TY - GEN
T1 - PAbAC
T2 - 13th International Conference on Security and Cryptography, SECRYPT 2016 - Part of the 13th International Joint Conference on e-Business and Telecommunications, ICETE 2016
AU - Belguith, Sana
AU - Kaaniche, Nesrine
AU - Jemai, Abderrazak
AU - Laurent, Maryline
AU - Attia, Rabah
N1 - Publisher Copyright:
Copyright © 2016 by SCITEPRESS - Science and Technology Publications, Lda. All rights reserved.
PY - 2016/1/1
Y1 - 2016/1/1
N2 - Several existing access control solutions mainly focus on preserving confidentiality of stored data from unauthorized access and the storage provider. Moreover, to keep sensitive user data confidential against untrusted servers, existing solutions usually apply cryptographic methods by disclosing data decryption keys only to authorized users. However, these solutions inevitably introduce a heavy computation overhead on the data owner for key distribution and data management when fine-grained data access control is desired. In addition, access control policies as well as users' access patterns are also considered as sensitive information that should be protected from the cloud. In this paper, we propose PAbAC, a novel privacy preserving Attribute-based framework, that combines attribute-based encryption and attribute-based signature mechanisms for securely sharing outsourced data via the public cloud. Our proposal is multifold. First, it ensures fine-grained cryptographic access control enforced at the data owner's side, while providing the desired expressiveness of the access control policies. Second, PAbAC preserves users' privacy, while hiding any identifying information used to satisfy the access control. Third, PAbAC is proven to be highly scalable and efficient for sharing outsourced data in remote servers, at both the client and the cloud provider side.
AB - Several existing access control solutions mainly focus on preserving confidentiality of stored data from unauthorized access and the storage provider. Moreover, to keep sensitive user data confidential against untrusted servers, existing solutions usually apply cryptographic methods by disclosing data decryption keys only to authorized users. However, these solutions inevitably introduce a heavy computation overhead on the data owner for key distribution and data management when fine-grained data access control is desired. In addition, access control policies as well as users' access patterns are also considered as sensitive information that should be protected from the cloud. In this paper, we propose PAbAC, a novel privacy preserving Attribute-based framework, that combines attribute-based encryption and attribute-based signature mechanisms for securely sharing outsourced data via the public cloud. Our proposal is multifold. First, it ensures fine-grained cryptographic access control enforced at the data owner's side, while providing the desired expressiveness of the access control policies. Second, PAbAC preserves users' privacy, while hiding any identifying information used to satisfy the access control. Third, PAbAC is proven to be highly scalable and efficient for sharing outsourced data in remote servers, at both the client and the cloud provider side.
KW - Attribute-based encryption
KW - Attribute-based signature
KW - Cloud storage systems
KW - Data confidentiality
KW - Privacy
U2 - 10.5220/0005968201330146
DO - 10.5220/0005968201330146
M3 - Conference contribution
AN - SCOPUS:85003806588
T3 - ICETE 2016 - Proceedings of the 13th International Joint Conference on e-Business and Telecommunications
SP - 133
EP - 146
BT - ICETE 2016 - Proceedings of the 13th International Joint Conference on e-Business and Telecommunications
A2 - Callegari, Christian
A2 - van Sinderen, Marten
A2 - Sarigiannidis, Panagiotis
A2 - Samarati, Pierangela
A2 - Cabello, Enrique
A2 - Lorenz, Pascal
A2 - Obaidat, Mohammad S.
PB - SciTePress
Y2 - 26 July 2016 through 28 July 2016
ER -