Cloud-assisted Industrial Internet of Things (IIoT) is prevalent in offering high quality industrial service by accommodating a huge volume of industrial data to eliminate the heavy burden of resource-limited smart devices and providing convenient industrial data sharing services for participants. However, the outsourced industrial data in remote cloud contain strongly sensitive information of manufacturing and are essential for decisions with analysis. Unauthorized access by malicious users or even destruction to these data will cause severe privacy leakage or manufacturing negligence. Thus, access control, privacy preserving and data integrity are of great significance to industrial data sharing in Cloud-assisted IIoT. Although Ciphertext-Policy Attribute-Based Encryption (CP-ABE) is a powerful tool for cloud data sharing, it incurs several limitations when used in industry field. Many existing schemes lack the ability to deal with data integrity violation, malicious user revocation and user privacy leakage of cleartext access policy simultaneously. Meanwhile, the key escrow is also an important security risk. As a countermeasure, in this paper, we propose an Auditable and Privacy Preserving Data Sharing Framework (APPD) for Cloud-assisted IIoT. In our framework, we devise a novel decentralized CP-ABE scheme with large universe and data auditing to achieve both fine-grained access control with key escrow resistance over unbounded attributes and data integrity guarantee. The full policy hiding and user revocation mechanisms are employed to prevent user privacy from being leaked by access policy and malicious users. At last, we present detailed formal security analysis for our proposal and the thorough performance assessment also demonstrates its feasible in IIoT application.
扫码关注我们
求助内容:
应助结果提醒方式:
