ISCAS OpenIR
a secure and efficient revocation scheme for fine-grained access control in cloud storage
Lv Zhiquan; Hong Cheng; Zhang Min; Feng Dengguo
2012
Conference Name2012 4th IEEE International Conference on Cloud Computing Technology and Science, CloudCom 2012
SourceCloudCom 2012 - Proceedings: 2012 4th IEEE International Conference on Cloud Computing Technology and Science
Pages545-550
Conference DateDecember 3, 2012 - December 6, 2012
Conference PlaceTaipei, Taiwan
Indexed TypeEI
ISBN9781467345095
Department(1) Institute of Software Chinese Academy of Sciences Beijing China
English AbstractTo keep data confidential against unauthorized cloud servers and users, cryptographic access control mechanisms must be adopted. However, user revocation is a challenging issue since it would inevitably require data re-encryption, and may need user secret key updates. Considering the complexity of fine-grained access control policy and the large number of users in cloud, this issue would become extremely difficult to resolve. In this paper, we focus on this challenging open issue and present a secure and efficient revocation scheme. We propose a modified CP-ABE algorithm to set up a fine-grained access control method, in which user revocation is achieved based on the theory of Shamir's Secret Sharing. Compared with existing schemes, our scheme introduces a minimal overhead not only to the data owner but also to cloud servers. Collusions between cloud servers and revoked users can be avoided as long as the key-update protocol is honestly executed. Meanwhile, the data owner can delegate key updates to the cloud servers without disclosing data contents, user attributes, and the access policy information. Moreover, our scheme maintains the important feature that the revocation won't affect the users whose attribute set is a superset of the revoked user's. © 2012 IEEE.; To keep data confidential against unauthorized cloud servers and users, cryptographic access control mechanisms must be adopted. However, user revocation is a challenging issue since it would inevitably require data re-encryption, and may need user secret key updates. Considering the complexity of fine-grained access control policy and the large number of users in cloud, this issue would become extremely difficult to resolve. In this paper, we focus on this challenging open issue and present a secure and efficient revocation scheme. We propose a modified CP-ABE algorithm to set up a fine-grained access control method, in which user revocation is achieved based on the theory of Shamir's Secret Sharing. Compared with existing schemes, our scheme introduces a minimal overhead not only to the data owner but also to cloud servers. Collusions between cloud servers and revoked users can be avoided as long as the key-update protocol is honestly executed. Meanwhile, the data owner can delegate key updates to the cloud servers without disclosing data contents, user attributes, and the access policy information. Moreover, our scheme maintains the important feature that the revocation won't affect the users whose attribute set is a superset of the revoked user's. © 2012 IEEE.
KeywordCloud Computing Digital Storage
SponsorshipQuanta Computer; MEDIATEK; Microsoft; Institute for Information Industry; Industrial Technology Research Institute (ITRI)
Language英语
Content Type会议论文
URIhttp://ir.iscas.ac.cn/handle/311060/15915
Collection中国科学院软件研究所
Recommended Citation
GB/T 7714
Lv Zhiquan,Hong Cheng,Zhang Min,et al. a secure and efficient revocation scheme for fine-grained access control in cloud storage[C],2012:545-550.
Files in This Item:
There are no files associated with this item.
Related Services
Recommend this item
Bookmark
Usage statistics
Export to Endnote
Google Scholar
Similar articles in Google Scholar
[Lv Zhiquan]'s Articles
[Hong Cheng]'s Articles
[Zhang Min]'s Articles
Baidu academic
Similar articles in Baidu academic
[Lv Zhiquan]'s Articles
[Hong Cheng]'s Articles
[Zhang Min]'s Articles
Bing Scholar
Similar articles in Bing Scholar
[Lv Zhiquan]'s Articles
[Hong Cheng]'s Articles
[Zhang Min]'s Articles
Terms of Use
No data!
Social Bookmark/Share
All comments (0)
No comment.
 

Items in the repository are protected by copyright, with all rights reserved, unless otherwise indicated.