Attribute-based cloud storage with secure provenance over encrypted data

被引:20
|
作者
Cui, Hui [1 ,2 ]
Deng, Robert H. [1 ]
Li, Yingjiu [1 ]
机构
[1] Singapore Management Univ, Sch Informat Syst, Singapore, Singapore
[2] RMIT Univ, Sch Sci, Melbourne, Vic, Australia
基金
新加坡国家研究基金会;
关键词
Cloud storage; Secure provenance; Access control; Scalability; Confidentiality; Anonymity; Traceability; Revocation;
D O I
10.1016/j.future.2017.10.010
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
To securely and conveniently enjoy the benefits of cloud storage, it is desirable to design a cloud data storage system which protects data privacy from storage servers through encryption, allows fine-grained access control such that data providers can expressively specify who are eligible to access the encrypted data, enables dynamic user management such that the total number of data users is unbounded and user revocation can be carried out conveniently, supports data provider anonymity and traceability such that a data provider's identity is not disclosed to data users in normal circumstances but can be traced by a trusted authority if necessary, and equally important, provides secure data provenance by presenting irrefutable evidence on who has created and modified the data in the cloud. However, most of the existing cloud storage systems with secure provenance either lack the expressiveness in access control or incur too much performance overhead or do not support dynamic user management. In this paper, we solve these problems by presenting an attribute-based cloud storage system with secure provenance. We first give a simple construction without achieving user revocation, and then extend it with an efficient revocation mechanism to prevent revoked data users from accessing the newly encrypted data. Thereafter, we implement the algorithms in the proposed two constructions to evaluate their performance. Our experimental results show that the proposed systems are acceptable to be applied in practice. (C) 2017 Elsevier B.V. All rights reserved.
引用
收藏
页码:461 / 472
页数:12
相关论文
共 50 条
  • [31] Decentralized Attribute-Based Encryption and Data Sharing Scheme in Cloud Storage
    Li, Xiehua
    Wang, Yanlong
    Xu, Ming
    Cui, Yaping
    CHINA COMMUNICATIONS, 2018, 15 (02) : 138 - 152
  • [32] Decentralized Attribute-Based Encryption and Data Sharing Scheme in Cloud Storage
    Xiehua Li
    Yanlong Wang
    Ming Xu
    Yaping Cui
    中国通信, 2018, 15 (02) : 138 - 152
  • [33] Proactive Attribute-based Secure Data Schema for Mobile Cloud in Financial Industry
    Gai, Keke
    Qiu, Meikang
    Thuraisingham, Bhavani
    Tao, Lixin
    2015 IEEE 17TH INTERNATIONAL CONFERENCE ON HIGH PERFORMANCE COMPUTING AND COMMUNICATIONS, 2015 IEEE 7TH INTERNATIONAL SYMPOSIUM ON CYBERSPACE SAFETY AND SECURITY, AND 2015 IEEE 12TH INTERNATIONAL CONFERENCE ON EMBEDDED SOFTWARE AND SYSTEMS (ICESS), 2015, : 1332 - 1337
  • [34] ASDS: Attribute-based secure data sharing scheme for reliable cloud environment
    Eltayieb, Nabeil
    Wang, Ping
    Hassan, Alzubair
    Elhabob, Rashad
    Li, Fagen
    SECURITY AND PRIVACY, 2019, 2 (02)
  • [35] A Comparative Study of Attribute-Based Encryption Schemes for Secure Cloud Data Outsourcing
    Thangavel, M.
    Varalakshmi, P.
    Abinaya, C.
    2017 NINTH INTERNATIONAL CONFERENCE ON ADVANCED COMPUTING (ICOAC), 2017, : 261 - 266
  • [36] Attribute-Based Management of Secure Kubernetes Cloud Bursting
    Femminella, Mauro
    Palmucci, Martina
    Reali, Gianluca
    Rengo, Mattia
    IEEE OPEN JOURNAL OF THE COMMUNICATIONS SOCIETY, 2024, 5 : 1276 - 1298
  • [37] A blockchain-based attribute-based signcryption scheme to secure data sharing in the cloud
    Eltayieb, Nabeil
    Elhabob, Rashad
    Hassan, Alzubair
    Li, Fagen
    JOURNAL OF SYSTEMS ARCHITECTURE, 2020, 102 (102)
  • [38] Verifiable Attribute-Based Multi-Keyword Search over Encrypted Cloud Data in Multi-Owner Setting
    Fan, Yaqing
    Liu, Zhenhua
    2017 IEEE SECOND INTERNATIONAL CONFERENCE ON DATA SCIENCE IN CYBERSPACE (DSC), 2017, : 441 - 449
  • [39] EABDS: Attribute-Based Secure Data Sharing with Efficient Revocation in Cloud Computing
    HUANG Qinlong
    MA Zhaofeng
    YANG Yixian
    FU Jingyi
    NIU Xinxin
    ChineseJournalofElectronics, 2015, 24 (04) : 862 - 868
  • [40] Secure and efficient data collaboration with hierarchical attribute-based encryption in cloud computing
    Huang, Qinlong
    Yang, Yixian
    Shen, Mansuo
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2017, 72 : 239 - 249