• KSII Transactions on Internet and Information Systems
    Monthly Online Journal (eISSN: 1976-7277)

Attribute-Based Data Sharing with Flexible and Direct Revocation in Cloud Computing

Vol. 8, No. 11, November 29, 2014
10.3837/tiis.2014.11.021, Download Paper (Free):

Abstract

Attribute-based encryption (ABE) is a promising cryptographic primitive for implementing fine-grained data sharing in cloud computing. However, before ABE can be widely deployed in practical cloud storage systems, a challenging issue with regard to attributes and user revocation has to be addressed. To our knowledge, most of the existing ABE schemes fail to support flexible and direct revocation owing to the burdensome update of attribute secret keys and all the ciphertexts. Aiming at tackling the challenge above, we formalize the notion of ciphertext-policy ABE supporting flexible and direct revocation (FDR-CP-ABE), and present a concrete construction. The proposed scheme supports direct attribute and user revocation. To achieve this goal, we introduce an auxiliary function to determine the ciphertexts involved in revocation events, and then only update these involved ciphertexts by adopting the technique of broadcast encryption. Furthermore, our construction is proven secure in the standard model. Theoretical analysis and experimental results indicate that FDR-CP-ABE outperforms the previous revocation-related methods.


Statistics

Show / Hide Statistics

Statistics (Cumulative Counts from December 1st, 2015)
Multiple requests among the same browser session are counted as one view.
If you mouse over a chart, the values of data points will be shown.


Cite this article

[IEEE Style]
Y. Zhang, X. Chen, J. Li, H. Li, F. Li, "Attribute-Based Data Sharing with Flexible and Direct Revocation in Cloud Computing," KSII Transactions on Internet and Information Systems, vol. 8, no. 11, pp. 4028-4049, 2014. DOI: 10.3837/tiis.2014.11.021.

[ACM Style]
Yinghui Zhang, Xiaofeng Chen, Jin Li, Hui Li, and Fenghua Li. 2014. Attribute-Based Data Sharing with Flexible and Direct Revocation in Cloud Computing. KSII Transactions on Internet and Information Systems, 8, 11, (2014), 4028-4049. DOI: 10.3837/tiis.2014.11.021.

[BibTeX Style]
@article{tiis:20656, title="Attribute-Based Data Sharing with Flexible and Direct Revocation in Cloud Computing", author="Yinghui Zhang and Xiaofeng Chen and Jin Li and Hui Li and Fenghua Li and ", journal="KSII Transactions on Internet and Information Systems", DOI={10.3837/tiis.2014.11.021}, volume={8}, number={11}, year="2014", month={November}, pages={4028-4049}}