Font Size: a A A

Research On Fine-grained Attribute-based Encryption For Dynamic Cloud Access Control

Posted on:2016-10-01Degree:MasterType:Thesis
Country:ChinaCandidate:S M LiFull Text:PDF
GTID:2298330452971394Subject:Computer technology
Abstract/Summary:PDF Full Text Request
Along with the lower demand for hardware implementation, people tend to accessinformation more directly. Through the network access to the local data storage and otherservices arises, the technology of cloud computing also developed rapidly. Using cloudtechnology, users save the local network of computing devices, and don’t need to careabout where the information comes from. That all because of the advantages of cloudcomputing, which make cloud computing applied by individuals and enterprises in a widerange. Although cloud computing has brought us much convenience, there are still someproblems to be solved.The data owners save their data to the cloud, then they lost the absolute control ofdata in a cloud environment. Some problems related to the security come. The cloudservice providers may not be completely believable when they face huge lure. Traditionalaccess control scheme of attributes based on encryption have been unable to meet people’sgrowing security requirements. In this paper, after reading a lot of literature, and in-depthanalysis of the existing solution, exploring attribute-based encryption cloud access controlproblem in view of the cloud computing security problems. Now, I mainly summarize asfollows:This paper introduces the related knowledge of access control and cryptography,traditional methods of attribute cannot play to their strengths for access control, whichbased on encryption. While domestic and foreign researchers have conducted extensiveresearch on it, but there are still many problems to be solved. For example: the user canonly read the owners’ data, The owner of the data defined by single access strategy.Theowner of fine-grained access control strategy is not flexible enough for the user, whenthe number of attributes in the system is large, the required computation and storageoverhead is large, resulting in user revocation property bring computation great to thesystem. When we lift user’s property, it would bring the huge amount of calculation for the system.Aim at the problem of fine-grained access control in cloud computing, a fine-grainedattribute-based encryption cloud access control (FGABE-CAC) scheme was proposed. Thescheme designed a new system model with Multi-authorities. The notion of privilege treeand attribute group encryption into access control was built, which allowed data owners todefine different access structure and fine-grained access control policies. Differentattribute-fields of user were owned by Multi-authorities, when users’ privileges wererevoked, efficient attribute level revocation was put forward by lazy re-encryption andproxy re-encryption technology. In addition, the security model was proposed and thescheme was proven to be the chosen plaintext attack (CPA) secure under the condition ofdecisional bilinear Diffie-Hellman (DBDH) assumption and it has forward and backwardsecurity. The simulation results show the correctness and efficiency of scheme.
Keywords/Search Tags:Multi-authorities, Access control, Privilege tree, Attribute group
PDF Full Text Request
Related items