首页> 外文期刊>Future generation computer systems >Fine-grained access control based on Trusted Execution Environment
【24h】

Fine-grained access control based on Trusted Execution Environment

机译:基于可信执行环境的细粒度访问控制

获取原文
获取原文并翻译 | 示例

摘要

With the wide adoption of mobile devices, it becomes increasingly a reality that mobile users use a variety of apps from various sources. Since the enforcement of strict privacy is difficult, the inappropriate access by malicious apps is a major concern for mobile users, and access control becomes a challenge. In order to prevent the leakage of sensitive information (such as the contact lists, or private pictures) by inappropriate or illegal access, we propose a fine-grained access-control scheme based on Ciphertext-Policy Attribute-Based Encryption (CPABE) and Trusted Execution Environment (TEE), which can effectively protect data. In the scheme, CPABE is adopted in a novel way to solve the important security problems by supporting fine-grained access control during the access period and by supporting the critical operations running in the trusted execution environment. The scheme can be used to mitigate the sensitive information attacks and enhance confidentiality. Moreover, it can reduce the risk in the case of one single authority. Compared to the traditional access-control mechanisms, our experimental results indicate that the proposed scheme satisfies the security requirements, and is superior to other existing schemes.
机译:随着移动设备的广泛采用,移动用户使用来自各种来源的各种应用程序的现实成为现实。由于严格隐私的执行很困难,恶意应用程序的不恰当访问是移动用户的主要关注点,并且访问控制成为一个挑战。为了防止敏感信息(如联系人列表或私人图片)的泄漏,通过不适当的访问,我们提出了一种基于密文 - 策略属性的加密(CPABE)和可信赖的细粒度访问控制方案执行环境(TEE),可以有效保护数据。在该方案中,通过支持在访问期间支持细粒度访问控制,并通过支持在可信执行环境中运行的关键操作来解决重要的安全问题,以一种新的方法来采用CPABE来解决重要的安全问题。该方案可用于减轻敏感信息攻击并增强机密性。此外,它可以降低一个权限的情况下的风险。与传统的访问控制机制相比,我们的实验结果表明,该方案满足安全要求,优于其他现有计划。

著录项

  • 来源
    《Future generation computer systems》 |2020年第8期|551-561|共11页
  • 作者单位

    Department of Computer Science and Technology China University of Petroleum Beijing China Beijing Key Lab of Petroleum Data Mining China University of Petroleum Beijing China;

    Department of Computer Science and Technology China University of Petroleum Beijing China Beijing Key Lab of Petroleum Data Mining China University of Petroleum Beijing China;

    Department of Computer Science and Engineering Penn State University PA USA;

    Department of Electronic Engineering Tsinghua University China;

  • 收录信息 美国《科学引文索引》(SCI);美国《工程索引》(EI);
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    Trusted Execution Environment; CPABE; Sensitive information; Fine-grained access control;

    机译:值得信赖的执行环境;cpabe;敏感信息;细粒度访问控制;

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号