Visible to the public Enabling efficient access control with dynamic policy updating for big data in the cloud

TitleEnabling efficient access control with dynamic policy updating for big data in the cloud
Publication TypeConference Paper
Year of Publication2014
AuthorsKan Yang, Xiaohua Jia, Kui Ren, Ruitao Xie, Liusheng Huang
Conference NameINFOCOM, 2014 Proceedings IEEE
Date PublishedApril
Keywordsabe, Access Control, access policy, attribute-based encryption, authorisation, Big Data, cloud, cloud computing, cryptography, dynamic policy updating, Encryption, end-to-end security, outsourced policy updating method, Policy Updating, Public key, Servers
Abstract

Due to the high volume and velocity of big data, it is an effective option to store big data in the cloud, because the cloud has capabilities of storing big data and processing high volume of user access requests. Attribute-Based Encryption (ABE) is a promising technique to ensure the end-to-end security of big data in the cloud. However, the policy updating has always been a challenging issue when ABE is used to construct access control schemes. A trivial implementation is to let data owners retrieve the data and re-encrypt it under the new access policy, and then send it back to the cloud. This method incurs a high communication overhead and heavy computation burden on data owners. In this paper, we propose a novel scheme that enabling efficient access control with dynamic policy updating for big data in the cloud. We focus on developing an outsourced policy updating method for ABE systems. Our method can avoid the transmission of encrypted data and minimize the computation work of data owners, by making use of the previously encrypted data with old access policies. Moreover, we also design policy updating algorithms for different types of access policies. The analysis show that our scheme is correct, complete, secure and efficient.

URLhttp://ieeexplore.ieee.org/document/6848142/
DOI10.1109/INFOCOM.2014.6848142
Citation Key6848142