City Research Online

R-PEKS: RBAC Enabled PEKS for Secure Access of Cloud Data

Rao, K. R., Ray, I. G., Asif, W. , Nayak, A. & Rajarajan, M. (2019). R-PEKS: RBAC Enabled PEKS for Secure Access of Cloud Data. IEEE ACCESS, 7, pp. 133274-133289. doi: 10.1109/ACCESS.2019.2941560


In the recent past, few works have been done by combining attribute-based access control with multi-user PEKS, i.e., public key encryption with keyword search. Such attribute enabled searchable encryption is most suitable for applications where the changing of privileges is done once in a while. However, to date, no efficient and secure scheme is available in the literature that is suitable for these applications where changing privileges are done frequently. In this paper our contributions are twofold. Firstly, we propose a new PEKS scheme for string search, which, unlike the previous constructions, is free from bi-linear mapping and is efficient by 97% compared to PEKS for string search proposed by Ray in TrustCom 2017. Secondly, we introduce role based access control (RBAC) to multi-user PEKS, where an arbitrary group of users can search and access the encrypted files depending upon roles. We termed this integrated scheme as R-PEKS. The efficiency of R-PEKS over the PEKS scheme is up to 90%. We provide formal security proofs for the different components of R-PEKS and validate these schemes using a commercial dataset.

Publication Type: Article
Additional Information: This work is licensed under a Creative Commons Attribution 4.0 License. For more information, see
Publisher Keywords: Access control; cloud computing; MUSE; PEKS; RBAC; SUSE
Subjects: Q Science > QA Mathematics > QA75 Electronic computers. Computer science
T Technology > TK Electrical engineering. Electronics Nuclear engineering
Departments: School of Science & Technology > Engineering > Electrical & Electronic Engineering
Text - Published Version
Download (7MB) | Preview



Downloads per month over past year

View more statistics

Actions (login required)

Admin Login Admin Login