Blockchain-Assisted Comprehensive Key Management in CP-ABE for Cloud-Stored Data

被引:13
|
作者
Liu, Suhui [1 ]
Yu, Jiguo [2 ,3 ]
Chen, Liquan [1 ]
Chai, Baobao [4 ]
机构
[1] Southeast Univ, Sch Cyber Sci & Engn, Nanjing 211102, Peoples R China
[2] Qilu Univ Technol, Big Data Inst, Jinan 250353, Peoples R China
[3] Qilu Univ Technol, Shandong Fundamental Res Ctr Comp Sci, Jinan 250353, Shandong, Peoples R China
[4] Shandong Univ Sci & Technol, Sch Comp Sci & Engn, Qingdao 266590, Peoples R China
关键词
Ciphertext-policy attribute-based encryption; key management; cloud; blockchain; hyperledger fabric; ATTRIBUTE-BASED ENCRYPTION; THRESHOLD MULTI-AUTHORITY; ACCESS-CONTROL; SCHEME;
D O I
10.1109/TNSM.2022.3185237
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Public clouds have drawn increasing attention from academia and industry due to their high computational and storage performance. Attribute-based encryption (ABE) is the most promising technology to simultaneously achieve confidentiality and fine-grained access control of the cloud-stored data. However, traditional ABE that relies on centralized authority faces several key management issues, such as the key escrow, key distribution, key tracking, key update, and heavy communication and computing overhead for users, which will cause security concerns and impede its widespread application. On the other hand, blockchain technology preserves distributed ledgers to ensure the immutability and transparency of data, which can further solve the security vulnerabilities caused by system centralization. This paper proposes a blockchain-assisted transformation method to solve all the key management problems mentioned above in ciphertext-policy ABE by utilizing technologies such as secret sharing protocols. In addition, our transformation method realizes two additional benefits: outsourced decryption and efficient user revocation, which are extremely valuable for practical implementations. We simulate a demonstration by adopting the most popular permissioned blockchain, Hyperledger Fabric. The security and efficiency analysis reveals that the scheme obtained from our transformation method can achieve replayable chosen-ciphertext security with extremely efficient decryption.
引用
收藏
页码:1745 / 1758
页数:14
相关论文
共 50 条
  • [1] Data encryption method using CP-ABE with symmetric key algorithm in blockchain network
    Lee, Taerim
    Moon, Ho-se
    Jang, Juwook
    12TH INTERNATIONAL CONFERENCE ON ICT CONVERGENCE (ICTC 2021): BEYOND THE PANDEMIC ERA WITH ICT CONVERGENCE INNOVATION, 2021, : 1371 - 1373
  • [2] A key-insulated CP-ABE with key exposure accountability for secure data sharing in the cloud
    Hong, Hanshu
    Sun, Zhixin
    Liu, Ximeng
    KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS, 2016, 10 (05): : 2394 - 2406
  • [3] Data security sharing method based on CP-ABE and blockchain
    Zhang, Zhijun
    Ren, Xiaojun
    Journal of Intelligent and Fuzzy Systems, 2021, 40 (02): : 2767 - 2777
  • [4] Data security sharing method based on CP-ABE and blockchain
    Zhang, Zhijun
    Ren, Xiaojun
    JOURNAL OF INTELLIGENT & FUZZY SYSTEMS, 2021, 40 (02) : 2767 - 2777
  • [5] Blockchain data privacy protection modeling based on CP-ABE algorithm
    Dang, Qian
    Qiu, Yu
    Sun, Biying
    Yang, Zhengwei
    Liu, Xinrui
    INTERNATIONAL JOURNAL OF EMERGING ELECTRIC POWER SYSTEMS, 2023, 24 (05) : 681 - 691
  • [6] Efficient CP-ABE Attribute/Key Management for IoT Applications
    Touati, Lyes
    Challal, Yacine
    CIT/IUCC/DASC/PICOM 2015 IEEE INTERNATIONAL CONFERENCE ON COMPUTER AND INFORMATION TECHNOLOGY - UBIQUITOUS COMPUTING AND COMMUNICATIONS - DEPENDABLE, AUTONOMIC AND SECURE COMPUTING - PERVASIVE INTELLIGENCE AND COMPUTING, 2015, : 343 - 350
  • [7] Cloud storage data protection mechanisms based on CP-ABE algorithm
    Song, Kaibo
    Luo, Jun
    Sun, Jintao
    Huazhong Keji Daxue Xuebao (Ziran Kexue Ban)/Journal of Huazhong University of Science and Technology (Natural Science Edition), 2012, 40 (SUPPL.1): : 266 - 269
  • [8] Decentralized CP-ABE Scheme for Enhanced University Data Security Using Blockchain
    Zhao, Zhao
    Guan, Han
    Li, Zixuan
    JOURNAL OF CIRCUITS SYSTEMS AND COMPUTERS, 2025, 34 (03)
  • [9] PHAS-HEKR-CP-ABE: partially policy-hidden CP-ABE with highly efficient key revocation in cloud data sharing system
    Wei Zhang
    Zhishuo Zhang
    Hu Xiong
    Zhiguang Qin
    Journal of Ambient Intelligence and Humanized Computing, 2022, 13 : 613 - 627
  • [10] PHAS-HEKR-CP-ABE: partially policy-hidden CP-ABE with highly efficient key revocation in cloud data sharing system
    Zhang, Wei
    Zhang, Zhishuo
    Xiong, Hu
    Qin, Zhiguang
    JOURNAL OF AMBIENT INTELLIGENCE AND HUMANIZED COMPUTING, 2022, 13 (01) : 613 - 627