Title :
Towards temporal access control in cloud computing
Author :
Zhu, Yan ; Hu, Hongxin ; Ahn, Gail-Joon ; Huang, Dijiang ; Wang, Shanbiao
Author_Institution :
Peking Univ., Beijing, China
Abstract :
Access control is one of the most important security mechanisms in cloud computing. Attribute-based access control provides a flexible approach that allows data owners to integrate data access policies within the encrypted data. However, little work has been done to explore temporal attributes in specifying and enforcing the data owner´s policy and the data user´s privileges in cloud-based environments. In this paper, we present an efficient temporal access control encryption scheme for cloud services with the help of cryptographic integer comparisons and a proxy-based re-encryption mechanism on the current time. We also provide a dual comparative expression of integer ranges to extend the power of attribute expression for implementing various temporal constraints. We prove the security strength of the proposed scheme and our experimental results not only validate the effectiveness of our scheme, but also show that the proposed integer comparison scheme performs significantly better than previous bitwise comparison scheme.
Keywords :
authorisation; cloud computing; cryptography; attribute expression; attribute-based access control; cloud computing; cloud services; cryptographic integer comparisons; data access policy integration; encrypted data; integer comparison scheme; proxy-based reencryption mechanism; security strength; temporal access control encryption scheme; Access control; Cloud computing; Computational modeling; Encryption; Servers; Cloud Computing; Cryptography; Integer Comparison; Re-Encryption; Temporal Access Control;
Conference_Titel :
INFOCOM, 2012 Proceedings IEEE
Conference_Location :
Orlando, FL
Print_ISBN :
978-1-4673-0773-4
DOI :
10.1109/INFCOM.2012.6195656