SECURE AND RELIABLE DATA ACCESS CONTROL MECHANISM IN MULTI-CLOUD ENVIRONMENT WITH INTER-SERVER COMMUNICATION SECURITY

Authors

  • Nagesh Shenoy Havanje Department of Computer Science and Engineering, Canara Engineering College, Mangalore.
  • Kodihalli Ramanna Anil Kumar Department of MCA, DSCM & IT, Bangalore.
  • Suchitra Nagesh Shenoy Department of Electronics and Communication Engineering, Canara Engineering College, Mangalore.
  • Abhishek Suresh Rao Department of Information Science and Engineering, NMAM Institute of Technology, Nitte.
  • Rajgopal Kondalakadu Thimmappayya Department of Computer Science and Engineering, Canara Engineering College, Mangalore.

Keywords:

Cloud computing, ECDH, AES, CP-ABE,, RSA, SHA3, Attribute revocation

Abstract

Cloud system are dynamic and offer lucrative services to its users but often these systems are doubted for its honest but curious property. Data confidentiality, user privacy and integrity maintenance are the major tasks performed by the cloud servers to secure the infrastructure. CP-ABE guarantees fine-grained access control of data by legitimate users in cloud storage system but doesn’t guarantee message interception by spying intruders who fake the legitimate access IDs. Multi cloud systems are highly vulnerable to these attacks as flow of sensitive information is much due to inter-cloud communication. To solve the above problems, we propose a practical CP-ABE based framework for multi-cloud system consisting mechanisms to secure inter-server communication, maintain data and user privacy, data integrity verification and rekeying to handle attribute revocation. We give performance analysis of our mechanisms under IFP and CDHP assumptions and prove it to be secure against eavesdropping and attacks. Results shows performance of proposed scheme in terms of efficiency and security.

References

Bermbach, D., Klems, M., Tai, S., and Menzel, M. (2011). Metastorage: A federated cloud storage system to manage consistency-latency tradeoffs. In: IEEE International Conference on Cloud Computing (CLOUD). p. 452.

Bethencourt, J., Sahai, A., and Waters, B. (2007). Ciphertextpolicy attribute-based encryption. Proceedings of the IEEE Symposium on Security and Privacy., (SP’07):321-334.

Bethencourt, John., Amit, Sahai., and Brent, Waters. (2007). Ciphertext-policy attribute-based encryption. Security and Privacy, SP’07. IEEE Symposium on. IEEE.

Boldyreva, A., Goyal, V., and Kumar V. (2008). Identity-based encryption with efficient révocation. Proceedings of the 15th ACM Conference on Computer and Communications Security., (CCS’08):417.

Boneh, D. and Franklin, M.K. (2003). Identity-based encryption from the Weil pairing. SIAM J. Comput., 32(3):586-615.

Bowers, K.D., Juels A., and Oprea A. (2009). HAIL: A high-availability and integrity layer for cloud storage. CCS'09: Proc. 16th ACM Conf. on Computer and communications security. p. 187-198.

Cachin, C., Haas, R., and Vukolic, M. (2010). Dependable storage in the Intercloud. IBM Research Report., 3,783:1.

Chang, Jinyong. (2020). Efficient Identity-Based Provable Multi-Copy Data Possession in Multi-Cloud Storage. Revisited. IEEE Communications Letters.

Chase, M. (2007). Multi-authority attribute based encryption. Proceedings of the 4th Theory of Cryptography Conference. Springer., 515-534.

Chen, H., Hu, Y., Lee, P., and Tang, Y. (2013). Nccloud: A network-codingbased storage system in a cloud-of-clouds. IEEE Transation on Computers.

Goyal V., Pandey O., Sahai A., and Waters B. (2006). Attribute-based encryption for fine-grained access control of encrypted data. Proc. 13th ACM Conf. Comput. Commun. Secur., 89-98.

Hema, V., Sri Vigna, and Ramesh Kesavan. (2019). ECC Based Secure Sharing of Healthcare Data in the Health Cloud Environment. Wireless Personal Communications., 108(2)1,021-1,035.

Koblitz N. (1987). Elliptic Curve Cryptosystems. Mathematics of Computation.

Li, J., Huang, X., Li J., Chen, X. and Xiang, Y. (2014). Securely outsourcing attribute-based encryption with checkability. IEEE Transactions on Parallel and Distributed Systems., 25(8):2,201-2,210.

Li, Jiguo, Ningyu Chen, and Yichen Zhang. (2019). Extended file hierarchy access control scheme with attribute based encryption in cloud computing. IEEE Transactions on Emerging Topics in Computing.

Li, W., Li, X., Wen, Q., Zhang, S. and Zhang, H. (2017). Flexible CP-ABE Based Access Control on Encrypted Data for Mobile Users in Hybrid Cloud System. J. of Com. Sci. and Technol., 32(5):974-990.

Li, W., Xue, K., Xue, Y. and Hong, J. (2016). TMACS: A Robust and Verifiable Threshold Multi-Authority Access Control System in Public Cloud Storage. IEEE Transactions on Parallel and Distributed Systems., 27(5):1,484-1,496.

Liu, C., Gu, Y., Sun, L., Yan, B., and Wang, D. (2009). RADMAD: High reliability provision for large-scale deduplication archival storage systems. In: Proceedings of the 23rd International Conference on Supercomputing. p. 370.

M. Vukolic. (2010). The Byzantine empire in the intercloud. ACM SIGACT News., 41:105-111.

McCurley K.S. (1988). A key distribution system equivalent to factoring. J. of Cryptology., 1(2):95-105.

