A Compact Ciphertext-Policy Attribute-Based Encryption Scheme for the Information-Centric Internet of Things
The information-centric Internet of things (IC-IoT) is different from the traditional Internet of things (IoT) in that the device-to-device pattern is generalized to a device-to-network pattern. Furthermore, in an IC-IoT environment, there is a demand for protecting the security of all data generate...
Main Authors: | , , , |
---|---|
Format: | Article |
Language: | English |
Published: |
IEEE
2018-01-01
|
Series: | IEEE Access |
Subjects: | |
Online Access: | https://ieeexplore.ieee.org/document/8501926/ |
_version_ | 1830360616431255552 |
---|---|
author | Jing Wang Neal Naixue Xiong Jinhai Wang Wei-Chang Yeh |
author_facet | Jing Wang Neal Naixue Xiong Jinhai Wang Wei-Chang Yeh |
author_sort | Jing Wang |
collection | DOAJ |
description | The information-centric Internet of things (IC-IoT) is different from the traditional Internet of things (IoT) in that the device-to-device pattern is generalized to a device-to-network pattern. Furthermore, in an IC-IoT environment, there is a demand for protecting the security of all data generated from IC-IoT devices. A cryptography scheme named attribute-based encryption (ABE) represents a smart method of providing the fine-grained access control that can sufficiently protect data security. The most attractive advantage of ABE is its expressive access policy, which makes the access control of data flexible and manageable. However, there is a serious problem caused by such an access policy; it incurs a greater ciphertext redundancy and computational overhead. This implies that the current ABE scheme is hard to implement in the thin client devices of IC-IoT. In this paper, we propose a universalized policy-compacting method via sharing public parts of the policy. Compared with the original policy, the compacted policy applies a more compact ciphertext and requires less computation, communication, and storage cost. However, the policy-compacting problem is proved to be a non-deterministic polynomial complete (NPC) problem. Thus, a greedy algorithm is provided to obtain an approximate minimum compacted policy scale. Finally, we propose a compact ciphertext-policy attribute-based encryption (CCP-ABE) scheme with the policy-compacting method. A security proof and performance evaluation show that the proposed CCP-ABE scheme provides a comprehensive performance improvement. |
first_indexed | 2024-12-20T03:19:36Z |
format | Article |
id | doaj.art-35cb152cbf9e44398299f2a5734bdd84 |
institution | Directory Open Access Journal |
issn | 2169-3536 |
language | English |
last_indexed | 2024-12-20T03:19:36Z |
publishDate | 2018-01-01 |
publisher | IEEE |
record_format | Article |
series | IEEE Access |
spelling | doaj.art-35cb152cbf9e44398299f2a5734bdd842022-12-21T19:55:15ZengIEEEIEEE Access2169-35362018-01-016635136352610.1109/ACCESS.2018.28771778501926A Compact Ciphertext-Policy Attribute-Based Encryption Scheme for the Information-Centric Internet of ThingsJing Wang0https://orcid.org/0000-0002-0610-4308Neal Naixue Xiong1Jinhai Wang2Wei-Chang Yeh3School of Data and Computer Science, Sun Yat-sen University, Guangzhou, ChinaDepartment of Mathematics and Computer Science, Northeastern State University, Tahlequah, OK, USACollege of Electronic and Information Engineering, Foshan University, Foshan, ChinaDepartment of Industrial Engineering and Engineering Management, National Tsing Hua University, Hsinchu, TaiwanThe information-centric Internet of things (IC-IoT) is different from the traditional Internet of things (IoT) in that the device-to-device pattern is generalized to a device-to-network pattern. Furthermore, in an IC-IoT environment, there is a demand for protecting the security of all data generated from IC-IoT devices. A cryptography scheme named attribute-based encryption (ABE) represents a smart method of providing the fine-grained access control that can sufficiently protect data security. The most attractive advantage of ABE is its expressive access policy, which makes the access control of data flexible and manageable. However, there is a serious problem caused by such an access policy; it incurs a greater ciphertext redundancy and computational overhead. This implies that the current ABE scheme is hard to implement in the thin client devices of IC-IoT. In this paper, we propose a universalized policy-compacting method via sharing public parts of the policy. Compared with the original policy, the compacted policy applies a more compact ciphertext and requires less computation, communication, and storage cost. However, the policy-compacting problem is proved to be a non-deterministic polynomial complete (NPC) problem. Thus, a greedy algorithm is provided to obtain an approximate minimum compacted policy scale. Finally, we propose a compact ciphertext-policy attribute-based encryption (CCP-ABE) scheme with the policy-compacting method. A security proof and performance evaluation show that the proposed CCP-ABE scheme provides a comprehensive performance improvement.https://ieeexplore.ieee.org/document/8501926/Information-centric internet of things (IC-IoT)access controlattribute-based encryption (ABE)policy compacting |
spellingShingle | Jing Wang Neal Naixue Xiong Jinhai Wang Wei-Chang Yeh A Compact Ciphertext-Policy Attribute-Based Encryption Scheme for the Information-Centric Internet of Things IEEE Access Information-centric internet of things (IC-IoT) access control attribute-based encryption (ABE) policy compacting |
title | A Compact Ciphertext-Policy Attribute-Based Encryption Scheme for the Information-Centric Internet of Things |
title_full | A Compact Ciphertext-Policy Attribute-Based Encryption Scheme for the Information-Centric Internet of Things |
title_fullStr | A Compact Ciphertext-Policy Attribute-Based Encryption Scheme for the Information-Centric Internet of Things |
title_full_unstemmed | A Compact Ciphertext-Policy Attribute-Based Encryption Scheme for the Information-Centric Internet of Things |
title_short | A Compact Ciphertext-Policy Attribute-Based Encryption Scheme for the Information-Centric Internet of Things |
title_sort | compact ciphertext policy attribute based encryption scheme for the information centric internet of things |
topic | Information-centric internet of things (IC-IoT) access control attribute-based encryption (ABE) policy compacting |
url | https://ieeexplore.ieee.org/document/8501926/ |
work_keys_str_mv | AT jingwang acompactciphertextpolicyattributebasedencryptionschemefortheinformationcentricinternetofthings AT nealnaixuexiong acompactciphertextpolicyattributebasedencryptionschemefortheinformationcentricinternetofthings AT jinhaiwang acompactciphertextpolicyattributebasedencryptionschemefortheinformationcentricinternetofthings AT weichangyeh acompactciphertextpolicyattributebasedencryptionschemefortheinformationcentricinternetofthings AT jingwang compactciphertextpolicyattributebasedencryptionschemefortheinformationcentricinternetofthings AT nealnaixuexiong compactciphertextpolicyattributebasedencryptionschemefortheinformationcentricinternetofthings AT jinhaiwang compactciphertextpolicyattributebasedencryptionschemefortheinformationcentricinternetofthings AT weichangyeh compactciphertextpolicyattributebasedencryptionschemefortheinformationcentricinternetofthings |