CryptCloud+: Secure and Expressive Data Access Control for Cloud Storage

0
1460
CryptCloud+: Secure and Expressive Data Access Control for Cloud Storage

CryptCloud+: Secure and Expressive Data Access Control for Cloud Storage

Abstract

Secure cloud storage, an emerging cloud service, ensures the confidentiality of outsourced data while providing flexible data access control for cloud users whose data are out of their physical control. CryptCloud+: Secure and Expressive Data Access Control for Cloud Storage Ciphertext-Policy Attribute-Based Encryption (CP-ABE) is one of the promising secure mechanisms to support fine-grained access control of encrypted data in cloud settings. However, due to its characteristic of “all-or-nothing” decryption control, there is a risk of misuse of access credentials.

Introduction

The prevalence of cloud computing may indirectly impede the privacy of outsourced data and cloud users. CryptCloud+: Secure and Expressive Data Access Control for Cloud Storage A particular challenge here is how to ensure that only authorized users can access the data that has been outsourced to the cloud, anywhere and at any time. Before uploading tocloud, one naive solution is to use data cryption technique. The solution, however, limits additional data sharing and processing. This is because a data owner needs to download and further encrypt the encrypted data for sharing from the cloud (assume that the data owner has no local copies of the data).

System Configuration

H/W System Configuration
Speed                   : 1.1 GHz
RAM                      : 256 MB(min)
Hard Disk              : 20 GB
Floppy Drive          : 1.44 MB
Key Board             : Standard Windows Keyboard
Mouse                  : Two or Three Button Mouse
Monitor                : SVGA
S/W System Configuration

Platform                     :  cloud computing

Operating system       : Windows Xp,7,
Server                       : WAMP/Apache
Working on                : Browser Like Firefox, IE

Conclusion

In this work, we addressed the credential failure challenge in a CP-ABE-based cloud storage system by designing an accountable authority and revocable CryptCloud that supports white-box traceability and auditing (referred to asCryptCloud+). This is the first CP-ABE-based cloud storage system that simultaneously supports white-box traceability, accountable authority, auditing and effective revocation. Specifically, CryptCloud+ allows us to track and revoke cloud users (leaking credentials). Our approach can also be used in cases where credentials of users are areredistributed by the semi-trusted authority.