4.3 Article

Dynamic permission access control model based on privacy protection

Journal

TELECOMMUNICATION SYSTEMS
Volume 81, Issue 2, Pages 191-205

Publisher

SPRINGER
DOI: 10.1007/s11235-022-00937-8

Keywords

Privacy protection; Access control; Attribute-based encryption; Information security; Hidden attribute authentication

Funding

  1. National Natural Science Foundation of China [61772477, 61971380, U1804263, 62072037]
  2. key technologies R &D Program of Henan Province [212102210089, 212102210171, 212102210075]
  3. Key scientific research project plans of higher education institutions in Henan Province [21zx014]

Ask authors/readers for more resources

In this paper, a dynamic access control model based on privacy protection is proposed to address the issues of user privacy protection and frequent permission changes. The model encrypts and hides entity attributes and binds resource access permissions with entity attributes, resulting in more secure and flexible resource access control.
Access control technology is one of the key technologies to ensure safe resource sharing. Identity authentication and authority distribution are two key technologies for access control technology to restrict unauthorized users from accessing resources, and only authorised legal users can access resources. However, user privacy protection and frequent permission changes are two thorny issues that need to be solved urgently by access control technology. In this paper, a dynamic access control model based on privacy protection is proposed to deal with these problems. Compared with existing access control technologies, the main advantages of this paper are as follows: (1) Encrypt and hide the attributes of entities, and use attribute-based identity authentication technology for identity authentication, which not only achieves the purpose of traditional identity authentication, but also ensures the attributes and privacy of entities are not leaked; (2) Binding resource access permissions with entity attributes, dynamically assigning and adjusting resource access control permissions through changes in entity attributes, making resource access control more fine-grained and more flexible. Security proof and performance analysis show that the proposed protocol is secure under the hardness assumption of the discrete logarithm problem and the decision bilinear Diffie-Hellman problem. Compared with the cited references, this model has the advantages of low computational complexity, short computational time, and low communication overhead.

Authors

I am an author on this paper
Click your name to claim this paper and add it to your profile.

Reviews

Primary Rating

4.3
Not enough ratings

Secondary Ratings

Novelty
-
Significance
-
Scientific rigor
-
Rate this paper

Recommended

No Data Available
No Data Available