PriGuarder: A Privacy-Aware Access Control Approach Based on Attribute Fuzzy Grouping in Cloud Environments

被引:6
作者
Lin, Li [1 ,2 ,3 ]
Liu, Ting-Ting [1 ,2 ]
Li, Shuang [1 ,2 ]
Magurawalage, Chathura M. Sarathchandra [4 ]
Tu, Shan-Shan [1 ,2 ]
机构
[1] Beijing Univ Technol, Fac Informat Technol, Coll Comp Sci, Beijing 100124, Peoples R China
[2] Beijing Key Lab Trusted Comp, Beijing 100124, Peoples R China
[3] Natl Engn Lab Classified Informat Secur Protect, Beijing 100124, Peoples R China
[4] Univ Essex, Dept Comp Sci & Elect Engn, Colchester CO4 3SQ, Essex, England
基金
美国国家科学基金会;
关键词
Data privacy protection; access control; attribute fuzzy grouping; MULTI-AUTHORITY; ENCRYPTION; SYSTEMS; STORAGE;
D O I
10.1109/ACCESS.2017.2780763
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Data privacy protection is crucial to cloud computing since privacy leakage may prevent users from using cloud services. To ensure data privacy, we propose PriGuarder, a novel privacy-aware access control method. This method spans the three stages of a cloud service, i.e., user registration, data creation, and data access. At each stage, users can choose two modes to interact with the cloud service provider, i.e., direct or indirect. With the indirect mode, an attribute fuzzy grouping scheme is introduced to ensure user identity privacy and attribute privacy in all the three stages. Furthermore, exploiting data encryption and timestamp techniques, new access control protocols are proposed to regulate interactions between users and the cloud service provider. We illustrate the use of our method in the context of Amazon S3. Theoretical analysis and comprehensive simulation experiments have been conducted, which demonstrate the efficacy of PriGuarder.
引用
收藏
页码:1882 / 1893
页数:12
相关论文
共 28 条
[1]  
Ahuja R., IEEE T CLO IN PRESS
[2]  
Chase M., 2011, P ACM C COMP COMM SE, P121
[3]   Privacy Preserving Data Sharing With Anonymous ID Assignment [J].
Dunning, Larry A. ;
Kresman, Ray .
IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2013, 8 (02) :402-413
[4]  
Fan P., REV TOP 10 INFORM LE
[5]  
Gao Z.-L., FACEBOOK CLOUD
[6]  
Goyal V., 2006, P 2006 INT C PRIVACY, P1
[7]  
Green M., 2011, P 20 USENIX C SEC, P34
[8]  
Jensen M., 2010, 2010 IEEE 3rd International Conference on Cloud Computing (CLOUD 2010), P540, DOI 10.1109/CLOUD.2010.61
[9]  
Jie Huang, 2012, 2012 41st International Conference on Parallel Processing Workshops (ICPPW 2012), P279, DOI 10.1109/ICPPW.2012.42
[10]  
Jing Y., CLOUD COMPUTING HAS