Decentralized, Revocable and Verifiable Attribute-Based Encryption in Hybrid Cloud System

被引:5
|
作者
Yu, Ping [1 ,4 ]
Wen, Qiaoyan [2 ]
Ni, Wei [2 ]
Li, Wenmin [2 ]
Sun, Caijun [3 ]
Zhang, Hua [2 ]
Jin, Zhengping [2 ]
机构
[1] Beijing Univ Posts & Telecommun, Network Secur Res Ctr, Beijing, Peoples R China
[2] Beijing Univ Posts & Telecommun, Beijing, Peoples R China
[3] Beijing Univ Posts & Telecommun, Network Secur Res Ctr, State Key Lab Networking & Switching Technol, Beijing, Peoples R China
[4] Univ Technol Sydney, Fac Engn & Informat Technol, Sydney, NSW, Australia
基金
中国国家自然科学基金;
关键词
Hybrid cloud model; Multi-authority CP-ABE; Direct attribute revocation; Private cloud auditing; DATA ACCESS-CONTROL;
D O I
10.1007/s11277-019-06187-3
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
Cloud can provide storage space and services for data owners to host their data, where data privacy and confidentiality become critical issues. Ciphertext policy attribute-based encryption (CP-ABE) is one of the most suitable methods to protect data privacy and provide structured access control. In this paper, we propose a multi-authority CP-ABE scheme with a direct attribute revocation mechanism, cause revocation is an inevitable problem in the application process. Under our proposed revocation mechanism, the remaining users need not to update their secret keys when revocation happens. It relies on the matching of public keys' version and ciphertext' version. In a cloud storage model, the update of ciphertext is executed by public cloud, which cannot be fully trusted by data owners. In this case, we propose a hybrid CP-ABE cloud storage model aiming at solving the public cloud trust management problem. The data owners can authorize private cloud to verify whether their ciphertexts have been updated to the newest version. In addition, we prove our construction secure in selective-CPA model. Finally, we compare our scheme with similar multi-authority CP-ABE schemes from functionality, communication overhead and computation cost. The simulation results show that our scheme is more efficient than similar works in encryption, decryption and revocation stages.
引用
收藏
页码:719 / 738
页数:20
相关论文
共 50 条
  • [21] Attribute Revocable Multi-Authority Attribute-Based Encryption with Forward Secrecy for Cloud Storage
    Nomura, Kenta
    Mohri, Masami
    Shiraishi, Yoshiaki
    Morii, Masakatu
    [J]. IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 2017, E100D (10) : 2420 - 2431
  • [22] Accountable and Revocable Large Universe Decentralized Multi-Authority Attribute-Based Encryption for Cloud-Aided IoT
    Huang, Kaiqing
    [J]. IEEE ACCESS, 2021, 9 : 123786 - 123804
  • [23] Attribute-Based Encryption With Verifiable Outsourced Decryption
    Lai, Junzuo
    Deng, Robert H.
    Guan, Chaowen
    Weng, Jian
    [J]. IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2013, 8 (08) : 1343 - 1354
  • [24] A traceable and revocable decentralized attribute-based encryption scheme with fully hidden access policy for cloud-based smart healthcare
    Dai, Yue
    Xue, Lulu
    Yang, Bo
    Wang, Tao
    Zhang, Kejia
    [J]. Computer Standards and Interfaces, 2025, 92
  • [25] Comment on "Circuit Ciphertext-Policy Attribute-Based Hybrid Encryption With Verifiable Delegation in Cloud Computing"
    Cao, Zhengjun
    Markowitch, Olivier
    [J]. IEEE TRANSACTIONS ON PARALLEL AND DISTRIBUTED SYSTEMS, 2021, 32 (02) : 392 - 393
  • [26] Revocable Attribute-Based Encryption With Data Integrity in Clouds
    Ge, Chunpeng
    Susilo, Willy
    Baek, Joonsang
    Liu, Zhe
    Xia, Jinyue
    Fang, Liming
    [J]. IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2022, 19 (05) : 2864 - 2872
  • [27] Efficient Revocable Attribute-Based Encryption with Hidden Policies
    Ziegler, Dominik
    Marsalek, Alexander
    [J]. 2020 IEEE 19TH INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS (TRUSTCOM 2020), 2020, : 1638 - 1645
  • [28] Verifiable and hybrid attribute-based proxy re-encryption for flexible data sharing in cloud storage
    Sun, Lixue
    Xu, Chunxiang
    Zeng, Fugeng
    [J]. JOURNAL OF PARALLEL AND DISTRIBUTED COMPUTING, 2024, 193
  • [29] Modern Family: A Revocable Hybrid Encryption Scheme Based on Attribute-Based Encryption, Symmetric Searchable Encryption and SGX
    Bakas, Alexandros
    Michalas, Antonis
    [J]. SECURITY AND PRIVACY IN COMMUNICATION NETWORKS, SECURECOMM, PT II, 2019, 305 : 472 - 486
  • [30] Decentralized Attribute-Based Encryption and Signatures
    Okamoto, Tatsuaki
    Takashima, Katsuyuki
    [J]. IEICE TRANSACTIONS ON FUNDAMENTALS OF ELECTRONICS COMMUNICATIONS AND COMPUTER SCIENCES, 2020, E103A (01) : 41 - 73