首页> 外文期刊>Cloud Computing, IEEE Transactions on >Secure, Efficient and Fine-Grained Data Access Control Mechanism for P2P Storage Cloud
【24h】

Secure, Efficient and Fine-Grained Data Access Control Mechanism for P2P Storage Cloud

机译:P2P存储云的安全,高效,精细的数据访问控制机制

获取原文
获取原文并翻译 | 示例

摘要

By combining cloud computing and Peer-to-Peer computing, a P2P storage cloud can be formed to offer highly available storage services, lowering the economic cost by exploiting the storage space of participating users. However, since cloud severs and users are usually outside the trusted domain of data owners, P2P storage cloud brings forth new challenges for data security and access control when data owners store sensitive data for sharing in the trusted domain. Moreover, there are no mechanisms for access control in P2P storage cloud. To address this issue, we design a ciphertext-policy attribute-based encryption (ABE) scheme and a proxy re-encryption scheme. Based on them, we further propose a secure, efficient and fine-grained data Access Control mechanism for P2P storage Cloud named ACPC. We enforce access policies based on user attributes, and integrate P2P reputation system in ACPC. ACPC enables data owners to delegate most of the laborious user revocation tasks to cloud servers and reputable system peers. Our security analysis demonstrates that ACPC is provably secure. The performance evaluation shows that ACPC is highly efficient under practical settings, and it significantly reduces the computation overheads brought to data owners and cloud servers during user revocation, compared with other state-of-the-art revocable ABE schemes.
机译:通过将云计算和点对点计算相结合,可以形成P2P存储云以提供高可用性的存储服务,并通过利用参与用户的存储空间来降低经济成本。但是,由于云服务器和用户通常不在数据所有者的受信任域之外,因此,当数据所有者在敏感域中存储要共享的敏感数据时,P2P存储云对数据安全和访问控制提出了新的挑战。此外,P2P存储云中没有用于访问控制的机制。为了解决此问题,我们设计了一种基于密文策略基于属性的加密(ABE)方案和代理重新加密方案。基于它们,我们进一步提出了一种名为ACPC的P2P存储云的安全,高效和细粒度的数据访问控制机制。我们根据用户属性实施访问策略,并将P2P信誉系统集成到ACPC中。 ACPC使数据所有者能够将大多数繁琐的用户吊销任务委托给云服务器和信誉良好的系统对等方。我们的安全性分析表明,ACPC是可证明的安全性。性能评估表明,ACPC在实际设置下非常高效,并且与其他最新的可撤销ABE方案相比,它大大减少了用户撤销期间带给数据所有者和云服务器的计算开销。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号