A cloud-based access control scheme with user revocation and attribute update

Conference Paper (2016)
Author(s)

Peng Zhang (Shenzhen University)

Zehong Chen (Shenzhen University)

K. Liang (Aalto University)

Shulan Wang (Shenzhen University)

Ting Wang (Shenzhen University, South China University of Technology)

Affiliation
External organisation
DOI related publication
https://doi.org/10.1007/978-3-319-40253-6_32
More Info
expand_more
Publication Year
2016
Language
English
Affiliation
External organisation
Pages (from-to)
525-540
ISBN (print)
9783319402529

Abstract

Ciphertext-policy attribute-based encryption (CP-ABE) is a well-known cryptographic technology for guaranteeing data confidentiality but also fine-grained data access control. It enables data owners to define flexible access policy for cloud-based data sharing. However, the user revocation and attribute update problems existing in CP-ABE systems that are long-standing unsolved in the literature. In this paper, we propose the first access control (CP-ABE) scheme supporting user revocability and attribute update. Specifically, the user revocation is defined in the identity-based setting that does not conflict our attribute-based design. The cost brought by attribute update is efficient in the sense that we only concentrate on the update of the ciphertexts associated with the corresponding updated attribute. Moreover, the security analysis shows that the proposed scheme is secure under the decisional Bilinear Diffie-Hellman assumption.

No files available

Metadata only record. There are no files for this record.