• DocumentCode
    1860223
  • Title

    A Generic Scheme for Secure Data Sharing in Cloud

  • Author

    Yang, Yanjiang ; Zhang, Youcheng

  • Author_Institution
    Inst. for Infocomm Res., Singapore, Singapore
  • fYear
    2011
  • fDate
    13-16 Sept. 2011
  • Firstpage
    145
  • Lastpage
    153
  • Abstract
    Working in various service models ranging from SaaS, PaaS, to IaaS, cloud computing is a new revolution in IT, and could reshape the business model of how the IT industry works today. Storage services are a fundamental component of the cloud computing paradigm. By exploiting the storage services, users outsource their data to the cloud so as to enjoy the reduced upfront maintenance and capital costs. However, a security challenge associated with data outsourcing is how to prevent data abuses by the cloud. It has been commonly accepted that data encryption offers a good solution to this problem. With data encryption, an issue arises when the data owner who outsourced the data wants to revoke some data consumers´ access privileges, which normally involves key re-distribution and data re-encryption. In this work, we propose a generic scheme to enable fine-grained data sharing over the cloud, which does not require key-redistribution and data re-encryption whatsoever. The main primitives we make use of are attribute-based/predicate encryption and proxy re-encryption, but our construction is not restricted to any specific scheme of its kind. Our scheme has a number of advantages over other similar proposals in the literature.
  • Keywords
    cloud computing; cryptography; IT industry; IaaS; PaaS; SaaS; attribute-based-predicate encryption; business model; cloud computing paradigm; data consumer access privileges; data outsourcing; data reencryption; data sharing security; fine-grained data sharing; infrastructure-as-a-service; platform-as-a-service; proxy reencryption; service models; software-as-a-service; storage services; Access control; Cloud computing; Encryption; Proposals; Public key; attribute-based encryption; cloud computing; fine grained access control; proxy re-encryption; user revocation;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Parallel Processing Workshops (ICPPW), 2011 40th International Conference on
  • Conference_Location
    Taipei City
  • ISSN
    1530-2016
  • Print_ISBN
    978-1-4577-1337-8
  • Electronic_ISBN
    1530-2016
  • Type

    conf

  • DOI
    10.1109/ICPPW.2011.51
  • Filename
    6047286