Skip to main navigation Skip to search Skip to main content

ABAC: Attribute-Based Access Control

  • Kan Yang*
  • , Xiaohua Jia
  • *Corresponding author for this work

Research output: Chapters, Conference Papers, Creative and Literary WorksChapter in research book/monograph/textbook (Author)peer-review

Abstract

Cloud storage service allows data owner to outsource their data to the cloud and through which provide the data access to the users. Because the cloud server and the data owner are not in the same trust domain, the semi-trusted cloud server cannot be relied to enforce the access policy. To address this challenge, traditional methods usually require the data owner to encrypt the data and deliver decryption keys to authorized users. These methods, however, normally involve complicated key management and high overhead on data owner. In this chapter, we introduce ABAC, an access control framework for cloud storage systems that achieves fine-grained access control based on an adapted Ciphertext-Policy Attribute-based Encryption (CP-ABE) approach. In ABAC, an efficient attribute revocation method is proposed to cope with the dynamic changes of users’ access privileges in large-scale systems.
Original languageEnglish
Title of host publicationSecurity for Cloud Storage Systems
PublisherSpringer 
Chapter3
Pages39-58
ISBN (Electronic)978-1-4614-7873-7
ISBN (Print)978-1-4614-7872-0
DOIs
Publication statusPublished - 2014

Publication series

NameSpringerBriefs in Computer Science
ISSN (Print)2191-5768
ISSN (Electronic)2191-5776

Fingerprint

Dive into the research topics of 'ABAC: Attribute-Based Access Control'. Together they form a unique fingerprint.

Cite this