Securing Outsourced Data in the Multi-Authority Cloud with Fine-Grained Access Control and Efficient Attribute Revocation

被引:12
|
作者
Zhou, Junwei [1 ]
Duan, Hui [2 ]
Liang, Kaitai [3 ]
Yan, Qiao [2 ]
Chen, Fei [2 ]
Yu, F. Richard [4 ]
Wu, Jieming [2 ]
Chen, Jianyong [2 ]
机构
[1] Wuhan Univ Technol, Comp Sci & Technol, Wuhan, Hubei, Peoples R China
[2] Shenzhen Univ, Dept Comp Sci & Software Engn, Shenzhen, Peoples R China
[3] Manchester Metropolitan Univ, Sch Comp Math & Digital Technol, Manchester, Lancs, England
[4] Carleton Univ, Dept Syst & Comp Engn, Ottawa, ON, Canada
来源
COMPUTER JOURNAL | 2017年 / 60卷 / 08期
基金
中国国家自然科学基金; 英国工程与自然科学研究理事会;
关键词
cloud storage; fine-grained access control; CP-ABE; multiple authorities; attribute revocation; PROXY RE-ENCRYPTION;
D O I
10.1093/comjnl/bxx017
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Data outsourcing is a promising service for data owners, where their data are stored on a cloud storage provider. Since the cloud is not fully trusted, data access control has become a challenging issue in the Cloud Storage System (CSS). Ciphertext-Policy Attribute-Based Encryption (CP-ABE) is a feasible technique for ensuring access control in the CSS, where an attribute authority is responsible to manage attributes and distribute keys. In this paper, we propose a novel revocable Multi-Authority CP-ABE scheme, in which the access policy can be constructed as an arbitrary tree rather than a matrix used by existing schemes. The tree-like policy makes our scheme more flexible. Consequently, the encryption, decryption and attribute revocation operations are also more efficient. Our scheme is also proved to be secure under the standard assumption. It can resist user collusion attack, while the attribute revocation operation also achieves both forward security and backward security. Simulation results show that our scheme is highly efficient.
引用
收藏
页码:1210 / 1222
页数:13
相关论文
共 50 条
  • [41] A revocable multi-authority fine-grained access control architecture against ciphertext rollback attack for mobile edge computing
    Zhang, Zhishuo
    Huang, Wen
    Zhou, Shijie
    Liao, Yongjian
    JOURNAL OF SYSTEMS ARCHITECTURE, 2022, 129
  • [42] Efficient decentralized multi-authority attribute based encryption for mobile cloud data storage
    Sandor, Voundi Koe Arthur
    Lin, Yaping
    Li, Xiehua
    Lin, Feng
    Zhang, Shiwen
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2019, 129 : 25 - 36
  • [43] Fine-Grained Access Control with User Revocation in Smart Manufacturing
    Gomez-Marin, Ernesto
    Martintoni, Davide
    Senni, Valerio
    Castillo, Encarnacion
    Parrilla, Luis
    ELECTRONICS, 2023, 12 (13)
  • [44] Fine-grained data access control with attribute-hiding policy for cloud-based IoT
    Hao, Jialu
    Huang, Cheng
    Ni, Jianbing
    Rong, Hong
    Xian, Ming
    Shen, Xuemin
    COMPUTER NETWORKS, 2019, 153 : 1 - 10
  • [45] Reliable Access Control for Multi-authority in Cloud Storage
    Ren, Yongjun
    Yang, Zhenqi
    Wang, Jin
    Fang, Liming
    49TH ANNUAL IEEE INTERNATIONAL CARNAHAN CONFERENCE ON SECURITY TECHNOLOGY (ICCST), 2015, : 113 - 116
  • [46] MULTI-AUTHORITY TRUST ACCESS CONTROL FOR CLOUD STORAGE
    Riad, Khaled
    PROCEEDINGS OF 2016 4TH IEEE INTERNATIONAL CONFERENCE ON CLOUD COMPUTING AND INTELLIGENCE SYSTEMS (IEEE CCIS 2016), 2016, : 429 - 433
  • [47] Secure, efficient and revocable multi-authority access control system in cloud storage
    Li, Qi
    Ma, Jianfeng
    Li, Rui
    Liu, Ximeng
    Xiong, Jinbo
    Chen, Danwei
    COMPUTERS & SECURITY, 2016, 59 : 45 - 59
  • [48] Multi-authority ABE for access control in cloud storage
    Li, Xie-Hua
    Zhang, Meng-Meng
    Liu, Hong
    Wang, Yong-Jun
    Hunan Daxue Xuebao/Journal of Hunan University Natural Sciences, 2015, 42 (10): : 133 - 140
  • [49] Towards a fine-grained access control for Cloud
    Msahli, Mounira
    Chen, Xiuzhen
    Serhrouchni, Ahmed
    2014 IEEE 11TH INTERNATIONAL CONFERENCE ON E-BUSINESS ENGINEERING (ICEBE), 2014, : 286 - 291
  • [50] Fine-grained access control for cloud computing
    Ye, Xinfeng
    Khoussainov, Bakh
    INTERNATIONAL JOURNAL OF GRID AND UTILITY COMPUTING, 2013, 4 (2-3) : 160 - 168