A Comprehensive Analysis of ABE Access Control Mechanisms in Cloud Environment
摘要
Access Control in Cloud Computing (CC) refers to the ability to restrict access to information stored on the cloud. This allows organizations to ensure their information is secured and helps minimize risk. There are various types of access controls that can be implemented at an organization which authorize the verified users to access the resources. Authorization is one through which access can be restricted depending on factors like one’s role, attributes and more. This paper offers a comprehensive analysis of attribute-based encryption (ABE) in relation to control of access to CC resources. Presenting taxonomy and thorough assessment standards for ABE is the primary goal. This taxonomy classifies ABE schemes into four categories: general constructs, anti-quantum ABE schemes, cipher text-policy ABE schemes and key-policy ABE schemes (KP-ABE). A systematic approach to analyze and compare various ABE systems is introduced in this context. The presentation includes a structured method for examining and contrasting popular ABE systems, with concrete examples elucidating access control scenarios of the variants of CP-ABE. To clarify, the process involves presenting the framework and security objectives of the adversarial model, followed by a detailed explanation of the ABE syntax. In this research, ABE systems are thoroughly examined, evaluating their adherence to proposed security and performance assessment standards while scrutinizing their unique features and design approaches. Distinguishing itself from contemporary survey papers, this study surpasses by offering a comprehensive and inclusive comparison, along with an extensive review encompassing 12 varieties of ABE systems. Additionally, the paper sheds light on several unresolved research queries within the domain of ABE, thereby contributing to a more nuanced understanding of the subject.