返回
Secure and Efficient Attribute-Based Access Control for Multiauthority Cloud Storage
DOI:10.1109/JSYST.2016.2633559.png)
摘要
En 中文
Cloud storage facilitates both individuals and enterprises to cost effectively share their data over the Internet. However, this also brings difficult challenges to the access control of shared data since few cloud servers can be fully trusted. Ciphertext-policy attribute-based encryption (CP-ABE) is a promising approach that enables the data owners themselves to place fine-grained and cryptographically-enforced access control over outsourced data. In this paper, we present secure and cost-effective attribute-based data access control for cloud storage systems. Specifically, we construct a multiauthority CP-ABE scheme that features: 1) the system does not need a fully trusted central authority, and all attribute authorities independently issue secret keys for users; 2) each attribute authority can dynamically remove any user from its domain such that those revoked users cannot access subsequently outsourced data; 3) cloud servers can update the encrypted data from the current time period to the next one such that the revoked users cannot access those previously available data; and 4) the update of secret keys and ciphertext is performed in a public way. We show the merits of our scheme by comparing it with the related works, and further implement it to demonstrate its practicality. In addition, the proposed scheme is proven secure in the random oracle model.
Keyword:
Access control
cloud storage
multiauthority ciphertext-policy attribute-based encryption (CP-ABE)
public update
revocation
AI总结
对已上传原文的论文进行重点信息的提取,主要内容包括:简要概述、研究摘要、背景介绍、关键亮点、图文解析、展望与总结。
期刊
I
IF:
2.4
论文数:
4.5K
被引数:
387
机构
引用论文
Expressive, Efficient, and Revocable Data Access Control for Multi-Authority Cloud Storage面向多权限云存储的可表达、高效、可撤销的数据访问控制
Scalable and Secure Sharing of Personal Health Records in Cloud Computing Using Attribute-Based Encryption使用基于属性的加密在云计算中实现个人健康记录的可扩展和安全共享

