Achieving fine-grained access control and mitigating role explosion by utilising ABE with RBAC

被引:0
|
作者
Balusamy B. [1 ]
Ramachandran S. [1 ]
Priya N. [2 ]
机构
[1] School of Information Technology and Engineering (SITE), Vellore Institute of Technology (VIT), Vellore
[2] Department of Information Technology, Saveetha Engineering College, Thandalam, Chennai, 602105, Tamil Nadu
关键词
Cloud computing; Cloud security; Fine-grained access control; RBAC;
D O I
10.1504/IJHPCN.2017.083208
中图分类号
学科分类号
摘要
Cloud systems can store a vast amount of sensitive data whose access must be well regulated. A good access control policy ensures the security of this data while providing high flexibility in terms of access management. In this paper, we introduce access control architecture to mitigate the issue of role-explosion in RBAC and achieve a high degree of fine-grained access control by following an attribute-based encryption scheme with RBAC. In our model, we propose a user-tree with a hierarchical structure composed of groups and sub-groups to which a user will be assigned. These sub-groups will have their own sets of attributes as well as common inherited attributes. A user assigned to a specific sub-group will receive a key with the specific attributes of the sub-group as well as the inherited attributes. Copyright © 2017 Inderscience Enterprises Ltd.
引用
收藏
页码:109 / 117
页数:8
相关论文
共 50 条
  • [1] Fine-grained Access Control Model Based on RBAC
    Gao, Lei
    Pan, Shulin
    AUTOMATION EQUIPMENT AND SYSTEMS, PTS 1-4, 2012, 468-471 : 1667 - +
  • [2] Achieving fine-grained access control in virtual organizations
    Zhang, N.
    Yao, L.
    Nenadic, A.
    Chin, J.
    Goble, C.
    Rector, A.
    Chadwick, D.
    Otenko, S.
    Shi, Q.
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2007, 19 (09): : 1333 - 1352
  • [3] Research on the Fine-Grained Access Control based -on RBAC on the trusted domain
    Wan Ai-Xia
    2011 INTERNATIONAL CONFERENCE ON INTELLIGENT COMPUTATION AND INDUSTRIAL APPLICATION (ICIA2011), VOL II, 2011, : 236 - 239
  • [4] Research on the Fine-Grained Access Control based-on RBAC on the trusted domain
    Wan Ai-Xia
    2010 THE 3RD INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE AND INDUSTRIAL APPLICATION (PACIIA2010), VOL VII, 2010, : 237 - 240
  • [5] Achieving fine-grained access control and integrity auditing in cloud storage
    Yuan, S. (ysm1005@163.com), 1600, Binary Information Press, P.O. Box 162, Bethel, CT 06801-0162, United States (09):
  • [6] DF-RBAC: Dynamic and Fine-grained Role-Based Access Control Scheme with Smart Contract
    Liu, Danyang
    Dong, Anming
    Yan, Biwei
    Yu, Jiguo
    2020 INTERNATIONAL CONFERENCE ON IDENTIFICATION, INFORMATION AND KNOWLEDGE IN THE INTERNET OF THINGS (IIKI2020), 2021, 187 : 359 - 364
  • [7] Achieving Secure, Scalable, and Fine-grained Data Access Control in Cloud Computing
    Yu, Shucheng
    Wang, Cong
    Ren, Kui
    Lou, Wenjing
    2010 PROCEEDINGS IEEE INFOCOM, 2010,
  • [8] Achieving Revocable Fine-Grained Cryptographic Access Control over Cloud Data
    Yang, Yanjiang
    Ding, Xuhua
    Lu, Haibing
    Wan, Zhiguo
    Zhou, Jianying
    INFORMATION SECURITY (ISC 2013), 2015, 7807 : 293 - 308
  • [9] Fine-Grained Access Control for Microservices
    Nehme, Antonio
    Jesus, Vitor
    Mahbub, Khaled
    Abdallah, Ali
    FOUNDATIONS AND PRACTICE OF SECURITY, FPS 2018, 2019, 11358 : 285 - 300
  • [10] AB-PAKE: Achieving Fine-Grained Access Control and Flexible Authentication
    Song, Mi
    Wang, Ding
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2024, 19 : 6197 - 6212