首页> 外文期刊>Information Forensics and Security, IEEE Transactions on >HASBE: A Hierarchical Attribute-Based Solution for Flexible and Scalable Access Control in Cloud Computing
【24h】

HASBE: A Hierarchical Attribute-Based Solution for Flexible and Scalable Access Control in Cloud Computing

机译:HASBE:基于分层属性的云计算中灵活,可扩展的访问控制解决方案

获取原文
获取原文并翻译 | 示例

摘要

Cloud computing has emerged as one of the most influential paradigms in the IT industry in recent years. Since this new computing technology requires users to entrust their valuable data to cloud providers, there have been increasing security and privacy concerns on outsourced data. Several schemes employing attribute-based encryption (ABE) have been proposed for access control of outsourced data in cloud computing; however, most of them suffer from inflexibility in implementing complex access control policies. In order to realize scalable, flexible, and fine-grained access control of outsourced data in cloud computing, in this paper, we propose hierarchical attribute-set-based encryption (HASBE) by extending ciphertext-policy attribute-set-based encryption (ASBE) with a hierarchical structure of users. The proposed scheme not only achieves scalability due to its hierarchical structure, but also inherits flexibility and fine-grained access control in supporting compound attributes of ASBE. In addition, HASBE employs multiple value assignments for access expiration time to deal with user revocation more efficiently than existing schemes. We formally prove the security of HASBE based on security of the ciphertext-policy attribute-based encryption (CP-ABE) scheme by Bethencourt and analyze its performance and computational complexity. We implement our scheme and show that it is both efficient and flexible in dealing with access control for outsourced data in cloud computing with comprehensive experiments.
机译:近年来,云计算已成为IT行业最具影响力的范例之一。由于这种新的计算技术要求用户将其宝贵的数据委托给云提供商,因此,对外包数据的安全性和隐私问题越来越关注。已经提出了几种使用基于属性的加密(ABE)的方案来对云计算中的外包数据进行访问控制。但是,它们中的大多数在实施复杂的访问控制策略时都缺乏灵活性。为了在云计算中实现对外包数据的可扩展,灵活和细粒度的访问控制,本文通过扩展基于密文策略的基于属性集的加密(ASBE),提出了基于层次属性集的加密(HASBE)。 )以及用户的层次结构。所提出的方案不仅由于其分层结构而实现了可伸缩性,而且在支持ASBE的复合属性方面继承了灵活性和细粒度的访问控制。此外,与现有方案相比,HASBE将多个值分配用于访问到期时间以更有效地处理用户吊销。我们基于Bethencourt的基于密文策略的基于属性的加密(CP-ABE)方案的安全性,正式证明了HASBE的安全性,并分析了其性能和计算复杂性。我们实施了该方案,并通过综合实验证明了该方案在处理外包数据在云计算中的访问控制方面既高效又灵活。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号