计算机科学
云计算
访问控制
加密
计算机网络
数据共享
GSM演进的增强数据速率
分布式计算
数据存取
方案(数学)
代理服务器
外包
服务器
计算机安全
数据库
操作系统
电信
数学分析
政治学
数学
替代医学
法学
病理
医学
作者
Jie Cui,Bei Li,Hong Zhong,Geyong Min,Yan Xu,Lu Liu
出处
期刊:IEEE Transactions on Parallel and Distributed Systems
[Institute of Electrical and Electronics Engineers]
日期:2021-07-01
卷期号:33 (2): 476-488
被引量:26
标识
DOI:10.1109/tpds.2021.3094126
摘要
The cloud computing paradigm provides numerous tempting advantages, enabling users to store and share their data conveniently. However, users are naturally resistant to directly outsourcing their data to the cloud since the data often contain sensitive information. Although several fine-grained access control schemes for cloud-data sharing have been proposed, most of them focus on the access control of the encrypted data (e.g., restricting the decryption capabilities of the receivers). Distinct from the existing work, this article aims to address this challenging problem by developing a more practical bidirectional fine-grained access control scheme that can restrict the capabilities of both senders and receivers. To this end, we systematically investigate the access control for cloud data sharing. Inspired by the access control encryption (ACE), we propose a novel data sharing framework that combines the cloud side and the edge side. The edge server is located in the middle of all the communications, checking and preventing illegal communications according to the predefined access policy. Next, we develop an efficient access control algorithm by exploiting the attribute-based encryption and proxy re-encryption for the proposed framework. The experimental results show that our scheme exhibits superior performance in the encryption and decryption compared to the prior work.
科研通智能强力驱动
Strongly Powered by AbleSci AI