Fan Kai, Wang Junxiong, Wang Xin, Li Hui, Yang Yintang
State Key Laboratory of Integrated Service Networks, Xidian University, Xi'an 710071, China.
Key Laboratory of the Ministry of Education for Wide Band-Gap Semiconductor Materials and Devices, Xidian University, Xi'an 710071, China.
Sensors (Basel). 2017 Jul 24;17(7):1695. doi: 10.3390/s17071695.
With the rapid development of big data and Internet of things (IOT), the number of networking devices and data volume are increasing dramatically. Fog computing, which extends cloud computing to the edge of the network can effectively solve the bottleneck problems of data transmission and data storage. However, security and privacy challenges are also arising in the fog-cloud computing environment. Ciphertext-policy attribute-based encryption (CP-ABE) can be adopted to realize data access control in fog-cloud computing systems. In this paper, we propose a verifiable outsourced multi-authority access control scheme, named VO-MAACS. In our construction, most encryption and decryption computations are outsourced to fog devices and the computation results can be verified by using our verification method. Meanwhile, to address the revocation issue, we design an efficient user and attribute revocation method for it. Finally, analysis and simulation results show that our scheme is both secure and highly efficient.
随着大数据和物联网(IOT)的快速发展,联网设备的数量和数据量正在急剧增加。雾计算将云计算扩展到网络边缘,能够有效解决数据传输和数据存储的瓶颈问题。然而,雾云计算环境中也出现了安全和隐私挑战。可以采用基于密文策略属性的加密(CP-ABE)来实现雾云计算系统中的数据访问控制。在本文中,我们提出了一种可验证的外包多权威访问控制方案,名为VO-MAACS。在我们的构造中,大多数加密和解密计算都外包给雾设备,并且可以使用我们的验证方法来验证计算结果。同时,为了解决撤销问题,我们为其设计了一种高效的用户和属性撤销方法。最后,分析和仿真结果表明,我们的方案既安全又高效。