• DocumentCode
    3672904
  • Title

    Enabling Constraints and Dynamic Preventive Access Control Policy Enforcement in the Cloud

  • Author

    Somchart Fugkeaw;Hiroyuki Sato

  • Author_Institution
    Dept. of Electr. Eng. &
  • fYear
    2015
  • Firstpage
    576
  • Lastpage
    583
  • Abstract
    Existing access control solutions applying Cipher text Policy Attribute based Encryption (CP-ABE) scheme usually rely on the static access enforcement based on the access control policy. In real-world scenario, the static pattern of access control policy may not be sufficient to effectively respond the security problems or advanced access control requirements. In this paper, we enhance our collaborative access control model: C-CP-ARBE, to be capable to support a more rigorous access control with security constraints and preventive access policy (PAP) enforcement feature. To this end, we design constraints specification model and PAP enforcement scheme in multi-authority cloud storage systems. We employ Multi-Agent System (MAS) to automate the authentication and authorization function as well as to increase the performance of overall cryptographic processes. As of MAS concept, the scalability and separation of security functions of our access control system are enhanced. Finally, we present the experiments to demonstrate the improved efficiency and practicality of our proposed scheme.
  • Keywords
    "Reliability","Security"
  • Publisher
    ieee
  • Conference_Titel
    Availability, Reliability and Security (ARES), 2015 10th International Conference on
  • Type

    conf

  • DOI
    10.1109/ARES.2015.33
  • Filename
    7299967