首页> 外文会议>IEEE International Conference on Software Quality, Reliability, and Security >Provably Secure Cryptographic ABAC System to Enhance Reliability and Privacy Using Real-Time Token and Dynamic Policy
【24h】

Provably Secure Cryptographic ABAC System to Enhance Reliability and Privacy Using Real-Time Token and Dynamic Policy

机译:可证明安全加密ABAC系统,以提高使用实时令牌和动态策略的可靠性和隐私

获取原文

摘要

In this paper we address the problem of reliability and security in an open-access data sharing system. We propose a new framework, called cryptographic attribute-based access control (CABAC), in consistent with the standard ABAC model. Moreover, two new mechanisms, real-time Tokens and secure policy decision-making, are introduced for ensuring secure attribute authorization and verifiable policy decision-making. More important, we present a practical CABAC system to support adaptability and flexibility using dynamically chosen policy and real-time attribute acquisition. We prove that our CABAC system is provably secure in four aspects: the attribute Tokens are existentially unforgeable against chosen-time and chosen-attribute attacks, respectively; the secure policy is existentially unforgeable against chosen-object attack under eBDH assumption; and our entire system is semantically secure against chosen-plaintext attack with Token and policy queries under eGDHE assumption.
机译:在本文中,我们在开放式数据共享系统中解决了可靠性和安全性的问题。我们提出了一种新的框架,称为基于加密属性的访问控制(CABAC),与标准ABAC模型一致。此外,引入了两个新机制,实时代币和安全策略决策,以确保安全的属性授权和可验证的政策决策。更重要的是,我们展示了一种实用的CABAC系统,支持使用动态选择的策略和实时属性采集来支持适应性和灵活性。我们证明我们的CABAC系统在四个方面可被证明是安全的:分别对选定时间和所选属性攻击存在的属性令牌;在EBDH假设下,安全策略对选用对象攻击存在不可避免;我们的整个系统在语义上,以EGDHE假设下的令牌和策略查询进行了语义保护。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号