Accountable privacy preserving attribute based framework for authenticated encrypted access in clouds

被引:30
|
作者
Belguith, Sana [1 ]
Kaaniche, Nesrine [2 ]
Laurent, Maryline [3 ,6 ]
Jemai, Abderrazak [4 ]
Attia, Rabah [5 ]
机构
[1] Univ Salford, Sch Comp Sci & Engn, Manchester, Lancs, England
[2] Univ Sheffield, Dept Comp Sci, Sheffield, S Yorkshire, England
[3] Inst Polytech Paris, Telecom SudParis, CNRS, SAMOVAR, Paris, France
[4] Univ Carthage, Ecole Polytech Tunisie, Lab SERCOM, INSAT, Tunis 1080, Tunisia
[5] Univ Carthage, Ecole Polytech Tunisie, SERCom Lab, Tunis, Tunisia
[6] Chair Values & Policies Personal Informat, Paris, France
关键词
Cloud data sharing; Privacy; Attribute based encryption; Attribute based signature; Accountability; DATA-SECURITY; EFFICIENT; SIGNATURES; PROTOCOL;
D O I
10.1016/j.jpdc.2019.08.014
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
In this paper, we propose an accountable privacy preserving attribute-based framework, called Ins-PAbAC, that combines attribute based encryption and attribute based signature techniques for securely sharing outsourced data contents via public cloud servers. The proposed framework presents several advantages. First, it provides an encrypted access control feature, enforced at the data owner's side, while providing the desired expressiveness of access control policies. Second, Ins-PAbAC preserves users' privacy, relying on an anonymous authentication mechanism, derived from a privacy preserving attribute based signature scheme that hides the users' identifying information. Furthermore, our proposal introduces an accountable attribute based signature that enables an inspection authority to reveal the identity of the anonymously-authenticated user if needed. Third, Ins-PAbAC is provably secure, as it is resistant to both curious cloud providers and malicious users adversaries. Finally, experimental results, built upon OpenStack Swift testbed, point out the applicability of the proposed scheme in real world scenarios. (C) 2019 Elsevier Inc. All rights reserved.
引用
收藏
页码:1 / 20
页数:20
相关论文
共 50 条
  • [21] Privacy-Preserving Attribute-Based Encryption Supporting Expressive Access Structures
    Zhang, Liangxuan
    Li, Hui
    Zhang, Yinghui
    Khan, Fawad
    2017 IEEE SECOND INTERNATIONAL CONFERENCE ON DATA SCIENCE IN CYBERSPACE (DSC), 2017, : 475 - 482
  • [22] Privacy-preserving attribute-based access control using homomorphic encryption
    Kerl, Malte
    Bodin, Ulf
    Schelen, Olov
    CYBERSECURITY, 2025, 8 (01):
  • [23] An Efficient Framework for Privacy-Preserving Computations on Encrypted IoT Data
    Ramesh, Shruthi
    Govindarasu, Manimaran
    IEEE INTERNET OF THINGS JOURNAL, 2020, 7 (09) : 8700 - 8708
  • [24] Privacy-Preserving Hierarchical Anonymization Framework over Encrypted Data
    Jia, Jing
    Saito, Kenta
    Nishi, Hiroaki
    IEEJ Transactions on Electronics, Information and Systems, 2024, 144 (10) : 1011 - 1019
  • [25] Privacy-preserving multikey computing framework for encrypted data in the cloud
    Zhang, Jun
    Jiang, Zoe L.
    Li, Ping
    Yiu, Siu Ming
    INFORMATION SCIENCES, 2021, 575 : 217 - 230
  • [26] A privacy-preserving attribute-based framework for IoT identity lifecycle management
    Garcia-Rodriguez, Jesus
    Skarmeta, Antonio
    COMPUTER NETWORKS, 2023, 236
  • [27] Privacy-Preserving Flexible Access Control for Encrypted Data in Internet of Things
    Zhang, Leyou
    Wang, Jun
    Mu, Yi
    IEEE INTERNET OF THINGS JOURNAL, 2021, 8 (19) : 14731 - 14745
  • [28] Authenticated privacy preserving for continuous query in location based services
    Kamenyi, D.M. (dkamenyi@yahoo.co.uk), 1600, Binary Information Press, P.O. Box 162, Bethel, CT 06801-0162, United States (09):
  • [29] Privacy-Preserving Attribute Distribution Mechanism for Access Control in a Grid
    Park, Sang M.
    Chung, Soon M.
    ICTAI: 2009 21ST INTERNATIONAL CONFERENCE ON TOOLS WITH ARTIFICIAL INTELLIGENCE, 2009, : 308 - 313
  • [30] Attribute Based Access Control in Clouds: A Survey
    Ruj, Sushmita
    2014 INTERNATIONAL CONFERENCE ON SIGNAL PROCESSING AND COMMUNICATIONS (SPCOM), 2014,