Fine-grained data access control with attribute-hiding policy for cloud-based IoT

dc.contributor.authorHao, Jialu
dc.contributor.authorHuang, Cheng
dc.contributor.authorNi, Jianbing
dc.contributor.authorRong, Hong
dc.contributor.authorXian, Ming
dc.contributor.authorShen, Xuemin (Sherman)
dc.date.accessioned2020-02-13T17:47:40Z
dc.date.available2020-02-13T17:47:40Z
dc.date.issued2019-04-22
dc.descriptionThe final publication is available at Elsevier via https://doi.org/10.1016/j.comnet.2019.02.008. © 2019. This manuscript version is made available under the CC-BY-NC-ND 4.0 license http://creativecommons.org/licenses/by-nc-nd/4.0/en
dc.description.abstractCiphertext-policy attribute-based encryption (CP-ABE) is a promising approach to achieve fine-grained access control over the outsourced data in Internet of Things (IoT). However, in the existing CP-ABE schemes, the access policy is either appended to the ciphertext explicitly or only partially hidden against public visibility, which results in privacy leakage of the underlying ciphertext and potential recipients. In this paper, we propose a fine-grained data access control scheme supporting expressive access policy with fully attribute hidden for cloud-based IoT. Specifically, the attribute information is fully hidden in access policy by using randomizable technique, and a fuzzy attribute positioning mechanism based on garbled Bloom filter is developed to help the authorized recipients locate their attributes efficiently and decrypt the ciphertext successfully. Security analysis and performance evaluation demonstrate that the proposed scheme achieves effective policy privacy preservation with low storage and computation overhead. As a result, no valuable attribute information in the access policy will be disclosed to the unauthorized recipients.en
dc.identifier.urihttps://doi.org/10.1016/j.comnet.2019.02.008
dc.identifier.urihttp://hdl.handle.net/10012/15633
dc.language.isoenen
dc.publisherElsevieren
dc.rightsAttribution-NonCommercial-NoDerivatives 4.0 International*
dc.rights.urihttp://creativecommons.org/licenses/by-nc-nd/4.0/*
dc.subjectaccess controlen
dc.subjectattribute-based encryptionen
dc.subjectattribute hidingen
dc.subjectpolicy privacyen
dc.subjectcloud computingen
dc.subjectInternet of Thingsen
dc.titleFine-grained data access control with attribute-hiding policy for cloud-based IoTen
dc.typeArticleen
dcterms.bibliographicCitationJialu Hao, Cheng Huang, Jianbing Ni, Hong Rong, Ming Xian, Xuemin (Sherman) Shen, Fine-Grained Data Access Control with Attribute-Hiding Policy for Cloud-Based IoT, Computer Networks (2019), doi: https://doi.org/10.1016/j.comnet.2019.02.008en
uws.contributor.affiliation1Faculty of Engineeringen
uws.contributor.affiliation2Electrical and Computer Engineeringen
uws.peerReviewStatusRevieweden
uws.scholarLevelFacultyen
uws.scholarLevelGraduateen
uws.typeOfResourceTexten

Files

Original bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
1-s2.0-S1389128619301793-main.pdf
Size:
1.72 MB
Format:
Adobe Portable Document Format
Description:
Accepted manuscript

License bundle

Now showing 1 - 1 of 1
No Thumbnail Available
Name:
license.txt
Size:
4.47 KB
Format:
Item-specific license agreed upon to submission
Description: