A Lightweight Attribute-Based Access Control Scheme for Intelligent Transportation System With Full Privacy Protection

被引:14
|
作者
Tian, Hui [1 ,2 ]
Li, Xiang [1 ,2 ]
Quan, Hanyu [1 ]
Chang, Chin-Chen [3 ]
Baker, Thar [4 ]
机构
[1] Huaqiao Univ, Coll Comp Sci & Technol, Xiamen 361021, Peoples R China
[2] Wuhan Natl Lab Optoelect, Wuhan 430074, Peoples R China
[3] Feng Chia Univ, Dept Informat Engn & Comp Sci, Taichung 40724, Taiwan
[4] Univ Sharjah, Dept Comp Sci, Coll Comp & Informat, Sharjah, U Arab Emirates
基金
中国国家自然科学基金;
关键词
Access control; data security; Internet of Things; intelligent transportation system; lightweight; privacy protection; KEYWORD SEARCH; ENCRYPTION;
D O I
10.1109/JSEN.2020.3030688
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
The Intelligent Transportation System (ITS) provides more possibilities for the realization of smart cities by integrating the Internet of Things (IoT) and cloud computing. However, how to ensure security of IoT data stored in the cloud has become one of the biggest challenges at present. As a promising solution for realizing fine-grained access control, Ciphertext-Policy Attribute-Based Encryption (CP-ABE) can be used to ensure data security. However, the traditional CP-ABE schemes may leak privacy of ITS users. Moreover, due to their high computational overheads, the current privacy-preserving techniques are not suitable for IoT lightweight devices. To fill this gap, this article presents ABE-FPP, a lightweight attribute-based access control scheme with full privacy protection (FPP), which can achieve full privacy protection in the three key stages (i.e., key generation, access control, and partial decryption), while reducing consumption overhead on the user side. Specifically, to protect privacy during key generation, a lightweight two-party secure computing protocol between the user and the authority is designed to generate secret keys; to protect privacy during the access control policy setting, we present an efficient policy hidden strategy, which only reveals attribute names and efficiently hides attribute values; to protect privacy during partial decryption, we propose a hybrid authenticationmethod that does not need to submit attribute values to the cloud. Moreover, to achieve lightweight computation for IoT devices, online/offline encryption and outsourced decryption are employed in ABE-FPP. Finally, formal security proofs show that our scheme is secure in the standard model. The asymptotic complexity analyses and experimental results demonstrate that the presented scheme achieves higher computation efficiency than the state-of-the-art ones.
引用
收藏
页码:15793 / 15806
页数:14
相关论文
共 50 条
  • [1] A Privacy-Preserving Attribute-Based Access Control Scheme
    Xu, Yang
    Zeng, Quanrun
    Wang, Guojun
    Zhang, Cheng
    Ren, Ju
    Zhang, Yaoxue
    [J]. SECURITY, PRIVACY, AND ANONYMITY IN COMPUTATION, COMMUNICATION, AND STORAGE (SPACCS 2018), 2018, 11342 : 361 - 370
  • [2] A Novel Attribute-based Access Control System for Fine-Grained Privacy Protection
    Son, Ha Xuan
    Nguyen Minh Hoang
    [J]. PROCEEDINGS OF 2019 THE 3RD INTERNATIONAL CONFERENCE ON CRYPTOGRAPHY, SECURITY AND PRIVACY (ICCSP 2019) WITH WORKSHOP 2019 THE 4TH INTERNATIONAL CONFERENCE ON MULTIMEDIA AND IMAGE PROCESSING (ICMIP 2019), 2019, : 76 - 80
  • [3] A privacy-enhanced attribute-based access control system
    Kolter, Jan
    Schillinger, Rolf
    Pernul, Guenther
    [J]. DATA AND APPLICATIONS SECURITY XXI, PROCEEDINGS, 2007, 4602 : 129 - +
  • [4] Attribute-based lightweight reconfigurable access control policy
    Xie R.
    Li H.
    Shi G.
    Guo Y.
    [J]. Tongxin Xuebao/Journal on Communications, 2020, 41 (02): : 112 - 122
  • [5] Privacy Preseving Attribute Based Searchable Encryption Scheme in Intelligent Transportation System
    Niu, Shufen
    Ge, Peng
    Dong, Runyuan
    Liu, Qi
    Liu, Wei
    [J]. Dianzi Yu Xinxi Xuebao/Journal of Electronics and Information Technology, 2024, 46 (07): : 3036 - 3045
  • [6] ENTERPRISE FILE-SHARING SYSTEM WITH LIGHTWEIGHT ATTRIBUTE-BASED ACCESS CONTROL
    Xiong, Zhi
    Guo, Ting
    Zhu, Changsheng
    Cai, Weihong
    Cai, Lingru
    [J]. UNIVERSITY POLITEHNICA OF BUCHAREST SCIENTIFIC BULLETIN SERIES C-ELECTRICAL ENGINEERING AND COMPUTER SCIENCE, 2018, 80 (01): : 15 - 26
  • [7] LIP-PA: A Logistics Information Privacy Protection Scheme with Position and Attribute-Based Access Control on Mobile Devices
    Gao, Qi
    Zhang, Junwei
    Ma, Jianfeng
    Yang, Chao
    Guo, Jingjing
    Miao, Yinbin
    [J]. WIRELESS COMMUNICATIONS & MOBILE COMPUTING, 2018,
  • [8] Attribute-based Access Control for ICN Naming Scheme
    Li, Bing
    Verleker, Ashwin Prabhu
    Huang, Dijiang
    Wang, Zhijie
    Zhu, Yan
    [J]. 2014 IEEE CONFERENCE ON COMMUNICATIONS AND NETWORK SECURITY (CNS), 2014, : 391 - 399
  • [9] Attribute-based Access Control for ICN Naming Scheme
    Li, Bing
    Huang, Dijiang
    Wang, Zhijie
    Zhu, Yan
    [J]. IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2018, 15 (02) : 194 - 206
  • [10] Efficient strong privacy protection and transferable attribute-based ticket scheme
    Feng H.
    Shi R.
    Yuan F.
    Li Y.
    Yang Y.
    [J]. Tongxin Xuebao/Journal on Communications, 2022, 43 (03): : 63 - 75