Dynamic Credentials and Ciphertext Delegation for Attribute-Based Encryption

被引:0
|
作者
Sahai, Amit [1 ]
Seyalioglu, Hakan [2 ]
Waters, Brent [3 ]
机构
[1] Univ Calif Los Angeles, Dept Comp Sci, Los Angeles, CA 90024 USA
[2] Univ Calif Los Angeles, Dept Math, Los Angeles, CA 90024 USA
[3] Univ Texas Austin, Dept Comp Sci, Austin, TX 78712 USA
来源
关键词
CERTIFICATE REVOCATION;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Motivated by the question of access control in cloud storage, we consider the problem using Attribute-Based Encryption (ABE) in a setting where users' credentials may change and ciphertexts may be stored by a third party. Our main result is obtained by pairing two contributions: We first ask how a third party who is not trusted with secret key information can process a ciphertext to disqualify revoked users from decrypting data encrypted in the past. Our core tool is a new procedure called ciphertext delegation that allows a ciphertext to be 're-encrypted' to a more restrictive policy using only public information. Second, we study the problem of revocable attribute-based encryption. We provide the first fully secure construction by modifying an attribute-based encryption scheme due to Lewko et al. [9] and prove security in the standard model. We then combine these two results for a new approach for revocation on stored data. Our scheme allows a storage server to update stored ciphertexts to disqualify revoked users from accessing data that was encrypted before the user's access was revoked while key update broadcasts can dynamically revoke selected users.
引用
收藏
页码:199 / 217
页数:19
相关论文
共 50 条
  • [1] Flexible revocation in ciphertext-policy attribute-based encryption with verifiable ciphertext delegation
    Deng, Shijie
    Yang, Gaobo
    Dong, Wen
    Xia, Ming
    [J]. MULTIMEDIA TOOLS AND APPLICATIONS, 2023, 82 (14) : 22251 - 22274
  • [2] Flexible revocation in ciphertext-policy attribute-based encryption with verifiable ciphertext delegation
    Shijie Deng
    Gaobo Yang
    Wen Dong
    Ming Xia
    [J]. Multimedia Tools and Applications, 2023, 82 : 22251 - 22274
  • [3] Revocable attribute-based encryption with decryption key exposure resistance and ciphertext delegation
    Xu, Shengmin
    Yang, Guomin
    Mu, Yi
    [J]. INFORMATION SCIENCES, 2019, 479 : 116 - 134
  • [4] Comments on "Circuit ciphertext-policy attribute-based hybrid encryption with verifiable delegation"
    Xiong, Hu
    Wang, Qiang
    Sun, Jianfei
    [J]. INFORMATION PROCESSING LETTERS, 2017, 127 : 67 - 70
  • [5] Ciphertext-Policy Attribute-Based Encryption with Key-Delegation Abuse Resistance
    Jiang, Yinhao
    Susilo, Willy
    Mu, Yi
    Guo, Fuchun
    [J]. INFORMATION SECURITY AND PRIVACY, PT I, 2016, 9722 : 477 - 494
  • [6] Directly revocable key-policy attribute-based encryption with verifiable ciphertext delegation
    Shi, Yanfeng
    Zheng, Qingji
    Liu, Jigiang
    Han, Zhen
    [J]. INFORMATION SCIENCES, 2015, 295 : 221 - 231
  • [7] Attribute-based encryption for ciphertext in advanced encryption standard
    Raja, M.
    Dhanasekaran, S.
    Vasudevan, V.
    [J]. MATERIALS TODAY-PROCEEDINGS, 2021, 37 : 3442 - 3445
  • [8] Ciphertext-policy attribute-based encryption
    Bethencourt, John
    Sahai, Amit
    Waters, Brent
    [J]. 2007 IEEE SYMPOSIUM ON SECURITY AND PRIVACY, PROCEEDINGS, 2007, : 321 - +
  • [9] Circuit Ciphertext-Policy Attribute-Based Hybrid Encryption with Verifiable Delegation in Cloud Computing
    Xu, Jie
    Wen, Qiaoyan
    Li, Wenmin
    Jin, Zhengping
    [J]. IEEE TRANSACTIONS ON PARALLEL AND DISTRIBUTED SYSTEMS, 2016, 27 (01) : 119 - 129
  • [10] Fine-Grained and Traceable Key Delegation for Ciphertext-Policy Attribute-Based Encryption
    Du, Jiajie
    HelIl, Nurmamat
    [J]. KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS, 2021, 15 (09): : 3274 - 3297