Attribute Based Data Sharing With Attribute Revocation

Executive Summary

Ciphertext-Policy Attribute Based Encryption (CP-ABE) is a promising cryptographic primitive for fine-grained access control of shared data. In CP-ABE, each user is associated with a set of attributes and data are encrypted with access structures on attributes. A user is able to decrypt a ciphertext if and only if his attributes satisfy the ciphertext access structure. Beside this basic property, practical applications usually have other requirements. In this paper the authors focus on an important issue of attribute revocation which is cumbersome for CP-ABE schemes.

