Title :
Efficiently Attribute-Based Access Control for Mobile Cloud Storage System
Author :
Zhiquan Lv ; Jialin Chi ; Min Zhang ; Dengguo Feng
Author_Institution :
Trusted Comput. & Inf. Assurance Lab., Inst. of Software, Beijing, China
Abstract :
Similar with other outsourced services, cloud storage faces the serious issue of user data security. To keep data confidential against unauthorized cloud servers and users, Attribute-Based Encryption (ABE) for access control is widely adopted. However, ABE-based access control schemes are being criticized for their high computation overhead, such as in key generation, decryption and revocation. Considering the mobile cloud storage environment where these computation tasks are executed by mobile devices or sensors, this drawback appears more serious. In this paper, we propose an efficient and secure attribute-based access control scheme for mobile cloud storage. Specifically, we construct the first Key-Policy ABE (KP-ABE) scheme with outsourced key generation and decryption, and propose an efficient revocation method for it. Moreover, we prove the proposed scheme is immune to the collusion attack and secure in the standard model. Extensive experiment demonstrates that the efficient key generation, decryption, and revocation are achieved with the help of the cloud servers.
Keywords :
authorisation; cloud computing; cryptography; mobile computing; ABE-based access control schemes; KP-ABE scheme; attribute-based encryption; collusion attack; computation tasks; decryption; key-policy ABE; mobile cloud storage environment; mobile cloud storage system; mobile devices; outsourced key generation; outsourced services; revocation method; secure attribute-based access control scheme; unauthorized cloud servers; user data security; Access control; Cloud computing; Mobile communication; Public key; Servers; KP-ABE; mobile cloud storage; outsourced decryption; outsourced key generation; revocation;
Conference_Titel :
Trust, Security and Privacy in Computing and Communications (TrustCom), 2014 IEEE 13th International Conference on
Conference_Location :
Beijing
DOI :
10.1109/TrustCom.2014.40