Blockchain-Assisted Comprehensive Key Management in CP-ABE for Cloud-Stored Data

被引:13
|
作者
Liu, Suhui [1 ]
Yu, Jiguo [2 ,3 ]
Chen, Liquan [1 ]
Chai, Baobao [4 ]
机构
[1] Southeast Univ, Sch Cyber Sci & Engn, Nanjing 211102, Peoples R China
[2] Qilu Univ Technol, Big Data Inst, Jinan 250353, Peoples R China
[3] Qilu Univ Technol, Shandong Fundamental Res Ctr Comp Sci, Jinan 250353, Shandong, Peoples R China
[4] Shandong Univ Sci & Technol, Sch Comp Sci & Engn, Qingdao 266590, Peoples R China
关键词
Ciphertext-policy attribute-based encryption; key management; cloud; blockchain; hyperledger fabric; ATTRIBUTE-BASED ENCRYPTION; THRESHOLD MULTI-AUTHORITY; ACCESS-CONTROL; SCHEME;
D O I
10.1109/TNSM.2022.3185237
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Public clouds have drawn increasing attention from academia and industry due to their high computational and storage performance. Attribute-based encryption (ABE) is the most promising technology to simultaneously achieve confidentiality and fine-grained access control of the cloud-stored data. However, traditional ABE that relies on centralized authority faces several key management issues, such as the key escrow, key distribution, key tracking, key update, and heavy communication and computing overhead for users, which will cause security concerns and impede its widespread application. On the other hand, blockchain technology preserves distributed ledgers to ensure the immutability and transparency of data, which can further solve the security vulnerabilities caused by system centralization. This paper proposes a blockchain-assisted transformation method to solve all the key management problems mentioned above in ciphertext-policy ABE by utilizing technologies such as secret sharing protocols. In addition, our transformation method realizes two additional benefits: outsourced decryption and efficient user revocation, which are extremely valuable for practical implementations. We simulate a demonstration by adopting the most popular permissioned blockchain, Hyperledger Fabric. The security and efficiency analysis reveals that the scheme obtained from our transformation method can achieve replayable chosen-ciphertext security with extremely efficient decryption.
引用
收藏
页码:1745 / 1758
页数:14
相关论文
共 50 条
  • [21] Enabling Dynamic and Efficient Data Access Control in Cloud Computing based on Attribute Certificate Management and CP-ABE
    Fugkeaw, Somchart
    Sato, Hiroyuki
    2018 26TH EUROMICRO INTERNATIONAL CONFERENCE ON PARALLEL, DISTRIBUTED, AND NETWORK-BASED PROCESSING (PDP 2018), 2018, : 454 - 461
  • [22] Accountable CP-ABE with Public Verifiability: How to Effectively Protect the Outsourced Data in Cloud
    Yu, Gang
    Ma, Xiaoxiao
    Cao, Zhenfu
    Zeng, Guang
    Han, Wenbao
    INTERNATIONAL JOURNAL OF FOUNDATIONS OF COMPUTER SCIENCE, 2017, 28 (06) : 705 - 723
  • [23] A Blockchain and CP-ABE Based Access Control Scheme with Fine-Grained Revocation of Attributes in Cloud Health
    Lu, Ye
    Feng, Tao
    Liu, Chunyan
    Zhang, Wenbo
    CMC-COMPUTERS MATERIALS & CONTINUA, 2024, 78 (02): : 2787 - 2811
  • [24] A Blockchain-Assisted Certificateless Public Cloud Data Integrity Auditing Scheme
    Du, Jianming
    Dong, Guofang
    Ning, Juangui
    Xu, Zhengnan
    Yang, Ruicheng
    IEEE ACCESS, 2023, 11 : 123018 - 123029
  • [25] A Lightweight CP-ABE Scheme for EHR Over Cloud Based on Blockchain and Secure Multi-Party Computation
    Qiao, Jiawen
    Wang, Na
    Fu, Junsong
    Deng, Lunzhi
    Wang, Jingjing
    Liu, Jianwei
    TRANSACTIONS ON EMERGING TELECOMMUNICATIONS TECHNOLOGIES, 2025, 36 (02):
  • [26] Privacy-Preserving and Efficient Public Key Encryption with Keyword Search Based on CP-ABE in Cloud
    Zhou, Yunhong
    Zheng, Shihui
    Wang, Licheng
    CRYPTOGRAPHY, 2020, 4 (04) : 1 - 14
  • [27] A Study on Lightweight Anonymous CP-ABE Access Control for Secure Data Protection in Cloud Environment
    Hwang, Yong-Woon
    Lee, Im-Yeong
    2019 INTERNATIONAL CONFERENCE ON INFORMATION TECHNOLOGY AND COMPUTER COMMUNICATIONS (ITCC 2019), 2019, : 107 - 111
  • [28] Data Rights Confirmation Scheme Based on Auditable Ciphertext CP-ABE in the Cloud Storage Environment
    Zhang, Lingyun
    Chen, Yuling
    Luo, Yun
    He, Zhongxiang
    Li, Tao
    APPLIED SCIENCES-BASEL, 2023, 13 (07):
  • [29] Hybrid blockchain based medical data sharing with the optimized CP-ABE for e-Health systems
    Mishra A.K.
    Mohapatra Y.
    International Journal of Information Technology, 2024, 16 (1) : 121 - 130
  • [30] Multi-Authority Scheme based CP-ABE with Attribute Revocation for Cloud Data Storage
    Ramesh, Dharavath
    Priya, Rashmi
    2016 INTERNATIONAL CONFERENCE ON MICROELECTRONICS, COMPUTING AND COMMUNICATIONS (MICROCOM), 2016,