Hierarchical Access Control with Scalable Data Sharing in Cloud Storage

被引:4
|
作者
Qiu, Zhenyao [1 ]
Zhang, Zhiwei [1 ]
Tan, Shichong [1 ]
Wang, Jianfeng [1 ]
Tao, Xiaoling [2 ,3 ]
机构
[1] Xidian Univ, State Key Lab Integrated Serv Networks ISN, Xian, Shaanxi, Peoples R China
[2] Guilin Univ Elect Technol, Guangxi Cooperat Innovat Ctr Cloud Comp & Big Dat, Guilin, Peoples R China
[3] Guilin Univ Elect Technol, Guangxi Coll & Univ Key Lab Cloud Comp & Complex, Guilin, Peoples R China
来源
JOURNAL OF INTERNET TECHNOLOGY | 2019年 / 20卷 / 03期
基金
中国国家自然科学基金;
关键词
Access control; Hierarchical key assignment; Data sharing; Cloud storage; Key-aggregate encryption; ATTRIBUTE-BASED ENCRYPTION; OUTSOURCED DATABASE; SECURE; SEARCH;
D O I
10.3966/160792642019052003002
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cloud storage is facing the contradiction between data security and flexible data sharing, and therefore the cryptographic access control mechanisms are well studied. In particular, hierarchical access control in cloud storage is significant for many application scenarios. In these scenarios, the users are divided into several groups organized in a hierarchy, and they are assigned with different access privileges according to their groups and levels. That is, the users in higher level groups can access the data belonging to their subordinate groups while the users in lower level groups cannot access the data belonging to their superior groups. However, most of the existing hierarchical access control solutions seem to be unpractical for their inability of scalable data sharing, inefficiency of key management or lack of delegated reencryption. In this paper, we propose a new hierarchical access control scheme based on key-aggregate encryption, and the proposed scheme realizes scalable data sharing in cloud storage which allows the users to share data with any user group. In the proposed scheme, the size of each key or ciphertext is constant and irrelevant to the scale of hierarchical user structure. Especially, our scheme improves the convenience of key management by cutting off the key derivation widely used in the existing hierarchical key assignment methods. Furthermore, the proposed scheme reduces the users' updating overhead by introducing the delegated re-encryption into the hierarchical scenarios. Finally, the security analysis and the performance evaluation indicate that our scheme is feasible for the hierarchical data sharing applications in cloud storage.
引用
收藏
页码:663 / 676
页数:14
相关论文
共 50 条
  • [1] Dual Access Control for Cloud-Based Data Storage and Sharing
    Ning, Jianting
    Huang, Xinyi
    Susilo, Willy
    Liang, Kaitai
    Liu, Ximeng
    Zhang, Yinghui
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2022, 19 (02) : 1036 - 1048
  • [2] A Hierarchical Access Control Technology for Cloud Storage
    Lan, Jiang
    Chunhua, Gu
    2013 INTERNATIONAL CONFERENCE ON COMPUTER SCIENCES AND APPLICATIONS (CSA), 2013, : 35 - 40
  • [3] A Review of Scalable Data Sharing Techniques for Secure Cloud Storage
    Tripathi, Aditi
    Khare, Mayank Deep
    Singh, Pradeep Kumar
    2015 INTERNATIONAL CONFERENCE ON ADVANCES IN COMPUTER ENGINEERING AND APPLICATIONS (ICACEA), 2015, : 899 - 901
  • [4] Enforcing Scalable and Dynamic Hierarchical Access Control in Cloud Computing
    Yang, Ran
    Lin, Chuang
    Jiang, Yixin
    2012 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC), 2012,
  • [5] Secure Data Access and Sharing Scheme for Cloud Storage
    Li, Xiong
    Kumari, Saru
    Shen, Jian
    Wu, Fan
    Chen, Caisen
    Islam, S. K. Hafizul
    WIRELESS PERSONAL COMMUNICATIONS, 2017, 96 (04) : 5295 - 5314
  • [6] Secure Data Access and Sharing Scheme for Cloud Storage
    Xiong Li
    Saru Kumari
    Jian Shen
    Fan Wu
    Caisen Chen
    SK Hafizul Islam
    Wireless Personal Communications, 2017, 96 : 5295 - 5314
  • [7] A Scalable Attribute-Based Access Control Scheme with Flexible Delegation cum Sharing of Access Privileges for Cloud Storage
    Ahuja, Rohit
    Mohanty, Sraban Kumar
    IEEE TRANSACTIONS ON CLOUD COMPUTING, 2020, 8 (01) : 32 - 44
  • [8] An access control and authentication scheme for secure data sharing in the decentralized cloud storage system
    Khatiwada, Pankaj
    Yang, Bian
    2022 5TH CONFERENCE ON CLOUD AND INTERNET OF THINGS, CIOT, 2022, : 137 - 144
  • [9] A BP -based Key Management Protocol for Data Sharing on Cloud Storage with Access Control
    Abi-Char, Pierre E.
    2022 45TH INTERNATIONAL CONFERENCE ON TELECOMMUNICATIONS AND SIGNAL PROCESSING, TSP, 2022, : 132 - 138
  • [10] Cloud Storage and Blockchain Collaborative Access Control Method for Industrial Internet Data Sharing
    Kang H.
    Zhang S.
    Beijing Youdian Daxue Xuebao/Journal of Beijing University of Posts and Telecommunications, 2023, 46 (03): : 56 - 61