TY - JOUR
T1 - Achieving adaptively secure data access control with privacy protection for lightweight IoT devices
AU - Guan, Zhitao
AU - Yang, Wenti
AU - Zhu, Liehuang
AU - Wu, Longfei
AU - Wang, Ruimiao
N1 - Publisher Copyright:
© 2021, Science China Press and Springer-Verlag GmbH Germany, part of Springer Nature.
PY - 2021/6
Y1 - 2021/6
N2 - The Internet of things (IoT) technology has been used in a wide range of fields, ranging from industrial manufacturing to daily lives. The IoT system contains numerous resource-constrained lightweight devices such as wireless sensors and radio frequency identification (RFID) tags. A massive amount of sensitive data is generated and transmitted by these devices to a variety of users. The complexity of the IoT system places a high demand on security. Therefore, it is necessary to develop an encryption scheme with access control to provide flexible and secure access to the sensitive data. The ciphertext policy attribute-based encryption (CP-ABE) scheme is a potential solution. However, the long ciphertext as well as the slow encryption and decryption operations in traditional ABE schemes make it inappropriate for most IoT systems, which require low latency and contain many devices with limited memory size and computing capability. In this paper, we propose a modified CP-ABE scheme with constant length of ciphertext and low computation overhead in the encryption and decryption phases. Additionally, our scheme is proven to be adaptively secure under the standard model. Moreover, two enhanced schemes are developed to prevent authorized users from leaking data and protect the privacy of data owners by combining chameleon hash, bloom filters and CP-ABE, respectively. Finally, the experimental evaluation and analysis prove the feasibility of our scheme.
AB - The Internet of things (IoT) technology has been used in a wide range of fields, ranging from industrial manufacturing to daily lives. The IoT system contains numerous resource-constrained lightweight devices such as wireless sensors and radio frequency identification (RFID) tags. A massive amount of sensitive data is generated and transmitted by these devices to a variety of users. The complexity of the IoT system places a high demand on security. Therefore, it is necessary to develop an encryption scheme with access control to provide flexible and secure access to the sensitive data. The ciphertext policy attribute-based encryption (CP-ABE) scheme is a potential solution. However, the long ciphertext as well as the slow encryption and decryption operations in traditional ABE schemes make it inappropriate for most IoT systems, which require low latency and contain many devices with limited memory size and computing capability. In this paper, we propose a modified CP-ABE scheme with constant length of ciphertext and low computation overhead in the encryption and decryption phases. Additionally, our scheme is proven to be adaptively secure under the standard model. Moreover, two enhanced schemes are developed to prevent authorized users from leaking data and protect the privacy of data owners by combining chameleon hash, bloom filters and CP-ABE, respectively. Finally, the experimental evaluation and analysis prove the feasibility of our scheme.
KW - CP-ABE
KW - IoT
KW - adaptively secure
KW - constant-size ciphertexts
KW - privacy protection
UR - http://www.scopus.com/inward/record.url?scp=85104238450&partnerID=8YFLogxK
U2 - 10.1007/s11432-020-2957-5
DO - 10.1007/s11432-020-2957-5
M3 - Article
AN - SCOPUS:85104238450
SN - 1674-733X
VL - 64
JO - Science China Information Sciences
JF - Science China Information Sciences
IS - 6
M1 - 162301
ER -