PriGuarder: A Privacy-Aware Access Control Approach Based on Attribute Fuzzy Grouping in Cloud Environments

被引:6
|
作者
Lin, Li [1 ,2 ,3 ]
Liu, Ting-Ting [1 ,2 ]
Li, Shuang [1 ,2 ]
Magurawalage, Chathura M. Sarathchandra [4 ]
Tu, Shan-Shan [1 ,2 ]
机构
[1] Beijing Univ Technol, Fac Informat Technol, Coll Comp Sci, Beijing 100124, Peoples R China
[2] Beijing Key Lab Trusted Comp, Beijing 100124, Peoples R China
[3] Natl Engn Lab Classified Informat Secur Protect, Beijing 100124, Peoples R China
[4] Univ Essex, Dept Comp Sci & Elect Engn, Colchester CO4 3SQ, Essex, England
来源
IEEE ACCESS | 2018年 / 6卷
基金
美国国家科学基金会;
关键词
Data privacy protection; access control; attribute fuzzy grouping; MULTI-AUTHORITY; ENCRYPTION; SYSTEMS; STORAGE;
D O I
10.1109/ACCESS.2017.2780763
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Data privacy protection is crucial to cloud computing since privacy leakage may prevent users from using cloud services. To ensure data privacy, we propose PriGuarder, a novel privacy-aware access control method. This method spans the three stages of a cloud service, i.e., user registration, data creation, and data access. At each stage, users can choose two modes to interact with the cloud service provider, i.e., direct or indirect. With the indirect mode, an attribute fuzzy grouping scheme is introduced to ensure user identity privacy and attribute privacy in all the three stages. Furthermore, exploiting data encryption and timestamp techniques, new access control protocols are proposed to regulate interactions between users and the cloud service provider. We illustrate the use of our method in the context of Amazon S3. Theoretical analysis and comprehensive simulation experiments have been conducted, which demonstrate the efficacy of PriGuarder.
引用
收藏
页码:1882 / 1893
页数:12
相关论文
共 50 条
  • [21] Privacy Aware Access Control for Data Sharing in Cloud Computing Environments
    Takabi, Hassan
    SCC'14: PROCEEDINGS OF THE 2ND INTERNATIONAL WORKSHOP ON SECURITY IN CLOUD COMPUTING, 2014, : 27 - 34
  • [22] Efficient, Traceable and Privacy-Aware Data Access Control in Distributed Cloud-Based IoD Systems
    Ma, Zhuo
    Zhang, Jiawei
    IEEE ACCESS, 2023, 11 : 45206 - 45221
  • [23] A Category-Based Framework for Privacy-Aware Collaborative Access Control
    Obrezkov, Denis
    Sohr, Karsten
    Malaka, Rainer
    TRUST, PRIVACY AND SECURITY IN DIGITAL BUSINESS (TRUSTBUS 2021), 2021, 12927 : 126 - 139
  • [24] The architecture of a privacy-aware access control decision component
    Ardagna, Claudio A.
    Cremonini, Marco
    Damiani, Ernesto
    De Capitani di Vimercati, Sabrina
    Samarati, Pierangela
    CONSTRUCTION AND ANALYSIS OF SAFE, SECURE, AND INTEROPERABLE SMART DEVICES, 2006, 3956 : 1 - 15
  • [25] Scalable Access Control For Privacy-Aware Media Sharing
    Ma, Changsha
    Yan, Zhisheng
    Chen, Chang Wen
    IEEE TRANSACTIONS ON MULTIMEDIA, 2019, 21 (01) : 173 - 183
  • [26] Satisfiability-Based Privacy-Aware Cloud Computing
    Wakrime, Abderrahim Ait
    COMPUTER JOURNAL, 2017, 60 (12): : 1760 - 1769
  • [27] Privacy-Aware Attribute-Based Encryption with User Accountability
    Li, Jin
    Ren, Kui
    Zhu, Bo
    Wan, Zhiguo
    INFORMATION SECURITY, PROCEEDINGS, 2009, 5735 : 347 - +
  • [28] An Efficient Privacy-Aware Authentication Scheme With Hierarchical Access Control for Mobile Cloud Computing Services
    Xiong, Ling
    Li, Fagen
    He, Mingxing
    Liu, Zhicai
    Peng, Tu
    IEEE TRANSACTIONS ON CLOUD COMPUTING, 2022, 10 (04) : 2309 - 2323
  • [29] Multi-domain and Privacy-aware Role Based Access Control in eHealth
    Martino, Lorenzo D.
    Ni, Qun
    Lin, Dan
    Bertino, Elisa
    2008 2ND INTERNATIONAL CONFERENCE ON PERVASIVE COMPUTING TECHNOLOGIES FOR HEALTHCARE, 2008, : 123 - 126
  • [30] Purpose fusion: The risk purpose based privacy-aware data access control
    Liu Y.-M.
    Zhou H.-F.
    Wang Z.-H.
    Wang W.
    Jisuanji Xuebao/Chinese Journal of Computers, 2010, 33 (08): : 1339 - 1348