跳到主要导航 跳到搜索 跳到主要内容

An Integrated Privacy Preserving Attribute-Based Access Control Framework Supporting Secure Deduplication

  • Runhua Xu*
  • , James Joshi
  • , Prashant Krishnamurthy
  • *此作品的通讯作者
  • University of Pittsburgh

科研成果: 期刊稿件文章同行评审

摘要

Recent advances in information technologies have facilitated applications to generate, collect or process large amounts of sensitive personal data. Emerging cloud storage services provide a better paradigm to support the needs of such applications. Such cloud based solutions introduce additional security and privacy challenges when dealing with outsourced data including that of supporting fine-grained access control over such data stored in the cloud. In this paper, we propose an integrated, privacy-preserving user-centric attribute based access control framework to ensure the security and privacy of users' data outsourced and stored by a cloud service provider (CSP). The core component of the proposed framework is a novel privacy-preserving, revocable ciphertext policy attribute-based encryption (PR-CP-ABE) scheme. To support advanced access control features like write access on encrypted data and privacy-preserving access policy updates, we propose extended Path-ORAM access protocol that can also prevent privacy disclosure of access patterns. We also propose an integrated secure deduplication approach to improve the storage efficiency of CSPs while protecting data privacy. Finally, we evaluate the proposed framework and compare it with other existing solutions with regards to the security and performance issues.

源语言英语
文章编号8862918
页(从-至)706-721
页数16
期刊IEEE Transactions on Dependable and Secure Computing
18
2
DOI
出版状态已出版 - 1 3月 2021
已对外发布

指纹

探究 'An Integrated Privacy Preserving Attribute-Based Access Control Framework Supporting Secure Deduplication' 的科研主题。它们共同构成独一无二的指纹。

引用此