首页    期刊浏览 2024年10月06日 星期日
登录注册

文章基本信息

  • 标题:DBMask: Fine-Grained Access Control on Encrypted Relational Databases
  • 本地全文:下载
  • 作者:Muhammad I Sarfraz ; Mohamed Nabeel ; Jianneng Cao
  • 期刊名称:Transactions on Data Privacy
  • 印刷版ISSN:1888-5063
  • 电子版ISSN:2013-1631
  • 出版年度:2016
  • 卷号:9
  • 期号:3
  • 页码:187-214
  • 出版社:IIIA-CSIC
  • 摘要:

    DBMask is a system that implements encrypted query processing with support for complex queries and fine grained access control with create , update , delete and cryptographically enforced read (CRUD) operations for data stored on an untrusted database server hosted in a public cloud. Past research efforts have not adequately addressed flexible access control on encrypted data at different granularity levels which is critical for data sharing among different users and applications. DBMask proposes a novel technique that separates fine grained access control from encrypted query processing when evaluating SQL queries on encrypted data and enforces fine grained access control at the granularity level of a column, row and cell based on an expressive attribute-based group key encryption scheme. DBMask does not require modifications to the database engine, and thus maximizes the reuse of the existing DBMS infrastructures. Our experiments evaluate the performance of an encrypted database, managed by DBMask, using queries from TPC-H benchmark in comparison to plaintext Postgres. We further evaluate the functionality of our prototype using a policy simulator and a multi-user web application. The results show that DBMask is efficient and scalable to large datasets.

国家哲学社会科学文献中心版权所有