BACC: Blockchain-Based Access Control For Cloud Data

被引:16
作者
Sohrabi, Nasrin [1 ]
Yi, Xun [1 ]
Tari, Zahir [1 ]
Khalil, Ibrahim [1 ]
机构
[1] RMIT Univ, Melbourne, Vic, Australia
来源
PROCEEDINGS OF THE AUSTRALASIAN COMPUTER SCIENCE WEEK MULTICONFERENCE (ACSW 2020) | 2020年
关键词
Blockchain; Smart Contract; Access Control; Cloud Computing; Shamir Secret Sharing Scheme; INTERNET;
D O I
10.1145/3373017.3373027
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Controlling the access over the stored data in the cloud is one of the fundamental security requirements, especially with the wide usage of cloud storage servers for nearly most of the enterprise applications. Traditional cloud-based access control solutions are based on a centralized approach (i.e. a cloud server becomes the central authority to control accesses to the data), which makes it difficult to prevent malicious cloud servers from disclosing user's data; and therefore compromising the privacy of the stored data. Additionally, the centralization of authority can cause a single point of failure. Furthermore, to provide confidentiality, which is one of the essential security requirements, user's data is encrypted before it is stored on the cloud. Most of the cloud servers store the decryption keys, after they encrypt the data, in their premises. This compromises data privacy. In this paper we propose a new model that addresses the aforementioned issues. To address the centralization problem, we distributed the access control tasks to smart contracts over a decentralized network, i.e. blockchain. To address the latter, we used Shamir secret sharing scheme to manage the encryption keys. Then we introduced a new type of node, called master node, to our blockchain platform, to store the decryption key parts.
引用
收藏
页数:10
相关论文
共 50 条
  • [41] B-FLACS: blockchain-based flexible lightweight access control scheme for data sharing in cloud
    Qi Tao
    Xiaohui Cui
    [J]. Cluster Computing, 2023, 26 : 3931 - 3941
  • [42] Blockchain-based cloud storage system with CP-ABE-based access control and revocation process
    Sharma, Pratima
    Jindal, Rajni
    Borah, Malaya Dutta
    [J]. JOURNAL OF SUPERCOMPUTING, 2022, 78 (06) : 7700 - 7728
  • [43] Blockchain-based access control architecture for multi-domain environments
    Du, Zhiqiang
    Li, Yunliang
    Fu, Yanfang
    Zheng, Xianghan
    [J]. PERVASIVE AND MOBILE COMPUTING, 2024, 98
  • [44] Blockchain-based cloud storage system with CP-ABE-based access control and revocation process
    Pratima Sharma
    Rajni Jindal
    Malaya Dutta Borah
    [J]. The Journal of Supercomputing, 2022, 78 : 7700 - 7728
  • [45] A Blockchain-based Approach for Access Control in eHealth Scenarios
    Dias, Joao Pedro
    Martins, Angelo
    Ferreira, Hugo Sereno
    [J]. JOURNAL OF INFORMATION ASSURANCE AND SECURITY, 2018, 13 (04): : 125 - 136
  • [46] Blockchain-Based Access Control for the Internet of Things: A Survey
    Abdulrahman, Ebtihal
    Alshehri, Suhair
    Cherif, Asma
    [J]. 2021 IEEE ASIA-PACIFIC CONFERENCE ON COMPUTER SCIENCE AND DATA ENGINEERING (CSDE), 2021,
  • [47] BIoAC: A blockchain-based secure access control management for the Internet of Things
    Roy, Utsa
    Ghosh, Nirnay
    [J]. JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2024, 87
  • [48] Blockchain-Based Access Control for Secure Smart Industry Management Systems
    Kalapaaking, Aditya Pribadi
    Khalil, Ibrahim
    Rahman, Mohammad Saidur
    Bouras, Abdelaziz
    [J]. NETWORK AND SYSTEM SECURITY, NSS 2022, 2022, 13787 : 615 - 630
  • [49] Blockchain-based EHR storage and access control system
    Gupta, Sunil
    Bansiya, Akansha
    Saini, Mansi
    Sidhu, Amuleek
    [J]. INTERNATIONAL JOURNAL OF INFORMATION AND COMPUTER SECURITY, 2023, 21 (1-2) : 70 - 81
  • [50] BorderChain: Blockchain-Based Access Control Framework for the Internet of Things Endpoint
    Oktian, Yustus Eko
    Lee, Sang-Gon
    [J]. IEEE ACCESS, 2021, 9 : 3592 - 3615