首页> 外文期刊>Cloud Computing, IEEE Transactions on >A Scalable Attribute-Based Access Control Scheme with Flexible Delegation cum Sharing of Access Privileges for Cloud Storage
【24h】

A Scalable Attribute-Based Access Control Scheme with Flexible Delegation cum Sharing of Access Privileges for Cloud Storage

机译:基于可扩展的属性基于访问控制方案,具有灵活的委托查阅云存储访问权限的分享

获取原文
获取原文并翻译 | 示例

摘要

Nowadays cloud servers have become the primary choice to store and share data with multiple users across the globe. The major challenge in sharing data using cloud servers is to protect data against untrusted cloud service provider and illegitimate users. Attribute-Based Encryption (ABE) has emerged as a useful cryptographic technique to securely share data with legitimate recipients in fine-grained manner. Several solutions employing ABE have been proposed to securely share data using cloud servers. However, most of the solutions are data owner-centric and focus on providing data owner complete control on his outsourced data. The existing solutions in cloud computing fail to provide shared access privileges among users and to enable cloud users to delegate their access privileges in a flexible manner. In order to simultaneously achieve the notion of fine-grained access control, scalability and to provide cloud users shared access privileges and flexibility on delegation of their access privileges, we propose a scalable attribute-based access control scheme for cloud storage. The scheme extends the ciphertext policy attribute-based encryption to achieve flexible delegation of access privileges and shared access privileges along with scalability and fine-grained access control. The scheme achieves scalability by employing hierarchical structure of users. Furthermore, we formally prove the security of our proposed scheme based on security of the ciphertext-policy attribute-based encryption. We also implement the algorithm to show its scalability and efficiency.
机译:如今,云服务器已成为存储和共享全球多个用户的主要选择。使用云服务器共享数据的主要挑战是保护对不受信任的云服务提供商和非法用户的数据。基于属性的加密(ABE)被出现为有用的加密技术,以以细粒度的方式安全地与合法接收者共享数据。已经提出了使用ABE采用的一些解决方案来使用云服务器安全地共享数据。但是,大多数解决方案都是以数据所有者为中心的,并专注于在他的外包数据上提供数据所有者完全控制。云计算中的现有解决方案未能在用户之间提供共享访问权限,并使云用户能够以灵活的方式委派其访问权限。为了同时实现细粒度访问控制,可扩展性和提供云用户的概念,并在其访问权限的委派时共享访问权限和灵活性,我们提出了一种用于云存储的可扩展属性的访问控制方案。该方案扩展了基于密文策略属性的加密,实现了访问权限的灵活委派和共享访问权限以及可伸缩性和细粒度的访问控制。该方案通过采用用户的分层结构来实现可扩展性。此外,我们根据基于密文 - 策略属性的加密的安全性正式证明了我们提出的方案的安全性。我们还实现了算法以显示其可扩展性和效率。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号