• DocumentCode
    1374653
  • Title

    Attribute-Based Access Control with Efficient Revocation in Data Outsourcing Systems

  • Author

    Hur, Junbeom ; Noh, Dong Kun

  • Author_Institution
    4101 Siebel Center, Univ. of Illinois at Urbana-Champaign, Urbana, IL, USA
  • Volume
    22
  • Issue
    7
  • fYear
    2011
  • fDate
    7/1/2011 12:00:00 AM
  • Firstpage
    1214
  • Lastpage
    1221
  • Abstract
    Some of the most challenging issues in data outsourcing scenario are the enforcement of authorization policies and the support of policy updates. Ciphertext-policy attribute-based encryption is a promising cryptographic solution to these issues for enforcing access control policies defined by a data owner on outsourced data. However, the problem of applying the attribute-based encryption in an outsourced architecture introduces several challenges with regard to the attribute and user revocation. In this paper, we propose an access control mechanism using ciphertext-policy attribute-based encryption to enforce access control policies with efficient attribute and user revocation capability. The fine-grained access control can be achieved by dual encryption mechanism which takes advantage of the attribute-based encryption and selective group key distribution in each attribute group. We demonstrate how to apply the proposed mechanism to securely manage the outsourced data. The analysis results indicate that the proposed scheme is efficient and secure in the data outsourcing systems.
  • Keywords
    authorisation; cryptography; attribute-based access control mechanism; authorization policies; ciphertext-policy attribute-based encryption; data outsourcing systems; dual encryption mechanism; policy update support; selective group key distribution; user revocation capability; Access control; Encryption; Outsourcing; Polynomials; Servers; Data outsourcing; access control.; attribute-based encryption; ciphertext policy; revocation;
  • fLanguage
    English
  • Journal_Title
    Parallel and Distributed Systems, IEEE Transactions on
  • Publisher
    ieee
  • ISSN
    1045-9219
  • Type

    jour

  • DOI
    10.1109/TPDS.2010.203
  • Filename
    5629339