Publishing Service

Polishing & Checking

Frontiers of Information Technology & Electronic Engineering

ISSN 2095-9184 (print), ISSN 2095-9230 (online)

Generic user revocation systems for attribute-based encryption in cloud storage

Abstract: Cloud-based storage is a service model for businesses and individual users that involves paid or free storage resources. This service model enables on-demand storage capacity and management to users anywhere via the Internet. Because most cloud storage is provided by third-party service providers, the trust required for the cloud storage providers and the shared multi-tenant environment present special challenges for data protection and access control. Attribute-based encryption (ABE) not only protects data secrecy, but also has ciphertexts or decryption keys associated with fine-grained access policies that are automatically enforced during the decryption process. This enforcement puts data access under control at each data item level. However, ABE schemes have practical limitations on dynamic user revocation. In this paper, we propose two generic user revocation systems for ABE with user privacy protection, user revocation via ciphertext re-encryption (UR-CRE) and user revocation via cloud storage providers (UR-CSP), which work with any type of ABE scheme to dynamically revoke users.

Key words: Attribute-based encryption, Generic user revocation, User privacy, Cloud storage, Access control

Chinese Summary  <21> 云存储中基于属性加密的通用型用户撤销系统

摘要:云存储是面向企业和个人用户的服务模型,包括付费和免费两种方式。基于云存储服务模型,用户通过互联网随时随地享受云存储提供的存储服务和管理功能。由于大多数云存储由第三方服务商提供,因此在数据保护和访问控制方面,云存储提供商和共享多租户环境下可信任性面临极大挑战。基于属性加密(attribute-based encryption,ABE)不仅保护数据的机密性,而且其中的密文或解密密钥与相关细粒度访问策略有关,这些策略在解密过程中被自动执行,使每个数据级别的数据访问处于控制之下。但是,在实际动态用户撤销应用中该方案有一定局限性。提出两种具有隐私保护功能的基于属性加密的通用型用户撤销系统:通过密文重加密(user revocation via ciphertext re-encryption,UR-CRE)实现的用户撤销系统和通过云存储提供商(user revocation via cloud storage providers,UR-CSP)实现的用户撤销系统。这两种系统可以与任意类型基于属性加密的方案协作,实现动态撤销用户。

关键词组:基于属性的加密;通用型用户撤销;用户隐私;云存储;访问控制


Share this article to: More

Go to Contents

References:

<Show All>

Open peer comments: Debate/Discuss/Question/Opinion

<1>

Please provide your name, email address and a comment





DOI:

10.1631/FITEE.1800405

CLC number:

TP309.2

Download Full Text:

Click Here

Downloaded:

2287

Download summary:

<Click Here> 

Downloaded:

1751

Clicked:

5529

Cited:

0

On-line Access:

2018-12-14

Received:

2018-06-27

Revision Accepted:

2018-11-11

Crosschecked:

2018-11-27

Journal of Zhejiang University-SCIENCE, 38 Zheda Road, Hangzhou 310027, China
Tel: +86-571-87952276; Fax: +86-571-87952331; E-mail: jzus@zju.edu.cn
Copyright © 2000~ Journal of Zhejiang University-SCIENCE