首页> 外文期刊>Computer networks >Fine-grained data access control with attribute-hiding policy for cloud-based IoT
【24h】

Fine-grained data access control with attribute-hiding policy for cloud-based IoT

机译:带有属性隐藏策略的细粒度数据访问控制,用于基于云的物联网

获取原文
获取原文并翻译 | 示例
           

摘要

Ciphertext-policy attribute-based encryption (CP-ABE) is a promising approach to achieve fine-grained access control over the outsourced data in Internet of Things (IoT). However, in the existing CP-ABE schemes, the access policy is either appended to the ciphertext explicitly or only partially hidden against public visibility, which results in privacy leakage of the underlying ciphertext and potential recipients. In this paper, we propose a fine-grained data access control scheme supporting expressive access policy with fully attribute hidden for cloud-based IoT. Specifically, the attribute information is fully hidden in access policy by using randomizable technique, and a fuzzy attribute positioning mechanism based on garbled Bloom filter is developed to help the authorized recipients locate their attributes efficiently and decrypt the ciphertext successfully. Security analysis and performance evaluation demonstrate that the proposed scheme achieves effective policy privacy preservation with low storage and computation overhead. As a result, no valuable attribute information in the access policy will be disclosed to the unauthorized recipients. (C) 2019 Elsevier B.V. All rights reserved.
机译:基于密文策略的基于属性的加密(CP-ABE)是一种有前途的方法,可以实现对物联网(IoT)中外包数据的细粒度访问控制。但是,在现有的CP-ABE方案中,访问策略要么显式地附加到密文中,要么仅对公共可见性部分隐藏,这导致底层密文和潜在接收者的隐私泄漏。在本文中,我们提出了一种细粒度的数据访问控制方案,该方案支持基于云的物联网具有完全属性隐藏的表达性访问策略。具体来说,通过使用可随机化的技术将属性信息完全隐藏在访问策略中,并开发了一种基于乱码布隆过滤器的模糊属性定位机制,以帮助授权接收者有效地定位其属性并成功解密密文。安全性分析和性能评估表明,该方案以较低的存储和计算开销实现了有效的策略隐私保护。结果,访问策略中的任何有价值的属性信息都不会泄露给未授权的接收者。 (C)2019 Elsevier B.V.保留所有权利。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号