A Fine-grained Access Control Scheme for Big Data Based on Classification Attributes

被引:0
|
作者
Yang, Tengfei [1 ,2 ]
Shen, Peisong [1 ,2 ]
Tian, Xue [1 ,2 ]
Chen, Chi [1 ,2 ]
机构
[1] Chinese Acad Sci, Inst Informat Engn, State Key Lab Informat Secur, Beijing, Peoples R China
[2] Univ Chinese Acad Sci, Sch Cyber Secur, Beijing, Peoples R China
关键词
ENCRYPTION;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
In order to protect the security and privacy of big data, the cloud storage service needs to enforce effective access control mechanism on user requests. Attribute-Based Encryption is a promising cryptographic access control technique to ensure the end-to-end security of data in cloud. However, the existing ABE researches mainly focus on the efficiency decryption, while the flexibility of policy, the communication cost, and the metadata management of ciphertexts are still challenging issues in the big data environment. In this paper, for the first time, we propose a new distributed, scalable and fine-grained access control scheme based on classification attributes for the cloud object storage. The classification attributes and threshold policies are integrated into an access structure, and then the objects are encrypted with the integrated access structure. The constant-size cipher text components related to attributes can he managed as the corresponding metadata. As a result the encryption complexity and ciphertext storage are reduced. In addition, we present a new label-based access control model with multi-authorities to describe the detailed relationships of entities in our scheme. Besides, the proposed scheme is proved to be secure under I-BDHE assumption, and the system implementation demonstrates the practical feasibility and good performance.
引用
收藏
页码:238 / 245
页数:8
相关论文
共 50 条
  • [21] Fine-grained Access Control Model Based on RBAC
    Gao, Lei
    Pan, Shulin
    AUTOMATION EQUIPMENT AND SYSTEMS, PTS 1-4, 2012, 468-471 : 1667 - +
  • [22] THE RESEARCH OF SPREADSHEET BASED ON FINE-GRAINED ACCESS CONTROL
    Zheng Yanwei
    Feng Zhiquan
    FIFTH INTERNATIONAL CONFERENCE ON ADVANCED COMPUTER THEORY AND ENGINEERING (ICACTE 2012), 2012, : 245 - 251
  • [23] Research on data access control algorithm based on fine-grained cloud storage
    Xu Q.
    Xu, Qiaoge (qiaogexu@163.com), 1600, Inderscience Publishers (11): : 468 - 473
  • [24] Key-Policy Attribute-Based Encryption With Switchable Attributes for Fine-Grained Access Control of Encrypted Data
    Luo, Fucai
    Wang, Haiyan
    Yan, Xingfu
    Wu, Jiahui
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2024, 19 : 7245 - 7258
  • [25] Research on data access control algorithm based on fine-grained cloud storage
    Xu, Qiaoge
    INTERNATIONAL JOURNAL OF GRID AND UTILITY COMPUTING, 2020, 11 (04) : 468 - 473
  • [26] Fine-Grained Access Control for Microservices
    Nehme, Antonio
    Jesus, Vitor
    Mahbub, Khaled
    Abdallah, Ali
    FOUNDATIONS AND PRACTICE OF SECURITY, FPS 2018, 2019, 11358 : 285 - 300
  • [27] A Secure Revocable Fine-Grained Access Control and Data Sharing Scheme for SCADA in IIoT Systems
    Zhang, Weiting
    Zhang, Hanyi
    Fang, Liming
    Liu, Zhe
    Ge, Chunpeng
    IEEE INTERNET OF THINGS JOURNAL, 2022, 9 (03) : 1976 - 1984
  • [28] A fine-grained and lightweight data access control scheme for WSN-integrated cloud computing
    Heng He
    Ji Zhang
    Jinguang Gu
    Yan Hu
    Fangfang Xu
    Cluster Computing, 2017, 20 : 1457 - 1472
  • [29] A fine-grained and lightweight data access control scheme for WSN-integrated cloud computing
    He, Heng
    Zhang, Ji
    Gu, Jinguang
    Hu, Yan
    Xu, Fangfang
    CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS, 2017, 20 (02): : 1457 - 1472
  • [30] Fine-grained Access Control and Revocation for Sharing Data on Clouds
    Tu, Shan-shan
    Niu, Shao-zhang
    Li, Hui
    Yun Xiao-ming
    Li, Meng-jiao
    2012 IEEE 26TH INTERNATIONAL PARALLEL AND DISTRIBUTED PROCESSING SYMPOSIUM WORKSHOPS & PHD FORUM (IPDPSW), 2012, : 2146 - 2155