q7HJb1ocYg4DEnEdrdXiDb/BigchaindDB%20key%20visual%20background%202000x1336%20(1).jpg"}
JSON METADATA
profile{"name":"BigchainDB","about":"The blockchain database ","location":"Berlin, Germany ","website":"https://www.bigchaindb.com/","profile_image":"https://cdn.steemitimages.com/DQmQD17oh3wb2V8o4SjNDa3y2GWgUo4tTVNvbjmJwacJbEd/BDB%20icon%20original%201200x1200.jpg","cover_image":"https://cdn.steemitimages.com/DQmYTPN2BsCBaebZdygnQBRd1q7HJb1ocYg4DEnEdrdXiDb/BigchaindDB%20key%20visual%20background%202000x1336%20(1).jpg"}
{
  "posting_json_metadata": {
    "profile": {
      "name": "BigchainDB",
      "about": "The blockchain database ",
      "location": "Berlin, Germany ",
      "website": "https://www.bigchaindb.com/",
      "profile_image": "https://cdn.steemitimages.com/DQmQD17oh3wb2V8o4SjNDa3y2GWgUo4tTVNvbjmJwacJbEd/BDB%20icon%20original%201200x1200.jpg",
      "cover_image": "https://cdn.steemitimages.com/DQmYTPN2BsCBaebZdygnQBRd1q7HJb1ocYg4DEnEdrdXiDb/BigchaindDB%20key%20visual%20background%202000x1336%20(1).jpg"
    }
  },
  "json_metadata": {
    "profile": {
      "name": "BigchainDB",
      "about": "The blockchain database ",
      "location": "Berlin, Germany ",
      "website": "https://www.bigchaindb.com/",
      "profile_image": "https://cdn.steemitimages.com/DQmQD17oh3wb2V8o4SjNDa3y2GWgUo4tTVNvbjmJwacJbEd/BDB%20icon%20original%201200x1200.jpg",
      "cover_image": "https://cdn.steemitimages.com/DQmYTPN2BsCBaebZdygnQBRd1q7HJb1ocYg4DEnEdrdXiDb/BigchaindDB%20key%20visual%20background%202000x1336%20(1).jpg"
    }
  }
}

Auth Keys

Owner
Single Signature
Public Keys
STM5y9niu57WH1egWufDHfW2ocx5faF83RngzPM8bKpWB2ZPQi4Dm1/1
Active
Single Signature
Public Keys
STM5j1h3GAETRhRZViw2W23S7iRaa1kTwP2Lk1VeMEp79J35AjyDZ1/1
Posting
Single Signature
Public Keys
STM5fmCb1myt2BpQBnA4SQL1XMApoWRhq6znuxdQVorVvq1k4Kf6a1/1
Memo
STM5M77QKaGAStFx3r6r6ER1vTZ1fg7NCG3N4tUCBJaAw7t2dDrt3
{
  "owner": {
    "weight_threshold": 1,
    "account_auths": [],
    "key_auths": [
      [
        "STM5y9niu57WH1egWufDHfW2ocx5faF83RngzPM8bKpWB2ZPQi4Dm",
        1
      ]
    ]
  },
  "active": {
    "weight_threshold": 1,
    "account_auths": [],
    "key_auths": [
      [
        "STM5j1h3GAETRhRZViw2W23S7iRaa1kTwP2Lk1VeMEp79J35AjyDZ",
        1
      ]
    ]
  },
  "posting": {
    "weight_threshold": 1,
    "account_auths": [],
    "key_auths": [
      [
        "STM5fmCb1myt2BpQBnA4SQL1XMApoWRhq6znuxdQVorVvq1k4Kf6a",
        1
      ]
    ]
  },
  "memo": "STM5M77QKaGAStFx3r6r6ER1vTZ1fg7NCG3N4tUCBJaAw7t2dDrt3"
}

Witness Votes

0 / 30
No active witness votes.
[]