- Title
- Enforcing role-based access control for secure data storage in the cloud
- Creator
- Zhou, Lan; Varadharajan, Vijay; Hitchens, Michael
- Relation
- Computer Journal Vol. 54, Issue 10, p. 1675-1687
- Publisher Link
- http://dx.doi.org/10.1093/comjnl/bxr080
- Publisher
- Oxford University Press
- Resource Type
- journal article
- Date
- 2011
- Description
- In recent times, there has been increasing interest in storing data securely in the cloud environment. To provide owners of data stored in the cloud with flexible control over access to their data by other users, we propose a role-based encryption (RBE) scheme for secure cloud storage. Our scheme allows the owner of data to store it in an encrypted form in the cloud and to grant access to that data for users with specific roles. The scheme specifies a set of roles to which the users are assigned, with each role having a set of permissions. The data owner can encrypt the data and store it in the cloud in such a way that only users with specific roles can decrypt the data. Anyone else, including the cloud providers themselves, will not be able to decrypt the data. We describe such an RBE scheme using a broadcast encryption algorithm. The paper describes the security analysis of the proposed scheme and gives proofs showing that the proposed scheme is secure against attacks. We also analyse the efficiency and performance of our scheme and show that it has superior characteristics compared with other previously published schemes.
- Subject
- role-based access control; encryption; secure data storage; cloud computing
- Identifier
- http://hdl.handle.net/1959.13/1356163
- Identifier
- uon:31626
- Identifier
- ISSN:0010-4620
- Language
- eng
- Reviewed
- Hits: 2681
- Visitors: 2834
- Downloads: 0
Thumbnail | File | Description | Size | Format |
---|