A secure IoT cloud storage system with fine-grained access control and decryption key exposure resistance

被引:52
|
作者
Xu, Shengmin [1 ]
Yang, Guomin [2 ]
Mu, Yi [3 ]
Liu, Ximeng [1 ,4 ]
机构
[1] Singapore Management Univ, Sch Informat Syst, Singapore, Singapore
[2] Univ Wollongong, Sch Comp & Informat Technol, Inst Cybersecur & Cryptol, Wollongong, NSW, Australia
[3] Fujian Normal Univ, Fujian Prov Key Lab Network Secur & Cryptol, Fuzhou, Fujian, Peoples R China
[4] Fuzhou Univ, Coll Math & Comp Sci, Fuzhou, Fujian, Peoples R China
基金
中国国家自然科学基金;
关键词
IoT cloud; Attribute-based encryption; Revocation; Decryption key exposure; ATTRIBUTE-BASED ENCRYPTION; CREDENTIALS;
D O I
10.1016/j.future.2019.02.051
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Internet of Things (IoT) cloud provides a practical and scalable solution to accommodate the data management in large-scale IoT systems by migrating the data storage and management tasks to cloud service providers (CSPs). However, there also exist many data security and privacy issues that must be well addressed in order to allow the wide adoption of the approach. To protect data confidentiality, attribute-based cryptosystems have been proposed to provide fine-grained access control over encrypted data in loT cloud. Unfortunately, the existing attributed-based solutions are still insufficient in addressing some challenging security problems, especially when dealing with compromised or leaked user secret keys due to different reasons. In this paper, we present a practical attribute-based access control system for loT cloud by introducing an efficient revocable attribute-based encryption scheme that permits the data owner to efficiently manage the credentials of data users. Our proposed system can efficiently deal with both secret key revocation for corrupted users and accidental decryption key exposure for honest users. We analyze the security of our scheme with formal proofs, and demonstrate the high performance of the proposed system via experiments. (C) 2019 Elsevier B.V. All rights reserved.
引用
收藏
页码:284 / 294
页数:11
相关论文
共 50 条
  • [41] Fine-grained and heterogeneous proxy re-encryption for secure cloud storage
    Peng Xu
    Hongwu Chen
    Deqing Zou
    Hai Jin
    [J]. Chinese Science Bulletin, 2014, 59 (32) : 4201 - 4209
  • [42] Secure Time Series Data Sharing with Fine-Grained Access Control in Cloud-Enabled IIoT
    Halder, Subir
    Newe, Thomas
    [J]. PROCEEDINGS OF THE IEEE/IFIP NETWORK OPERATIONS AND MANAGEMENT SYMPOSIUM 2022, 2022,
  • [43] Secure Cloud-Assisted Data Pub/Sub Service With Fine-Grained Bilateral Access Control
    Zhang, Kai
    Wang, Xiwen
    Ning, Jianting
    Gong, Junqing
    Huang, Xinyi
    [J]. IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2023, 18 : 5286 - 5301
  • [44] Secure Fine-Grained Data Access Control Over Multiple Cloud Server Based Healthcare Applications
    Deshmukh, Nilam Manikrao
    Kumar, Santosh
    Shirsath, Rakesh
    [J]. 2019 5TH INTERNATIONAL CONFERENCE ON COMPUTING, COMMUNICATION, CONTROL AND AUTOMATION (ICCUBEA), 2019,
  • [45] A SDN-based IoT Fine-grained Access Control Method
    Wei, Min
    Liang, Erxiong
    Nie, Zichuang
    [J]. 2020 34TH INTERNATIONAL CONFERENCE ON INFORMATION NETWORKING (ICOIN 2020), 2020, : 637 - 642
  • [46] A Fine-Grained Access Control Model with Secure Label on Data Resource
    Gao, Lijie
    Liu, Lianzhong
    Jin, Ze
    Han, Chunyan
    [J]. 2013 3RD INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE AND NETWORK TECHNOLOGY (ICCSNT), 2013, : 14 - 18
  • [47] Fine-Grained Access Control in the Era of Cloud Computing: An Analytical Review
    Albulayhi, Khalid
    Abuhussein, Abdullah
    Alsubaei, Faisal
    Sheldon, Frederick T.
    [J]. 2020 10TH ANNUAL COMPUTING AND COMMUNICATION WORKSHOP AND CONFERENCE (CCWC), 2020, : 748 - 755
  • [48] Fine-Grained Access Control ensuring Data Privacy in OpenStack Cloud
    John, Naveen Thomas M.
    Thomas, Manoj V.
    [J]. 2017 INTERNATIONAL CONFERENCE ON INTELLIGENT COMPUTING, INSTRUMENTATION AND CONTROL TECHNOLOGIES (ICICICT), 2017, : 1669 - 1674
  • [49] Fine-grained Access Control for Personal Health Records in Cloud Computing
    Li, Wei
    Ni, Wei
    Liu, Dongxi
    Liu, Ren Ping
    Wang, Peishun
    Luo, Shoushan
    [J]. 2017 IEEE 85TH VEHICULAR TECHNOLOGY CONFERENCE (VTC SPRING), 2017,
  • [50] Fine-grained Audit Privilege Control for Integrity Audit on Cloud Storage
    Ruan, He-Ming
    Lei, Chin-Laung
    [J]. 2014 NINTH ASIA JOINT CONFERENCE ON INFORMATION SECURITY (ASIA JCIS), 2014, : 156 - 163