TY - JOUR
T1 - Ciphertext-policy hierarchical attribute-based encryption with short ciphertexts
AU - Deng, Hua
AU - Wu, Qianhong
AU - Qin, Bo
AU - Domingo-Ferrer, Josep
AU - Zhang, Lei
AU - Liu, Jianwei
AU - Shi, Wenchang
PY - 2014/8/10
Y1 - 2014/8/10
N2 - Attribute-based encryption (ABE) systems allow encrypting to uncertain receivers by means of an access policy specifying the attributes that the intended receivers should possess. ABE promises to deliver fine-grained access control of encrypted data. However, when data are encrypted using an ABE scheme, key management is difficult if there is a large number of users from various backgrounds. In this paper, we elaborate on ABE and propose a new versatile cryptosystem referred to as ciphertext-policy hierarchical ABE (CP-HABE). In a CP-HABE scheme, the attributes are organized in a matrix and the users having higher-level attributes can delegate their access rights to the users at a lower level. These features enable a CP-HABE system to host a large number of users from different organizations by delegating keys, e.g., enabling efficient data sharing among hierarchically organized large groups. We construct a CP-HABE scheme with short ciphertexts. The scheme is proven secure in the standard model under non-interactive assumptions.
AB - Attribute-based encryption (ABE) systems allow encrypting to uncertain receivers by means of an access policy specifying the attributes that the intended receivers should possess. ABE promises to deliver fine-grained access control of encrypted data. However, when data are encrypted using an ABE scheme, key management is difficult if there is a large number of users from various backgrounds. In this paper, we elaborate on ABE and propose a new versatile cryptosystem referred to as ciphertext-policy hierarchical ABE (CP-HABE). In a CP-HABE scheme, the attributes are organized in a matrix and the users having higher-level attributes can delegate their access rights to the users at a lower level. These features enable a CP-HABE system to host a large number of users from different organizations by delegating keys, e.g., enabling efficient data sharing among hierarchically organized large groups. We construct a CP-HABE scheme with short ciphertexts. The scheme is proven secure in the standard model under non-interactive assumptions.
KW - Access control
KW - Attribute-based encryption
KW - Ciphertext-policy attribute-based encryption
KW - Cloud storage
UR - https://www.scopus.com/pages/publications/84900818518
U2 - 10.1016/j.ins.2014.01.035
DO - 10.1016/j.ins.2014.01.035
M3 - 文章
AN - SCOPUS:84900818518
SN - 0020-0255
VL - 275
SP - 370
EP - 384
JO - Information Sciences
JF - Information Sciences
ER -