PRAM: privacy preserving access management scheme in cloud services

  • Authors:
  • Jinbo Xiong;Zhiqiang Yao;Jianfeng Ma;Ximeng Liu;Qi Li;Tao Zhang

  • Affiliations:
  • Fujian Normal University, Fuzhou, China;Fujian Normal University, Fuzhou, China;Xidian University, Xi'an, China;Xidian University, Xi'an, China;Xidian University, Xi'an, China;Xidian University, Xi'an, China

  • Venue:
  • Proceedings of the 2013 international workshop on Security in cloud computing
  • Year:
  • 2013

Quantified Score

Hi-index 0.00

Visualization

Abstract

Identity privacy and access control pose a significant challenge for cloud services security. This is because a cloud service may have different owner and users, which necessitates privacy preserving access control. Although most existing identity management and access control schemes solve these problems to a certain extent, they also have some limitations. In this paper, we propose a new approach, called Privacy pReserving Access Management scheme (PRAM), which can satisfy all the desirable security requirements in cloud services. Specifically, there are two main contributions in this paper. First, we use two cryptographic primitives: Blind signature and Hash chain to protect identity privacy and secure authentication. Second, we combine on-demand access control with Service-Level Agreements (SLA) to provide flexible fine-grained access management. As a result, our PRAM scheme is applicable in cloud services due to its simplicity, low overhead, and efficiency.