Efficient partially policy-hidden with multi-authority for access control scheme in Internet of Things
Yan Liu, Ruizhong Du · 2020
The widespread application from all walks of life in the Internet of Things (IoT) has improved our daily lives, however, the rapidly increased number of devices and data has brought security attacks frequently. To maximize the protection of data privacy and security, an attribute-based encryption(ABE) scheme based on hidden policy with multi-authority is proposed to achieve the fine-grained access control of the shared data. First, the computation complexity is reduced through outsourcing decryption and authentication to edge nodes to avoid the burden of terminals with limited computing and communication capabilities. Second, the system exploits Multi-Authority, in which users are identified with a hash function to effectively resist collusion attacks caused by joint communication between different authorities. At the same time, partially policy is hidden using the linear secret sharing scheme (LSSS) to preserve the attribute privacy. Theoretical analysis and comparison prove that the proposed scheme is secure to resist the attacks and efficient in computation.