
CryptCloud+: Secure and Expressive Data Access Control for Cloud Storage
Abstract
Introduction
The prevalence of cloud computing may indirectly impede the privacy of outsourced data and cloud users. CryptCloud+: Secure and Expressive Data Access Control for Cloud Storage A particular challenge here is how to ensure that only authorized users can access the data that has been outsourced to the cloud, anywhere and at any time. Before uploading tocloud, one naive solution is to use data cryption technique. The solution, however, limits additional data sharing and processing. This is because a data owner needs to download and further encrypt the encrypted data for sharing from the cloud (assume that the data owner has no local copies of the data).
System Configuration
Platform : cloud computing
Conclusion
In this work, we addressed the credential failure challenge in a CP-ABE-based cloud storage system by designing an accountable authority and revocable CryptCloud that supports white-box traceability and auditing (referred to asCryptCloud+). This is the first CP-ABE-based cloud storage system that simultaneously supports white-box traceability, accountable authority, auditing and effective revocation. Specifically, CryptCloud+ allows us to track and revoke cloud users (leaking credentials). Our approach can also be used in cases where credentials of users are areredistributed by the semi-trusted authority.