Comparison-based encryption for fine-grained access control in clouds

  • Authors:
  • Yan Zhu;Hongxin Hu;Gail-Joon Ahn;Mengyang Yu;Hongjia Zhao

  • Affiliations:
  • Peking University, Beijing, China;Arizona State University, Tempe, AZ, USA;Arizona State University, Tempe, AZ, USA;Peking University, Beijing, China;Peking University, Beijing, China

  • Venue:
  • Proceedings of the second ACM conference on Data and Application Security and Privacy
  • Year:
  • 2012

Quantified Score

Hi-index 0.00

Visualization

Abstract

Access control is one of the most important security mechanisms in cloud computing. However, there has been little work that explores various comparison-based constraints for regulating data access in clouds. In this paper, we present an innovative comparison-based encryption scheme to facilitate fine-grained access control in cloud computing. By means of forward/backward derivation functions, we introduce comparison relation into attribute-based encryption to implement various range constraints on integer attributes, such as temporal and level attributes. Then, we present a new cryptosystem with dual decryption to reduce computational overheads on cloud clients, where the majority of decryption operations are executed in cloud servers. We also prove the security strength of our proposed scheme, and our experiment results demonstrate the efficiency of our methodology.