A Fine-grained Access Control Scheme for Big Data Based on Classification Attributes

被引:0
|
作者
Yang, Tengfei [1 ,2 ]
Shen, Peisong [1 ,2 ]
Tian, Xue [1 ,2 ]
Chen, Chi [1 ,2 ]
机构
[1] Chinese Acad Sci, Inst Informat Engn, State Key Lab Informat Secur, Beijing, Peoples R China
[2] Univ Chinese Acad Sci, Sch Cyber Secur, Beijing, Peoples R China
关键词
ENCRYPTION;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
In order to protect the security and privacy of big data, the cloud storage service needs to enforce effective access control mechanism on user requests. Attribute-Based Encryption is a promising cryptographic access control technique to ensure the end-to-end security of data in cloud. However, the existing ABE researches mainly focus on the efficiency decryption, while the flexibility of policy, the communication cost, and the metadata management of ciphertexts are still challenging issues in the big data environment. In this paper, for the first time, we propose a new distributed, scalable and fine-grained access control scheme based on classification attributes for the cloud object storage. The classification attributes and threshold policies are integrated into an access structure, and then the objects are encrypted with the integrated access structure. The constant-size cipher text components related to attributes can he managed as the corresponding metadata. As a result the encryption complexity and ciphertext storage are reduced. In addition, we present a new label-based access control model with multi-authorities to describe the detailed relationships of entities in our scheme. Besides, the proposed scheme is proved to be secure under I-BDHE assumption, and the system implementation demonstrates the practical feasibility and good performance.
引用
收藏
页码:238 / 245
页数:8
相关论文
共 50 条
  • [31] A Methodology for Fine-Grained Access Control in Exposing Biomedical Data
    Trifan, Alina
    van der Lei, Johan
    Diaz, Carlos
    Oliveira, Jose Luis
    BUILDING CONTINENTS OF KNOWLEDGE IN OCEANS OF DATA: THE FUTURE OF CO-CREATED EHEALTH, 2018, 247 : 561 - 565
  • [32] Fine-Grained Access Control for RDF Data on Mobile Devices
    Sacco, Owen
    Collina, Matteo
    Schiele, Gregor
    Corazza, Giovanni Emanuele
    Breslin, John G.
    Hauswirth, Manfred
    WEB INFORMATION SYSTEMS ENGINEERING - WISE 2013, PT I, 2013, 8180 : 478 - 487
  • [33] Fine-grained data access control for distributed sensor networks
    Junbeom Hur
    Wireless Networks, 2011, 17 : 1235 - 1249
  • [34] A fine-grained data access control algorithm in cloud computing
    Han, Dezhi
    Wu, Shuai
    Bi, Kun
    Huazhong Keji Daxue Xuebao (Ziran Kexue Ban)/Journal of Huazhong University of Science and Technology (Natural Science Edition), 2012, 40 (SUPPL.1): : 245 - 248
  • [35] Fine-grained data access control for distributed sensor networks
    Hur, Junbeom
    WIRELESS NETWORKS, 2011, 17 (05) : 1235 - 1249
  • [36] Forecasting Fine-Grained Air Quality Based on Big Data
    Zheng, Yu
    Yi, Xiuwen
    Li, Ming
    Li, Ruiyuan
    Shan, Zhangqing
    Chang, Eric
    Li, Tianrui
    KDD'15: PROCEEDINGS OF THE 21ST ACM SIGKDD INTERNATIONAL CONFERENCE ON KNOWLEDGE DISCOVERY AND DATA MINING, 2015, : 2267 - 2276
  • [37] A Federated Framework for Fine-Grained Cloud Access Control for Intelligent Big Data Analytic by Service Providers
    Ra, Gyeongjin
    Kim, Donghyun
    Seo, Daehee
    Lee, Imyeong
    IEEE Access, 2021, 9 : 47084 - 47095
  • [38] A Federated Framework for Fine-Grained Cloud Access Control for Intelligent Big Data Analytic by Service Providers
    Ra, Gyeongjin
    Kim, Donghyun
    Seo, Daehee
    Lee, Imyeong
    IEEE ACCESS, 2021, 9 : 47084 - 47095
  • [39] Fine-Grained Access Control Scheme Based on Improved Proxy Re-Encryption in Cloud
    Xu, Zhenwu
    Shen, Jinan
    Liang, Fang
    Chen, Yingjie
    JOURNAL OF ADVANCED COMPUTATIONAL INTELLIGENCE AND INTELLIGENT INFORMATICS, 2021, 25 (02) : 170 - 176
  • [40] BDSS: Blockchain-based Data Sharing Scheme With Fine-grained Access Control And Permission Revocation In Medical Environment
    Zhang, Lejun
    Zou, Yanfei
    Yousuf, Muhammad Hassam
    Wang, Weizheng
    Jin, Zilong
    Su, Yansen
    Seokhoon, Kim
    KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS, 2022, 16 (05): : 1634 - 1652