SM9-based Traceable and Accountable Access Control for Secure Multi-user Cloud Storage

Ke Ren,Peng Jiang,Keke Gai,Liehuang Zhu,Jingjing Huang
DOI: https://doi.org/10.1109/smartcloud52277.2021.00010
2021-11-01
Abstract:Access control, as one of flagship security mechanisms for cloud storage, allows authorized users' access right while repels unauthorized behaviors. State-of-the-art cryptographic access control systems are deployed on attribute-based encryption or identity-based encryption. They commonly inherit the key escrow problem, which incurs that pirate's untraceability. Meanwhile, with announcement of cryptographic industry standards, kinds of cryptographic algorithms according with these standards have better industrial applications. In this paper, we design SM9-based Traceable and Accountable Access Control (TA2C) to support pirate traceability and accountability. Built on top of identity-based broadcast encryption and SM9 specification, we present an SM9-based TA 2 C construction, which is provably secure in the indistinguishability and traceability security models. We also implement an SM9-based TA 2 C prototype system that supports 100 users and evaluation results show that it just needs about 1 second for encryption/decryption and tracing operations on a workstation with basic configuration.
What problem does this paper attempt to address?