1. A Temporal and Spatial Constrained Attribute-Based Access Control Scheme for Cloud Storage
- Author
-
Xuan Wang, Yulin Wu, Ruoqing Zhang, Zoe Lin Jiang, Zechao Liu, and S. M. Yiu
- Subjects
Scheme (programming language) ,Service (systems architecture) ,Computer science ,business.industry ,Distributed computing ,Access control ,02 engineering and technology ,Encryption ,020202 computer hardware & architecture ,0202 electrical engineering, electronic engineering, information engineering ,020201 artificial intelligence & image processing ,Attribute-based encryption ,Time domain ,business ,computer ,Cloud storage ,computer.programming_language ,Access structure - Abstract
Cloud storage service allows data owners to store their (encrypted) data in a remote and may be untrusted cloud server. Attribute-Based Encryption (ABE) provides an excellent and flexible solution for data access control. As more and more applications evolved, ABE schemes may not handle all scenarios, in particular, if the access control has a time and location constraint. Time and location attributes are not as static as other general attributes. Existing ABE schemes cannot efficiently handle the continuous range of an attribute making it impractical for temporal and spatial constraints that are changing dynamically. In this paper, we propose a novel temporal and spatial constrained attribute-based access control (TSC-ABAC) scheme to solve this problem. Our system adopts a redesigned access structure and makes use of multi-dimensional range derivation function to match the time domain. This is the first ABE scheme that can efficiently handle time and location elements simultaneously. We further propose an extended TSC-ABAC scheme, which aims at reducing the decryption cost imposed on user. A thorough security and performance analysis shows that our design is secure and efficient. The result of our work could provide a feasible and practical data access control scheme for cloud storage services.
- Published
- 2018
- Full Text
- View/download PDF