预览加载中,请您耐心等待几秒...
1/8
2/8
3/8
4/8
5/8
6/8
7/8
8/8

在线预览结束,喜欢就下载吧,查找使用更方便

如果您无法下载资料,请参考说明:

1、部分资料下载需要金币,请确保您的账户上有足够的金币

2、已购买过的文档,再次下载不重复扣费

3、资料包下载后请先用软件解压,在使用对应软件打开

2011InternationalJointConferenceofIEEETrustCom-11/IEEEICESS-11/FCST-11 Privacy-PreservedAccessControlforCloudComputing MiaoZhou,YiMu,WillySusilo,ManHoAuJunYan CentreforComputerandInformationSecurityResearch,SchoolofInformationSystemsandTechnology, SchoolofComputerScienceandSoftwareEngineering,UniversityofWollongong, UniversityofWollongong,Wollongong,Australia Wollongong,AustraliaEmail:jyan@uow.edu.au Email:{mz775,ymu,wsusilo,aau}@uow.edu.au Abstract—TheproblemofaccesscontrolonoutsourceddataInternet,thecloudbecomesasinglepointofaccessfor to“honestbutcurious”cloudservershasreceivedconsiderablealltheusers.Fine-graineddataaccesscontrolcanplayan attention,especiallyinscenariosinvolvingpotentiallyhugeimportantroleondatasecurity. setsofdatafiles,wherere-encryptionandre-transmission bythedataownermaynotbeacceptable.ConsideringtheRecently,theproblemofaccessmanagementonout- userprivacyanddatasecurityincloudenvironment,inthissourceddatatocloudservershasreceivedconsiderable paper,weproposeasolutiontoachieveflexibleandfine-grainedattentionandseveraladvancementshavealreadybeenpro- accesscontrolonoutsourceddatafiles.Inparticular,welookposed.Anexistingfeasiblesolutiontoachievefine-grained attheproblemofdefiningandassigningkeystousersbasedaccesscontrolofoutsourceddataincloudcomputingisto ondifferentattributesets,andhidingaccesspoliciesaswell asusersinformationtothethird-partycloudservers.Ourencryptthedatathroughcertaincryptographicprimitives proposedschemeispartiallybasedonourobservationthat,andonlydisclosetheprivatekeystoauthorizedusers. inpracticalapplicationscenarioseachusercanbeassociatedWithouttheappropriatedecryptionkeys,unauthorizedusers withasetofattributeswhicharemeaningfulintheaccessincludingthecloudproviders,cannotdecryptthedata. policyanddatafilecontext.TheaccesspolicycanthusbeThissolutionhasbeenwidelyused(suchas[1],[3])and definedasalogicalexpressionformulaoverdifferentattribute setstoreflectthescopeofdatafilethatthekindofusersismostofthemaredeployedbyeitherintroducingaper al