Blockchain-Assisted Comprehensive Key Management in CP-ABE for Cloud-Stored Data

被引:19
作者
Liu, Suhui [1 ]
Yu, Jiguo [2 ,3 ]
Chen, Liquan [1 ]
Chai, Baobao [4 ]
机构
[1] Southeast Univ, Sch Cyber Sci & Engn, Nanjing 211102, Peoples R China
[2] Qilu Univ Technol, Big Data Inst, Jinan 250353, Peoples R China
[3] Qilu Univ Technol, Shandong Fundamental Res Ctr Comp Sci, Jinan 250353, Shandong, Peoples R China
[4] Shandong Univ Sci & Technol, Sch Comp Sci & Engn, Qingdao 266590, Peoples R China
来源
IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT | 2023年 / 20卷 / 02期
关键词
Ciphertext-policy attribute-based encryption; key management; cloud; blockchain; hyperledger fabric; ATTRIBUTE-BASED ENCRYPTION; THRESHOLD MULTI-AUTHORITY; ACCESS-CONTROL; SCHEME;
D O I
10.1109/TNSM.2022.3185237
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Public clouds have drawn increasing attention from academia and industry due to their high computational and storage performance. Attribute-based encryption (ABE) is the most promising technology to simultaneously achieve confidentiality and fine-grained access control of the cloud-stored data. However, traditional ABE that relies on centralized authority faces several key management issues, such as the key escrow, key distribution, key tracking, key update, and heavy communication and computing overhead for users, which will cause security concerns and impede its widespread application. On the other hand, blockchain technology preserves distributed ledgers to ensure the immutability and transparency of data, which can further solve the security vulnerabilities caused by system centralization. This paper proposes a blockchain-assisted transformation method to solve all the key management problems mentioned above in ciphertext-policy ABE by utilizing technologies such as secret sharing protocols. In addition, our transformation method realizes two additional benefits: outsourced decryption and efficient user revocation, which are extremely valuable for practical implementations. We simulate a demonstration by adopting the most popular permissioned blockchain, Hyperledger Fabric. The security and efficiency analysis reveals that the scheme obtained from our transformation method can achieve replayable chosen-ciphertext security with extremely efficient decryption.
引用
收藏
页码:1745 / 1758
页数:14
相关论文
共 48 条
[11]   Blockchain-Based Digital Rights Management Scheme via Multiauthority Ciphertext-Policy Attribute-Based Encryption and Proxy Re-Encryption [J].
Gao, Juntao ;
Yu, Haiyong ;
Zhu, Xiuqin ;
Li, Xuelian .
IEEE SYSTEMS JOURNAL, 2021, 15 (04) :5233-5244
[12]  
Goyal V., 2006, Proceedings of the ACM Conference on Computer and Communications Security, P89
[13]  
Green M., 2011, 20 USENIX C SEC USEN, P1
[14]   Self-Verifiable Attribute-Based Keyword Search Scheme for Distributed Data Storage in Fog Computing With Fast Decryption [J].
Gu, Ke ;
Zhang, Wenbin ;
Li, Xiong ;
Jia, Weijia .
IEEE TRANSACTIONS ON NETWORK AND SERVICE MANAGEMENT, 2022, 19 (01) :271-288
[15]   Achieving efficient and Privacy-preserving energy trading based on blockchain and ABE in smart grid [J].
Guan, Zhitao ;
Lu, Xin ;
Yang, Wenti ;
Wu, Longfei ;
Wang, Naiyu ;
Zhang, Zijian .
JOURNAL OF PARALLEL AND DISTRIBUTED COMPUTING, 2021, 147 :34-45
[16]   Attribute-based Multi-Signature and Encryption for EHR Management: A Blockchain-based Solution [J].
Guo, Hao ;
Li, Wanxin ;
Meamari, Ehsan ;
Shal, Chien-Chung ;
Nejad, Mark .
2020 IEEE INTERNATIONAL CONFERENCE ON BLOCKCHAIN AND CRYPTOCURRENCY (IEEE ICBC), 2020,
[17]   O3-R-CP-ABE: An Efficient and Revocable Attribute-Based Encryption Scheme in the Cloud-Assisted IoMT System [J].
Guo, Rui ;
Yang, Geng ;
Shi, Huixian ;
Zhang, Yinghui ;
Zheng, Dong .
IEEE INTERNET OF THINGS JOURNAL, 2021, 8 (11) :8949-8963
[18]   A Traceable and Revocable Ciphertext-Policy Attribute-based Encryption Scheme Based on Privacy Protection [J].
Han, Dezhi ;
Pan, Nannan ;
Li, Kuan-Ching .
IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2022, 19 (01) :316-327
[19]   An Efficient Ciphertext-Policy Attribute-Based Encryption Scheme Supporting Collaborative Decryption With Blockchain [J].
He, Ying ;
Wang, Haiyan ;
Li, Yuan ;
Huang, Ke ;
Leung, Victor C. M. ;
Yu, F. Richard ;
Ming, Zhong .
IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (04) :2722-2733
[20]   Making MA-ABE fully accountable: A blockchain-based approach for secure digital right management [J].
Hei, Yiming ;
Liu, Jianwei ;
Feng, Hanwen ;
Li, Dawei ;
Liu, Yizhong ;
Wu, Qianhong .
COMPUTER NETWORKS, 2021, 191