Hierarchical Access Control with Scalable Data Sharing in Cloud Storage

被引:4
|
作者
Qiu, Zhenyao [1 ]
Zhang, Zhiwei [1 ]
Tan, Shichong [1 ]
Wang, Jianfeng [1 ]
Tao, Xiaoling [2 ,3 ]
机构
[1] Xidian Univ, State Key Lab Integrated Serv Networks ISN, Xian, Shaanxi, Peoples R China
[2] Guilin Univ Elect Technol, Guangxi Cooperat Innovat Ctr Cloud Comp & Big Dat, Guilin, Peoples R China
[3] Guilin Univ Elect Technol, Guangxi Coll & Univ Key Lab Cloud Comp & Complex, Guilin, Peoples R China
来源
JOURNAL OF INTERNET TECHNOLOGY | 2019年 / 20卷 / 03期
基金
中国国家自然科学基金;
关键词
Access control; Hierarchical key assignment; Data sharing; Cloud storage; Key-aggregate encryption; ATTRIBUTE-BASED ENCRYPTION; OUTSOURCED DATABASE; SECURE; SEARCH;
D O I
10.3966/160792642019052003002
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cloud storage is facing the contradiction between data security and flexible data sharing, and therefore the cryptographic access control mechanisms are well studied. In particular, hierarchical access control in cloud storage is significant for many application scenarios. In these scenarios, the users are divided into several groups organized in a hierarchy, and they are assigned with different access privileges according to their groups and levels. That is, the users in higher level groups can access the data belonging to their subordinate groups while the users in lower level groups cannot access the data belonging to their superior groups. However, most of the existing hierarchical access control solutions seem to be unpractical for their inability of scalable data sharing, inefficiency of key management or lack of delegated reencryption. In this paper, we propose a new hierarchical access control scheme based on key-aggregate encryption, and the proposed scheme realizes scalable data sharing in cloud storage which allows the users to share data with any user group. In the proposed scheme, the size of each key or ciphertext is constant and irrelevant to the scale of hierarchical user structure. Especially, our scheme improves the convenience of key management by cutting off the key derivation widely used in the existing hierarchical key assignment methods. Furthermore, the proposed scheme reduces the users' updating overhead by introducing the delegated re-encryption into the hierarchical scenarios. Finally, the security analysis and the performance evaluation indicate that our scheme is feasible for the hierarchical data sharing applications in cloud storage.
引用
收藏
页码:663 / 676
页数:14
相关论文
共 50 条
  • [31] A dynamic and hierarchical access control for IoT in multi-authority cloud storage
    Riad, Khaled
    Huang, Teng
    Ke, Lishan
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2020, 160 (160)
  • [32] On the Security of Cloud Data Storage and Sharing
    Zhou, Jianying
    SCC'14: PROCEEDINGS OF THE 2ND INTERNATIONAL WORKSHOP ON SECURITY IN CLOUD COMPUTING, 2014, : 1 - 1
  • [33] Campus Cloud for Data Storage and Sharing
    Xu, Pengzhi
    Huang, Xiaomeng
    Wu, Yongwei
    Liu, Likun
    Zheng, Weimin
    2009 EIGHTH INTERNATIONAL CONFERENCE ON GRID AND COOPERATIVE COMPUTING, PROCEEDINGS, 2009, : 244 - 249
  • [34] Data access control method for multimedia content data sharing and security based on XMDR-DAI in mobile cloud storage
    Kye-Dong Jung
    Seok-Jae Moon
    Jin-Mook Kim
    Multimedia Tools and Applications, 2017, 76 : 19983 - 19999
  • [35] Data access control method for multimedia content data sharing and security based on XMDR-DAI in mobile cloud storage
    Jung, Kye-Dong
    Moon, Seok-Jae
    Kim, Jin-Mook
    MULTIMEDIA TOOLS AND APPLICATIONS, 2017, 76 (19) : 19983 - 19999
  • [36] Power-Saving in Storage Systems for Cloud Data Sharing Services with Data Access Prediction
    Hasebe, Koji
    Okoshi, Jumpei
    Kato, Kazuhiko
    IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 2015, E98D (10): : 1744 - 1754
  • [37] S-SAC: Towards a Scalable Secure Access Control Framework for Cloud Storage
    Hassan, Hatem
    Mostafa, Ahmad
    Shawish, Ahmed
    2015 EUROPEAN INTELLIGENCE AND SECURITY INFORMATICS CONFERENCE (EISIC), 2015, : 165 - 168
  • [38] HASBE: A Hierarchical Attribute-Based Solution for Flexible and Scalable Access Control in Cloud Computing
    Wan, Zhiguo
    Liu, Jun'e
    Deng, Robert H.
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2012, 7 (02) : 743 - 754
  • [39] Data Access Control and Secured Data Sharing Approach for Health Care Data in Cloud Environment
    Pugazhenthi, A.
    Chitra, D.
    JOURNAL OF MEDICAL SYSTEMS, 2019, 43 (08)
  • [40] Data Access Control and Secured Data Sharing Approach for Health Care Data in Cloud Environment
    A. Pugazhenthi
    D. Chitra
    Journal of Medical Systems, 2019, 43