Skip to main content

2020 | OriginalPaper | Buchkapitel

Toward Ciphertext Policy Attribute Based Encryption Model: A Revocable Access Control Solution in Cloud Computing

verfasst von : Mariem Bouchaala, Cherif Ghazel, Leila Azouz Saidane

Erschienen in: Risks and Security of Internet and Systems

Verlag: Springer International Publishing

Aktivieren Sie unsere intelligente Suche, um passende Fachinhalte oder Patente zu finden.

search-config
loading …

Abstract

Cloud Computing is the most promising paradigm in recent times. It offers on-demand services to individuals and industries. However, outsourcing sensitive data to entrusted Cloud servers impedes the adoption of Cloud concept. Security presents the most important issue. Consequently, Cloud service provider should implement fine grained access control models. Ciphertext Policy Attribute Based Encryption (CPABE) is considered as one of the most appropriate approach in Cloud Computing environment. However, it suffers from revocation, data owner overhead and computational cost limitations. In this work, we propose a Revocable algorithm (R-CPABE). The main idea of this work is to divide the original data after publishing in cloud server. In case of user revocation, one single slice is affected. Data owner need to retrieve, re-encrypt and re-publish it. To confirm the safety of our solution, we provide a security analysis. To evaluate its efficiency, a performance evaluation is performed.

Sie haben noch keine Lizenz? Dann Informieren Sie sich jetzt über unsere Produkte:

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Technik"

Online-Abonnement

Mit Springer Professional "Technik" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 390 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Maschinenbau + Werkstoffe




 

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft"

Online-Abonnement

Mit Springer Professional "Wirtschaft" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 340 Zeitschriften

aus folgenden Fachgebieten:

  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Versicherung + Risiko




Jetzt Wissensvorsprung sichern!

Literatur
1.
Zurück zum Zitat Bouchaala, M., Ghazel, C., Saidane, L.A.: End to end cloud computing architecture based on a novel classification of security issues. In: IEEE on International Conference on Computer Systems and Applications (AICCSA), March 2018 Bouchaala, M., Ghazel, C., Saidane, L.A.: End to end cloud computing architecture based on a novel classification of security issues. In: IEEE on International Conference on Computer Systems and Applications (AICCSA), March 2018
2.
Zurück zum Zitat Matthew, G., Susan, H., Brent, W.: Outsourcing the decryption of ABE ciphertexts. In: Proceeding SEC 11 Proceedings of the 20th USENIX Conference on Security, pp. 34–34, August 2011 Matthew, G., Susan, H., Brent, W.: Outsourcing the decryption of ABE ciphertexts. In: Proceeding SEC 11 Proceedings of the 20th USENIX Conference on Security, pp. 34–34, August 2011
3.
Zurück zum Zitat John, B., Amit, S., Brent, W.: Ciphertext-policy attribute-based encryption. In: Proceedings of the 2007 IEEE on Symposium on Security and Privacy, SP 2007, pp. 321–334, May 2007 John, B., Amit, S., Brent, W.: Ciphertext-policy attribute-based encryption. In: Proceedings of the 2007 IEEE on Symposium on Security and Privacy, SP 2007, pp. 321–334, May 2007
4.
Zurück zum Zitat Bouchaala, M., Ghazel, C., Saidane, L.A.: Revocable sliced ciphertext policy attribute based encryption scheme in cloud computing. In: 15th International Wireless Communications Mobile Computing Conference (IWCMC), June 2019 Bouchaala, M., Ghazel, C., Saidane, L.A.: Revocable sliced ciphertext policy attribute based encryption scheme in cloud computing. In: 15th International Wireless Communications Mobile Computing Conference (IWCMC), June 2019
5.
Zurück zum Zitat Zhiguo, W., June, L., Robert, H.D.: HASBE: a hierarchical attribute-based solution for flexible and scalable access control in cloud computing. IEEE Trans. Inf. Forensics Secur. 7(2), 743–754 (2012)CrossRef Zhiguo, W., June, L., Robert, H.D.: HASBE: a hierarchical attribute-based solution for flexible and scalable access control in cloud computing. IEEE Trans. Inf. Forensics Secur. 7(2), 743–754 (2012)CrossRef
7.
Zurück zum Zitat Matthew, P., Patrick, T., Patrick, M., Brent, W.: Secure attribute-based systems. J. Comput. Secur. 18, 799–837 (2010) Matthew, P., Patrick, T., Patrick, M., Brent, W.: Secure attribute-based systems. J. Comput. Secur. 18, 799–837 (2010)
9.
Zurück zum Zitat Kan, Y., Xiaohua, J.: Expressive, efficient, and revocable data access control for multi-authority cloud storage. IEEE Trans. Parallel Distrib. Syst. 25(7), 1735–1744 (2014)CrossRef Kan, Y., Xiaohua, J.: Expressive, efficient, and revocable data access control for multi-authority cloud storage. IEEE Trans. Parallel Distrib. Syst. 25(7), 1735–1744 (2014)CrossRef
10.
Zurück zum Zitat Zhou, Z., Huang, D., Wang, Z.: Efficient privacy-preserving ciphertext-policy attribute based-encryption and broadcast encryption. IEEE Trans. Comput. 64(1), 126–138 (2015)MathSciNetCrossRef Zhou, Z., Huang, D., Wang, Z.: Efficient privacy-preserving ciphertext-policy attribute based-encryption and broadcast encryption. IEEE Trans. Comput. 64(1), 126–138 (2015)MathSciNetCrossRef
11.
Zurück zum Zitat Rabin, M.O.: Efficient dispersal of information for security, load balancing, and fault tolerance. J. ACM 36(2), 335–348 (1989)MathSciNetCrossRef Rabin, M.O.: Efficient dispersal of information for security, load balancing, and fault tolerance. J. ACM 36(2), 335–348 (1989)MathSciNetCrossRef
12.
Zurück zum Zitat Canda, V., Van Trung, T.: A new mode of using all-or-nothing transforms. In: Proceedings IEEE International Symposium on Information Theory, July 2002 Canda, V., Van Trung, T.: A new mode of using all-or-nothing transforms. In: Proceedings IEEE International Symposium on Information Theory, July 2002
13.
Zurück zum Zitat Su, J.-S., Cao, D., Wang, X.-F.: Attribute-based encryption schemes. J. Softw. 22, 1299–1315 (2011) Su, J.-S., Cao, D., Wang, X.-F.: Attribute-based encryption schemes. J. Softw. 22, 1299–1315 (2011)
14.
Zurück zum Zitat Angelo, D.C., Vincenzo, I.: jPBC: Java pairing based cryptography. In: IEEE Symposium on Computers and Communications (ISCC), June 2011 Angelo, D.C., Vincenzo, I.: jPBC: Java pairing based cryptography. In: IEEE Symposium on Computers and Communications (ISCC), June 2011
Metadaten
Titel
Toward Ciphertext Policy Attribute Based Encryption Model: A Revocable Access Control Solution in Cloud Computing
verfasst von
Mariem Bouchaala
Cherif Ghazel
Leila Azouz Saidane
Copyright-Jahr
2020
DOI
https://doi.org/10.1007/978-3-030-41568-6_13