An Attribute-Based Controlled Collaborative Access Control Scheme for Public Cloud Storage

被引:69
|
作者
Xue, Yingjie [1 ]
Xue, Kaiping [1 ]
Gai, Na [1 ]
Hong, Jianan [1 ]
Wei, David S. L. [2 ]
Hong, Peilin [1 ]
机构
[1] Univ Sci & Technol China, Dept Elect Engn & Informat Sci, Hefei 230027, Anhui, Peoples R China
[2] Fordham Univ, Comp & Informat Sci Dept, New York, NY 10458 USA
基金
中国国家自然科学基金;
关键词
Public cloud storage; access control; CP-ABE; collaboration; ENCRYPTION;
D O I
10.1109/TIFS.2019.2911166
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
In public cloud storage services, data are outsourced to semi-trusted cloud servers which are outside of data owners' trusted domain. To prevent untrustworthy service providers from accessing data owners' sensitive data, outsourced data are often encrypted. In this scenario, conducting access control over these data becomes a challenging issue. Attribute-based encryption (ABE) has been proved to be a powerful cryptographic tool to express access policies over attributes, which can provide a fine-grained, flexible, and secure access control over outsourced data. However, the existing ABE-based access control schemes do not support users to gain access permission by collaboration. In this paper, we explore a special attribute-based access control scenario where multiple users having different attribute sets can collaborate to gain access permission if the data owner allows their collaboration in the access policy. Meanwhile, the collaboration that is not designated in the access policy should be regarded as a collusion and the access request will be denied. We propose an attribute-based controlled collaborative access control scheme through designating translation nodes in the access structure. Security analysis shows that our proposed scheme can guarantee data confidentiality and has many other critical security properties. Extensive performance analysis shows that our proposed scheme is efficient in terms of storage and computation overhead.
引用
收藏
页码:2927 / 2942
页数:16
相关论文
共 50 条
  • [1] An Attribute-based Access Control Scheme in Cloud Storage Environment
    Xing, M. H.
    Li, W. M.
    [J]. PROCEEDINGS OF THE 2015 INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING AND INFORMATION TECHNOLOGY (SEIT2015), 2016, : 129 - 134
  • [2] Attribute-based bilateral access control scheme for cloud storage
    Li Q.
    Fan H.
    Chen W.
    Xiong J.
    Han L.
    Li R.
    [J]. Tongxin Xuebao/Journal on Communications, 2024, 45 (04): : 128 - 136
  • [3] A Temporal and Spatial Constrained Attribute-Based Access Control Scheme for Cloud Storage
    Liu, Zechao
    Jiang, Zoe L.
    Wang, Xuan
    Yiu, S. M.
    Zhang, Ruoqing
    Wu, Yulin
    [J]. 2018 17TH IEEE INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS (IEEE TRUSTCOM) / 12TH IEEE INTERNATIONAL CONFERENCE ON BIG DATA SCIENCE AND ENGINEERING (IEEE BIGDATASE), 2018, : 614 - 623
  • [4] Cloud Storage Data Access Control Scheme Based on Blockchain and Attribute-Based Encryption
    Yang, Xiaodong
    Chen, Aijia
    Wang, Zhisong
    Li, Shudong
    [J]. SECURITY AND COMMUNICATION NETWORKS, 2022, 2022
  • [5] LABAC: A Location-aware Attribute-based Access Control Scheme for Cloud Storage
    Xue, Yingjie
    Hong, Jianan
    Li, Wei
    Xue, Kaiping
    Hong, Peilin
    [J]. 2016 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2016,
  • [6] Contextual attribute-based access control scheme for cloud storage using blockchain technology
    Panda, Suryakanta
    Sahoo, Swagatika
    Halder, Raju
    Mondal, Samrat
    [J]. SOFTWARE-PRACTICE & EXPERIENCE, 2024, 54 (10): : 2042 - 2062
  • [7] Dynamic Attribute-Based Access Control in Cloud Storage Systems
    Liu, Zechao
    Jiang, Zoe L.
    Wang, Xuan
    Yiu, S. M.
    Zhang, Chunkai
    Zhao, Xiaomeng
    [J]. 2016 IEEE TRUSTCOM/BIGDATASE/ISPA, 2016, : 129 - 137
  • [8] Accountable specific attribute-based encryption scheme for cloud access control
    Nayudu, P. Prathap
    Sekhar, Krovi Raja
    [J]. INTERNATIONAL JOURNAL OF SYSTEM ASSURANCE ENGINEERING AND MANAGEMENT, 2022,
  • [9] Attribute-Based Access Control Scheme with Efficient Revocation in Cloud Computing
    Xia, Zhihua
    Zhang, Liangao
    Liu, Dandan
    [J]. CHINA COMMUNICATIONS, 2016, 13 (07) : 92 - 99
  • [10] Attribute-Based Access Control Scheme with Efficient Revocation in Cloud Computing
    Zhihua Xia
    Liangao Zhang
    Dandan Liu
    [J]. China Communications, 2016, 13 (07) : 92 - 99