Flexible and Fine-Grained Attribute-Based Data Storage in Cloud Computing

被引:215
|
作者
Li, Jiguo [1 ]
Yao, Wei [1 ]
Zhang, Yichen [1 ]
Qian, Huiling [1 ]
Han, Jinguang [2 ]
机构
[1] Hohai Univ, Coll Comp & Informat, Nanjing 211100, Jiangsu, Peoples R China
[2] Nanjing Univ Finance & Econ, Jiangsu Prov Key Lab E Business, Nanjing 210003, Jiangsu, Peoples R China
基金
中国国家自然科学基金;
关键词
Cloud computing; attribute-based encryption; outsource decryption; user revocation; collusion attack; ENCRYPTION; RETRIEVAL; SECURE;
D O I
10.1109/TSC.2016.2520932
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With the development of cloud computing, outsourcing data to cloud server attracts lots of attentions. To guarantee the security and achieve flexibly fine-grained file access control, attribute based encryption (ABE) was proposed and used in cloud storage system. However, user revocation is the primary issue in ABE schemes. In this article, we provide a ciphertext-policy attribute based encryption (CP-ABE) scheme with efficient user revocation for cloud storage system. The issue of user revocation can be solved efficiently by introducing the concept of user group. When any user leaves, the group manager will update users' private keys except for those who have been revoked. Additionally, CP-ABE scheme has heavy computation cost, as it grows linearly with the complexity for the access structure. To reduce the computation cost, we outsource high computation load to cloud service providers without leaking file content and secret keys. Notably, our scheme can withstand collusion attack performed by revoked users cooperating with existing users. We prove the security of our scheme under the divisible computation Diffie-Hellman assumption. The result of our experiment shows computation cost for local devices is relatively low and can be constant. Our scheme is suitable for resource constrained devices.
引用
收藏
页码:785 / 796
页数:12
相关论文
共 50 条
  • [1] A fine-grained attribute-based authentication for sensitive data stored in cloud computing
    Liu, Zhusong
    Luo, Jinman
    Xu, Lingling
    [J]. INTERNATIONAL JOURNAL OF GRID AND UTILITY COMPUTING, 2016, 7 (04) : 237 - 244
  • [2] Hierarchical Attribute-Based Encryption for Fine-Grained Access Controlin Cloud Storage Services
    Wang, Guojun
    Liu, Qin
    Wu, Jie
    [J]. PROCEEDINGS OF THE 17TH ACM CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY (CCS'10), 2010, : 735 - 737
  • [3] New Constructions of Hierarchical Attribute-Based Encryption for Fine-Grained Access Control in Cloud Computing
    Zhang, Leyou
    Hu, Yupu
    [J]. KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS, 2013, 7 (05): : 1343 - 1356
  • [4] Attribute-based encryption scheme for secure data sharing in cloud with fine-grained revocation
    Islam, Md Azharul
    Madria, Sanjay
    [J]. SECURITY AND PRIVACY, 2024, 7 (01)
  • [5] Realizing Fine-Grained and Flexible Access Control to Outsourced Data with Attribute-Based Cryptosystems
    Zhao, Fangming
    Nishide, Takashi
    Sakurai, Kouichi
    [J]. INFORMATION SECURITY PRACTICE AND EXPERIENCE, 2011, 6672 : 83 - 97
  • [6] Fine-Grained Secure Attribute-Based Encryption
    Wang, Yuyu
    Pan, Jiaxin
    Chen, Yu
    [J]. JOURNAL OF CRYPTOLOGY, 2023, 36 (04)
  • [7] Fine-Grained Secure Attribute-Based Encryption
    Wang, Yuyu
    Pan, Jiaxin
    Chen, Yu
    [J]. ADVANCES IN CRYPTOLOGY - CRYPTO 2021, PT IV, 2021, 12828 : 179 - 207
  • [8] Fine-Grained Secure Attribute-Based Encryption
    Yuyu Wang
    Jiaxin Pan
    Yu Chen
    [J]. Journal of Cryptology, 2023, 36
  • [9] Attribute Based Encryption with Fine-grained Access Provision in Cloud Computing
    Tamizharasi, G. S.
    Balamurugan, B.
    Manjula, R.
    [J]. PROCEEDINGS OF THE INTERNATIONAL CONFERENCE ON INFORMATICS AND ANALYTICS (ICIA' 16), 2016,
  • [10] Attribute-Based Data Sharing with Flexible and Direct Revocation in Cloud Computing
    Zhang, Yinghui
    Chen, Xiaofeng
    Li, Jin
    Li, Hui
    Li, Fenghua
    [J]. KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS, 2014, 8 (11): : 4028 - 4049