CP-ABE Based Access Control for Cloud Storage with Rich Policy Support

被引:0
|
作者
Wang, Yong [1 ]
Wei, Long-xing [1 ]
Hu, Chang-zhen [1 ]
Zhao, Xiao-lin [1 ]
机构
[1] Beijing Inst Technol, Sch Software, Beijing, Peoples R China
关键词
Cloud storage; Access control; CP-ABE; Rich policy; FADE;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
CP-ABE (Cipher-text Policy Attribute Based Encryption) can help providing reliable, fine-grained access control in untrusted cloud storage environment, since users can access to data files only if their attributes satisfy the access policies associated with the files. However, CP-ABE has two main drawbacks: its policies are not expressed using standard languages and it can't support non-monotonic policies. So we extended CP-ABE to support XACML (eXtensible Access Control Markup Language) based policy transformation and to support logical NOT in policies through De Morgan's Laws. And then we applied it to a secure overlay cloud storage system called FADE to deploy access control for Amazon S3 cloud storage service. The simulation results show that our proposal is practical and time efficient.
引用
收藏
页码:18 / 24
页数:7
相关论文
共 50 条
  • [31] CP-ABE scheme supporting partially hidden access policy
    Liu, Xia
    Wang, Xinzu
    Zhang, Tao
    Chen, Yingge
    Wang, Rong
    Feng, Chaosheng
    Qin, Zhiguang
    Tongxin Xuebao/Journal on Communications, 2024, 45 (10): : 180 - 190
  • [32] CP-ABE Access Control Scheme for Sensitive Data Set Constraint with Hidden Access Policy and Constraint Policy
    Helil, Nurmamat
    Rahman, Kaysar
    SECURITY AND COMMUNICATION NETWORKS, 2017,
  • [33] A revocable storage CP-ABE scheme with constant ciphertext length in cloud storage
    Zhao, Yang
    Xie, Xin
    Zhang, Xing
    Ding, Yi
    MATHEMATICAL BIOSCIENCES AND ENGINEERING, 2019, 16 (05) : 4229 - 4249
  • [34] Verifiable access control scheme based on unpaired CP-ABE in fog computing
    Dong J.
    Yan P.
    Du R.
    Tongxin Xuebao/Journal on Communications, 2021, 42 (08): : 139 - 150
  • [35] An Enhanced CP-ABE Based Access Control Algorithm for Point to Multi-Point Communication in Cloud Computing
    Shynu, P. G.
    Singh, K. John
    JOURNAL OF INFORMATION SCIENCE AND ENGINEERING, 2017, 33 (03) : 837 - 858
  • [36] A Blockchain and CP-ABE Based Access Control Scheme with Fine-Grained Revocation of Attributes in Cloud Health
    Lu, Ye
    Feng, Tao
    Liu, Chunyan
    Zhang, Wenbo
    CMC-COMPUTERS MATERIALS & CONTINUA, 2024, 78 (02): : 2787 - 2811
  • [37] Fine-grained access control of EHRs in cloud using CP-ABE with user revocation
    Gandikota Ramu
    B. Eswara Reddy
    Appawala Jayanthi
    L. V. Narasimha Prasad
    Health and Technology, 2019, 9 : 487 - 496
  • [38] A Study on Lightweight Anonymous CP-ABE Access Control for Secure Data Protection in Cloud Environment
    Hwang, Yong-Woon
    Lee, Im-Yeong
    2019 INTERNATIONAL CONFERENCE ON INFORMATION TECHNOLOGY AND COMPUTER COMMUNICATIONS (ITCC 2019), 2019, : 107 - 111
  • [39] Enabling Dynamic and Efficient Data Access Control in Cloud Computing based on Attribute Certificate Management and CP-ABE
    Fugkeaw, Somchart
    Sato, Hiroyuki
    2018 26TH EUROMICRO INTERNATIONAL CONFERENCE ON PARALLEL, DISTRIBUTED, AND NETWORK-BASED PROCESSING (PDP 2018), 2018, : 454 - 461
  • [40] Improving Privacy-Preserving CP-ABE with Hidden Access Policy
    Zhang, Leyou
    Cui, Yilei
    Mu, Yi
    CLOUD COMPUTING AND SECURITY, PT III, 2018, 11065 : 596 - 605