7th International Conference on Collaborative Computing: Networking, Applications and Worksharing

Research Article

Towards Privacy Preserving Access Control in the Cloud

Download663 downloads
  • @INPROCEEDINGS{10.4108/icst.collaboratecom.2011.247061,
        author={Mohamed Nabeel and Elisa Bertino and Murat Kantarcioglu and Bhavani Thuraisingham},
        title={Towards Privacy Preserving Access Control in the Cloud},
        proceedings={7th International Conference on Collaborative Computing: Networking, Applications and Worksharing},
        publisher={IEEE},
        proceedings_a={COLLABORATECOM},
        year={2012},
        month={4},
        keywords={privacy access control storage as a service},
        doi={10.4108/icst.collaboratecom.2011.247061}
    }
    
  • Mohamed Nabeel
    Elisa Bertino
    Murat Kantarcioglu
    Bhavani Thuraisingham
    Year: 2012
    Towards Privacy Preserving Access Control in the Cloud
    COLLABORATECOM
    ICST
    DOI: 10.4108/icst.collaboratecom.2011.247061
Mohamed Nabeel1,*, Elisa Bertino1, Murat Kantarcioglu2, Bhavani Thuraisingham2
  • 1: Purdue University
  • 2: The University of Texas at Dallas
*Contact email: nabeel@cs.purdue.edu

Abstract

It is very costly and cumbersome to manage database systems in-house especially for small or medium organizations. Data-as-a-Service (DaaS) hosted in the cloud provides an attractive solution, which is flexible, reliable, easy and economical to operate, for such organizations. However security and privacy issues concerning the storage of the data in the cloud and access via the Internet have been major concerns for many organizations. The data and the human resources are the life blood of any organization. Hence, they should be strongly protected. In this paper, we identify the challenges in securing DaaS model and propose a system called CloudMask that lays the foundation for organizations to enjoy all the benefits of hosting their data in the cloud while at the same time supporting finegrained and flexible access control for shared data hosted in the cloud.