End-to-end policy-based encryption and management of data in the cloud

19Citations
Citations of this article
44Readers
Mendeley users who have this article in their library.
Get full text

Abstract

This paper introduces and discusses a data management solution to provide accountability within the cloud as well as addressing privacy issues. The central idea is as follows: Customers allow cloud (service) providers to have access to specific data based on agreed policies and by forcing interactions with interchangeable independent third parties called Trust Authorities. The access to data can be as finegrained as necessary, based on policy definitions, underlying encryption mechanisms (supporting the stickiness of policies to the data) and a related key management approach that allows (sets of) data attribute(s) to be encrypted specifically based on the policy. Access to data is mediated by a Trust Authority that checks for compliance to policies in order to release decryption keys. By these means users can be provided with fine-grained control over access and usage of their data within the cloud, even in public cloud models. © 2011 IEEE.

Cite

CITATION STYLE

APA

Pearson, S., Mont, M. C., Chen, L., & Reed, A. (2011). End-to-end policy-based encryption and management of data in the cloud. In Proceedings - 2011 3rd IEEE International Conference on Cloud Computing Technology and Science, CloudCom 2011 (pp. 764–771). IEEE Computer Society. https://doi.org/10.1109/CloudCom.2011.118

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free