BACC: Blockchain-Based Access Control For Cloud Data

被引:16
|
作者
Sohrabi, Nasrin [1 ]
Yi, Xun [1 ]
Tari, Zahir [1 ]
Khalil, Ibrahim [1 ]
机构
[1] RMIT Univ, Melbourne, Vic, Australia
关键词
Blockchain; Smart Contract; Access Control; Cloud Computing; Shamir Secret Sharing Scheme; INTERNET;
D O I
10.1145/3373017.3373027
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Controlling the access over the stored data in the cloud is one of the fundamental security requirements, especially with the wide usage of cloud storage servers for nearly most of the enterprise applications. Traditional cloud-based access control solutions are based on a centralized approach (i.e. a cloud server becomes the central authority to control accesses to the data), which makes it difficult to prevent malicious cloud servers from disclosing user's data; and therefore compromising the privacy of the stored data. Additionally, the centralization of authority can cause a single point of failure. Furthermore, to provide confidentiality, which is one of the essential security requirements, user's data is encrypted before it is stored on the cloud. Most of the cloud servers store the decryption keys, after they encrypt the data, in their premises. This compromises data privacy. In this paper we propose a new model that addresses the aforementioned issues. To address the centralization problem, we distributed the access control tasks to smart contracts over a decentralized network, i.e. blockchain. To address the latter, we used Shamir secret sharing scheme to manage the encryption keys. Then we introduced a new type of node, called master node, to our blockchain platform, to store the decryption key parts.
引用
收藏
页数:10
相关论文
共 50 条
  • [31] A blockchain-based publicly verifiable data access control scheme without pairing
    Wang, Kun
    Wu, Qianhong
    Han, Tianxu
    Luo, Decun
    Deng, Hua
    Qin, Bo
    Fan, Jialiang
    Zhang, Yingmiao
    COMPUTERS & ELECTRICAL ENGINEERING, 2024, 120
  • [32] Merkle Tree and Blockchain-Based Cloud Data Auditing
    Mohan, Arun Prasad
    Asfak, Mohamed R.
    Gladston, Angelin
    INTERNATIONAL JOURNAL OF CLOUD APPLICATIONS AND COMPUTING, 2020, 10 (03) : 54 - 66
  • [33] A survey on blockchain-based integrity auditing for cloud data
    Haoxiang Han
    Shufan Fei
    Zheng Yan
    Xiaokang Zhou
    Digital Communications and Networks, 2022, 8 (05) : 591 - 603
  • [34] A Blockchain-Based Access Control Framework for Secured Data Sharing in Industrial Internet
    Zhou, Wei
    Jin, Jiahui
    2020 EIGHTH INTERNATIONAL CONFERENCE ON ADVANCED CLOUD AND BIG DATA (CBD 2020), 2020, : 231 - 236
  • [35] A survey on blockchain-based integrity auditing for cloud data
    Han, Haoxiang
    Fei, Shufan
    Yan, Zheng
    Zhou, Xiaokang
    DIGITAL COMMUNICATIONS AND NETWORKS, 2022, 8 (05) : 591 - 603
  • [36] A Blockchain-based Medical Data Marketplace with Trustless Fair Exchange and Access Control
    Alsharif, Ahmad
    Nabil, Mahmoud
    2020 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2020,
  • [37] Blockchain-Based Access Control Supporting Anonymity and Accountability
    Lax, Gianluca
    Russo, Antonia
    JOURNAL OF ADVANCES IN INFORMATION TECHNOLOGY, 2020, 11 (04) : 186 - 191
  • [38] Blockchain-Based Secured Access Control in an IoT System
    Algarni, Sultan
    Eassa, Fathy
    Almarhabi, Khalid
    Almalaise, Abduallah
    Albassam, Emad
    Alsubhi, Khalid
    Yamin, Mohammad
    APPLIED SCIENCES-BASEL, 2021, 11 (04): : 1 - 16
  • [39] Blockchain-based cloud storage system with CP-ABE-based access control and revocation process
    Sharma, Pratima
    Jindal, Rajni
    Borah, Malaya Dutta
    JOURNAL OF SUPERCOMPUTING, 2022, 78 (06): : 7700 - 7728
  • [40] Blockchain-Based Access Control Techniques for IoT Applications
    Namane, Sarra
    Ben Dhaou, Imed
    ELECTRONICS, 2022, 11 (14)