首页> 外文会议>International Conference on Big Data and Artificial Intelligence >A Role-Based Access Control System Using Attribute-Based Encryption
【24h】

A Role-Based Access Control System Using Attribute-Based Encryption

机译:使用基于属性的加密的基于角色的访问控制系统

获取原文

摘要

Applications and services such as cloud storage and data sharing cause data owners to fail to control data access. In such open environment, the third-party service providers become the executor, which means traditional centralized access control becomes untrustworthy. The mainstream role-based access control is insufficient in the open environment, while the cryptography-based access control implementation relies heavily on key distribution, so we designed and implemented a role-based access control system based on attribute encryption. The user role assignment and the role permission assignment process are implemented through attribute-based encryption, so that the access decision is no longer dependent on specific policy decision points, ensuring the reliable enforcement of access policies. Meanwhile, our approach adds attributes to the role-based access control model, implements attribute-based user role assignments and role permission assignments, which makes the access control process more flexible. The validation verification and performance testing of a prototype prove the feasibility of our scheme.
机译:云存储和数据共享等应用程序和服务会导致数据所有者无法控制数据访问。在这样的开放环境中,第三方服务提供商将成为执行者,这意味着传统的集中式访问控制变得不可信。主流的基于角色的访问控制在开放环境中是不够的,而基于密码的访问控制实现在很大程度上依赖于密钥分发,因此我们设计并实现了基于属性加密的基于角色的访问控制系统。用户角色分配和角色权限分配过程是通过基于属性的加密实现的,因此访问决策不再依赖于特定的策略决策点,从而确保了访问策略的可靠实施。同时,我们的方法将属性添加到基于角色的访问控制模型中,实现了基于属性的用户角色分配和角色权限分配,这使访问控制过程更加灵活。原型的有效性验证和性能测试证明了该方案的可行性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号