Megouache, Leila, Abdelhafid Zitouni, and Mahieddine Djoudi. (2020). Ensuring user authentication and data integrity in multi-cloud environment. Human-centric Computing and Information Sci., 10:1-20.

Miller V.S. (1985). Use of elliptic curves in cryptography. Advances in Cryptography., 1985.

Mishra, Pragya and Vandani Verma. (2020). Study of Identity-Based Encryption for Cloud Data Security. Decision Analytics Applications in Industry. Springer, Singapore. p. 401-408.

Nagesh, S.H., Kumar, K.A. and Rajgopal, K.T. (2017). Cloud architectures encountering data security and privacy concerns-A review. In: 2017 International Conference on Energy, Communication, Data Analytics and Soft Computing (ICECDS). p. 1,729-1,735.

Papaioannou, T.G., Bonvin, N., and Aberer, K. (2012). Scalia: an adaptive scheme for efficient multi-cloud storage. Proceedings of the International Conference on High Performance Computing, Networking, Storage and Analysis (SC’12). IEEE Computer Society Press., 20.

Patil, S., Vhatkar P., and Gajwani J. (2014). Towards secure and dependable storage services in cloud computing. Int. J. of Innovative Research in Advanced Eng., 1(9):57-64

Peng, S., Zhou, F., Wang, Q., Xu, Z. and Xu, J. (2017). Identity-Based Public Multi-Replica Provable Data Possession. IEEE Access. v.5., 6,990-27,001.

Pirretti, M., Traynor, P., McDaniel, P., and Waters, B. (2006). Secure attribute-based systems. In: Proceedings of the 13th ACM Conference on Computer and Communications Security (CCS’06). p. 99-112.

Premkamal, Praveen Kumar., Syam, Kumar Pasupuleti., and Alphonse P.J.A. (2020). Dynamic traceable CP‐ABE with revocation for outsourced big data in cloud storage. Int. J. of Communication Sys., 4,351.

Priyanka, J. and Ramakrishna, M. (2020). Performance Analysis of Attribute based Encryption and Cloud Health data Security. 4th International Conference on Intelligent Computing and Control Systems (ICICCS). IEEE.

Rajgopal, K.T.K.R., Anil, Kumar, and Nagesh, Shenoy. (2018). Load balancing in cloud computing: A survey on popular techniques and comparative analysis. Global J. of Computer Sci and Technol., 18(1)

Riad, Khaled, Rafik Hamza, and Hongyang Yan. (2019). Sensitive and energetic IoT access control for managing cloud electronic health records. IEEE Access., (7):86,384-86,393.

Sahai, A. and Waters, B. (2005). Fuzzy identity-based encryption. advances in cryptology-eurocrvpt. Springer Berlin Heidelberg., 3,494:457.

Shankar, Achyut, Pandiaraja, P., Sumathi K., Thompson, Stephan, and Pavika, Sharma. (2020). Privacy preserving E-voting cloud system based on ID based encryption. Peer-to-Peer Networking and Applications., 1-11.

Shenoy, H., Anil Kumar, K.R. and Rajgopal, K.T. (2019). A Comparative Performance Evaluation Approach to Assess Data Security using Cryptographic Algorithms. Indian Journal of Public Health Research & Development., 10(5).

Wang, Liangmin., Zhendong Yang., and Xiangmei Song. (2020). SHAMC: A Secure and highly available database system in multi-cloud environment. Future Generation Computer Systems., 105:873-883.

Wang, Pengwei. (2020). Optimizing data placement for cost effective and high available multi-cloud storage. Computing and Informatics. 39(1-2):51-82.

Xiong, Shuming., Qiang, Ni., Liangmin, Wang., and Qian, Wang. (2020). SEM-ACSIT: Secure and Efficient Multiauthority Access Control for IoT Cloud Storage. IEEE Int. of Things J., 4:2,914-2,927.

Yang, L., Humayed, A., and Li, F. (2016). A multi-cloud based privacy-preserving data publishing scheme for the internet of things. Proceedings of the 32nd Annual Conference on Computer Security Applications-ACSAC 16.

Youn, Taek-Young. (2019). Authorized client-side deduplication using CP-ABE in cloud storage. Wireless Communications and Mobile Computing.

Yu S., Wang C., Ren K., and Lou W. (2010). Achieving secure, scalable, and fine-grained data access control in cloud computing. Proceedings of the 29th IEEE International Conference on Computer Communications. IEEE., 1-9.

Zarandioon, S., Yao, D., and Ganapathy, V. (2012). K2c: Cryptographic cloud storage with lazy revocation and anonymous access. Proceedings of the 8th International ICST Conference on Security and Privacy in Communication Networks. Springer. p. 59-76.

Zhuang, H., Rahman R., Hui, P. and Aberer, K. (2018). Optimizing Information Leakage in Multicloud Storage Services. IEEE Transactions on Cloud Computing., 1-1.

Downloads

Published

2026-08-28

How to Cite

Shenoy Havanje, N., Ramanna Anil Kumar, K., Nagesh Shenoy, S., Suresh Rao, A., & Kondalakadu Thimmappayya, R. (2026). SECURE AND RELIABLE DATA ACCESS CONTROL MECHANISM IN MULTI-CLOUD ENVIRONMENT WITH INTER-SERVER COMMUNICATION SECURITY. Suranaree Journal of Science and Technology, 29(3), 010127(1–13). retrieved from https://ph04.tci-thaijo.org/index.php/SUJST/article/view/15107

Issue

Section

Research Article