Hierarchical Attribute-based Access Control with Authentication for Outsourced Data in Cloud Computing

被引:27
|
作者
Liu, Xuejiao [1 ]
Xia, Yingjie [1 ]
Jiang, Shasha [1 ]
Xia, Fubiao [2 ]
Wang, Yanbo [3 ]
机构
[1] Hangzhou Normal Univ, Inst Serv Engn, Hangzhou, Zhejiang, Peoples R China
[2] Univ Birmingham, Sch Comp Sci, Birmingham, W Midlands, England
[3] Zhejiang Power Corp, Informat & Commun Branch, Hangzhou, Zhejiang, Peoples R China
基金
国家高技术研究发展计划(863计划);
关键词
CP-ABE; ABS; XACML; Access Control; ENCRYPTION;
D O I
10.1109/TrustCom.2013.60
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Access control is one of the most important security mechanisms in cloud computing. Attributed based encryption provides an approach that allows data owners to integrate data access policies within the encrypted data. However, little work has been done to explore flexible authorization in specifying the data user's privileges and enforcing the data owner's policy in cloud based environments. In this paper, we propose a hierarchical attribute based access control scheme by extending ciphertext-policy attribute-based encryption (CP-ABE) with a hierarchical structure of multi-authorities and exploiting attribute-based signature (ABS). The proposed scheme not only achieves scalability due to its hierarchical structure, but also inherits fine-grained access control with authentication in supporting write privilege on outsourced data in cloud computing. In addition, we decouple the task of policy management from security enforcement by using the extensible access control markup language (XACML) framework. Extensive analysis shows that our scheme is both efficient and scalable in dealing with access control for outsourced data in cloud computing.
引用
收藏
页码:477 / 484
页数:8
相关论文
共 50 条
  • [1] An efficient attribute-based hierarchical data access control scheme in cloud computing
    He, Heng
    Zheng, Liang-han
    Li, Peng
    Deng, Li
    Huang, Li
    Chen, Xiang
    [J]. HUMAN-CENTRIC COMPUTING AND INFORMATION SCIENCES, 2020, 10 (01)
  • [2] Auditable σ-Time Outsourced Attribute-Based Encryption for Access Control in Cloud Computing
    Ning, Jianting
    Cao, Zhenfu
    Dong, Xiaolei
    Liang, Kaitai
    Ma, Hui
    Wei, Lifei
    [J]. IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2018, 13 (01) : 94 - 105
  • [3] Verifiable and Exculpable Outsourced Attribute-Based Encryption for Access Control in Cloud Computing
    Ma, Hui
    Zhang, Rui
    Wan, Zhiguo
    Lu, Yao
    Lin, Suqing
    [J]. IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2017, 14 (06) : 679 - 692
  • [4] Comments on "Verifiable and Exculpable Outsourced Attribute-Based Encryption for Access Control in Cloud Computing"
    Xiong, Hu
    Sun, Jianfei
    [J]. IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2017, 14 (04) : 461 - 462
  • [5] OUTSOURCED ATTRIBUTE-BASED SIGNCRYPTION IN THE CLOUD COMPUTING
    Negalign, Hundera W.
    Xiong, Hu
    Addis, Assefa A.
    Ashenafi, Gemechu Y.
    Dagmawit, Geresu M.
    [J]. 2018 15TH INTERNATIONAL COMPUTER CONFERENCE ON WAVELET ACTIVE MEDIA TECHNOLOGY AND INFORMATION PROCESSING (ICCWAMTIP), 2018, : 40 - 44
  • [6] Attribute-based access control model for cloud computing
    Wang, Jingyu
    Feng, Lixiao
    Zheng, Xuefeng
    [J]. Zhongnan Daxue Xuebao (Ziran Kexue Ban)/Journal of Central South University (Science and Technology), 2015, 46 (06): : 2090 - 2097
  • [7] Traceable Hierarchical Attribute-based Authentication for the Cloud
    Yang, Huihui
    Oleshchuk, Vladimir A.
    [J]. 2015 IEEE CONFERENCE ON COMMUNICATIONS AND NETWORK SECURITY (CNS), 2015, : 685 - 689
  • [8] HASBE: A Hierarchical Attribute-Based Solution for Flexible and Scalable Access Control in Cloud Computing
    Wan, Zhiguo
    Liu, Jun'e
    Deng, Robert H.
    [J]. IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2012, 7 (02) : 743 - 754
  • [9] A Modified Hierarchical Attribute-Based Encryption Access Control Method for Mobile Cloud Computing
    Xie, Yuanpeng
    Wen, Hong
    Wu, Bin
    Jiang, Yixin
    Meng, Jiaxiao
    [J]. IEEE TRANSACTIONS ON CLOUD COMPUTING, 2019, 7 (02) : 383 - 391
  • [10] Attribute-Based Data and Privilege Hybrid Access Control Scheme in Cloud Computing
    Liu, Qin
    Li, Pengju
    Yu, Chunwu
    [J]. Computer Engineering and Applications, 2024, 60 (13) : 276 - 286