Lightweight and Privacy-Aware Fine-Grained Access Control for IoT-Oriented Smart Health

被引:67
|
作者
Sun, Jianfei [1 ,2 ]
Xiong, Hu [1 ]
Liu, Ximeng [3 ]
Zhang, Yinghui [4 ]
Nie, Xuyun [1 ]
Deng, Robert H. [2 ]
机构
[1] Univ Elect Sci & Technol China, Sch Informat & Software Engn, Chengdu 610054, Peoples R China
[2] Singapore Management Univ, Sch Informat & Syst, Singapore, Singapore
[3] Fuzhou Univ, Coll Math & Comp Sci, Fuzhou 350108, Peoples R China
[4] Xian Univ Post & Telecommun, Natl Engn Lab Wireless Secur, Xian 710121, Peoples R China
基金
美国国家科学基金会;
关键词
Medical services; Encryption; Privacy; Access control; Data privacy; Internet of Things; Feasible; Internet of Things (IoT); policy hiding; privacy aware; smart health; HIDDEN-VECTOR ENCRYPTION; EFFICIENT;
D O I
10.1109/JIOT.2020.2974257
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With the booming of Internet of Things (IoT), smart health (s-health) is becoming an emerging and attractive paradigm. It can provide an accurate prediction of various diseases and improve the quality of healthcare. Nevertheless, data security and user privacy concerns still remain issues to be addressed. As a high potential and prospective solution to secure IoT-oriented s-health applications, ciphertext policy attribute-based encryption (CP-ABE) schemes raise challenges, such as heavy overhead and attribute privacy of the end users. To resolve these drawbacks, an optimized vector transformation approach is first proposed to efficiently transform the access policy and user attribute set into respective vectors of shorter length while other approaches result in redundant and longer vectors. Our transformation approach can greatly relieve the costly overheard of key generation, encryption, and decryption phases. Then, based on the transformation approach and the offline/online computation technology, we propose a lightweight policy-hiding CP-ABE scheme for the IoT-oriented s-health application. With our proposed scheme, data users in the s-health system can perform lightweight encryption and decryption without leaking any sensitive privacy about the attributes of the user. Finally, the formal security analysis, the theoretic performance evaluation and experiment results indicate that the solution is secure and efficient.
引用
收藏
页码:6566 / 6575
页数:10
相关论文
共 50 条
  • [31] iDP-FL: A fine-grained and privacy-aware federated learning framework for deep neural networks
    Zhang, Junpeng
    Zhu, Hui
    Wang, Fengwei
    Zheng, Yandong
    Liu, Zhe
    Li, Hui
    INFORMATION SCIENCES, 2024, 679
  • [32] Cloud-Based Fine-Grained Health Information Access Control Framework for Lightweight IoT Devices with Dynamic Auditing and Attribute Revocation
    Yeh, Lo-Yao
    Chiang, Pei-Yu
    Tsai, Yi-Lang
    Huang, Jiun-Long
    IEEE TRANSACTIONS ON CLOUD COMPUTING, 2018, 6 (02) : 532 - 544
  • [33] A Semantic Framework for Privacy-Aware Access Control
    Lioudakis, Georgios V.
    Dellas, Nikolaos L.
    Koutsoloukas, Eleftherios A.
    Kapitsaki, Georgia M.
    Kaklamani, Dimitra I.
    Venieris, Iakovos S.
    2008 INTERNATIONAL MULTICONFERENCE ON COMPUTER SCIENCE AND INFORMATION TECHNOLOGY (IMCSIT), VOLS 1 AND 2, 2008, : 757 - 764
  • [34] A Privacy-Aware and Traceable Fine-Grained Data Delivery System in Cloud-Assisted Healthcare IIoT
    Sun, Jianfei
    Chen, Dajiang
    Zhang, Ning
    Xu, Guowen
    Tang, Mingjian
    Nie, Xuyun
    Cao, Mingsheng
    IEEE INTERNET OF THINGS JOURNAL, 2021, 8 (12) : 10034 - 10046
  • [35] Access control in a privacy-aware eLearning environment
    Franz, Elke
    Wahrig, Hagen
    Boettcher, Alexander
    Borcea-Pfitzmann, Katrin
    FIRST INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY, PROCEEDINGS, 2006, : 879 - +
  • [36] Privacy-Preserving Bilateral Fine-Grained Access Control for Cloud-Enabled Industrial IoT Healthcare
    Sun, Jianfei
    Yuan, Yu
    Tang, MingJian
    Cheng, Xiaochun
    Nie, Xuyun
    Aftab, Muhammad Umar
    IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2022, 18 (09) : 6483 - 6493
  • [37] A Data Aggregation Scheme with Fine-grained Access Control for the Smart Grid
    Wen, Mi
    Zhang, Xu
    Li, Hongwei
    Li, Jinguo
    2017 IEEE 86TH VEHICULAR TECHNOLOGY CONFERENCE (VTC-FALL), 2017,
  • [38] Fine-Grained Access Control for Smart Healthcare Systems in the Internet of Things
    Pal, Shantanu
    Hitchens, Michael
    Varadharajan, Vijay
    Rabehaja, Tahiry
    EAI Endorsed Transactions on Industrial Networks and Intelligent Systems, 2017, 4 (13):
  • [39] Lightweight, verifiable and revocable EHRs sharing with fine-grained bilateral access control
    Zhang, Kai
    Chen, Tao
    Chen, Siyuan
    Wei, Lifei
    Ning, Jianting
    CLUSTER COMPUTING-THE JOURNAL OF NETWORKS SOFTWARE TOOLS AND APPLICATIONS, 2024, 27 (07): : 9957 - 9973
  • [40] Lightweight and Expressive Fine-Grained Access Control for Healthcare Internet-of-Things
    Xu, Shengmin
    Li, Yingjiu
    Deng, Robert H.
    Zhang, Yinghui
    Luo, Xiangyang
    Liu, Ximeng
    IEEE TRANSACTIONS ON CLOUD COMPUTING, 2022, 10 (01) : 474 - 490