一种云存储服务中的动态加密访问控制方案

Rui Zhang, Peishuai Chen
{"title":"一种云存储服务中的动态加密访问控制方案","authors":"Rui Zhang, Peishuai Chen","doi":"10.4156/IJIPM.VOL4.ISSUE1.13","DOIUrl":null,"url":null,"abstract":"The cloud storage services is a technology in cloud computing, which provides the online storage services for data owners over the Internet. It enables data owners to remotely store their data into a cloud so that to enjoy scalable services pay-on-demand. However, allowing the cloud servers to take care of the confidential data, which may bring many challenges for data security and access control. In order to achieve security, fine-grained and flexible access control for cloud storage services, we present a cryptographic access control scheme called CS-CACS based on encryption (CP-ABE), which is implemented based on the HDFS workstation. Meanwhile, we combine the proxy re-encryption and lazy re-encryption to make the cloud servers do most of re-encryption computing when the user's permission is revoked, which greatly reduces the computation cost of data owners. Our scheme has prominent properties of user access permission confidentiality and user secret key accountability. Performance analysis shows that the proposed scheme is efficient and security when the more users access data in the cloud storage.","PeriodicalId":162910,"journal":{"name":"2012 8th International Conference on Computing and Networking Technology (INC, ICCIS and ICMIC)","volume":"53 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2012-08-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"22","resultStr":"{\"title\":\"A dynamic cryptographic access control scheme in cloud storage services\",\"authors\":\"Rui Zhang, Peishuai Chen\",\"doi\":\"10.4156/IJIPM.VOL4.ISSUE1.13\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"The cloud storage services is a technology in cloud computing, which provides the online storage services for data owners over the Internet. It enables data owners to remotely store their data into a cloud so that to enjoy scalable services pay-on-demand. However, allowing the cloud servers to take care of the confidential data, which may bring many challenges for data security and access control. In order to achieve security, fine-grained and flexible access control for cloud storage services, we present a cryptographic access control scheme called CS-CACS based on encryption (CP-ABE), which is implemented based on the HDFS workstation. Meanwhile, we combine the proxy re-encryption and lazy re-encryption to make the cloud servers do most of re-encryption computing when the user's permission is revoked, which greatly reduces the computation cost of data owners. Our scheme has prominent properties of user access permission confidentiality and user secret key accountability. Performance analysis shows that the proposed scheme is efficient and security when the more users access data in the cloud storage.\",\"PeriodicalId\":162910,\"journal\":{\"name\":\"2012 8th International Conference on Computing and Networking Technology (INC, ICCIS and ICMIC)\",\"volume\":\"53 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2012-08-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"22\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2012 8th International Conference on Computing and Networking Technology (INC, ICCIS and ICMIC)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.4156/IJIPM.VOL4.ISSUE1.13\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2012 8th International Conference on Computing and Networking Technology (INC, ICCIS and ICMIC)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.4156/IJIPM.VOL4.ISSUE1.13","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 22

摘要

云存储服务是云计算中的一项技术,通过互联网为数据所有者提供在线存储服务。它使数据所有者能够将数据远程存储到云中,以便享受按需付费的可扩展服务。但是,允许云服务器处理机密数据,可能会给数据安全和访问控制带来许多挑战。为了实现云存储服务的安全、细粒度和灵活的访问控制,我们提出了一种基于加密的加密访问控制方案CS-CACS (CP-ABE),该方案基于HDFS工作站实现。同时,我们将代理重加密和延迟重加密相结合,使云服务器在用户权限被撤销时完成大部分重加密计算,大大降低了数据所有者的计算成本。该方案具有用户访问权限的保密性和用户密钥的可问责性。性能分析表明,当访问云存储数据的用户较多时,该方案具有较高的效率和安全性。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
A dynamic cryptographic access control scheme in cloud storage services
The cloud storage services is a technology in cloud computing, which provides the online storage services for data owners over the Internet. It enables data owners to remotely store their data into a cloud so that to enjoy scalable services pay-on-demand. However, allowing the cloud servers to take care of the confidential data, which may bring many challenges for data security and access control. In order to achieve security, fine-grained and flexible access control for cloud storage services, we present a cryptographic access control scheme called CS-CACS based on encryption (CP-ABE), which is implemented based on the HDFS workstation. Meanwhile, we combine the proxy re-encryption and lazy re-encryption to make the cloud servers do most of re-encryption computing when the user's permission is revoked, which greatly reduces the computation cost of data owners. Our scheme has prominent properties of user access permission confidentiality and user secret key accountability. Performance analysis shows that the proposed scheme is efficient and security when the more users access data in the cloud storage.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信