International Journal of Network Security, Vol.19, No.5, PP.720-726, Sept. 2017 (DOI: 10.6633/IJNS.201709.19(5).09) 720 Role-based Access Control for Body Area Networks Using Attribute-based Encryption in Cloud Storage Ye Tian1;2, Yanbin Peng3, Gaimei Gao1, Xinguang Peng1 (Corresponding author: Xinguang Peng) College of Computer Science and Technology, Taiyuan University of Technology1 No.79,West Yingze Street, Taiyuan, Shanxi 030024, China (Email:
[email protected]) Computer Center, Taiyuan Normal University2 No.319 DaXue Street, Yuci District Jinzhong, Shanxi 030619, China Software Development Center, Agricultural Bank of China3 NO. 18, Lize Road, Jintang International Finance Building, Fengtai district, Beijing 100073, China (Received Aug. 5, 2016; revised and accepted Jan. 15, 2017) Abstract activities of patients continually, for example, the temper- ature, breathing, arrhythmia and endoscope. This medi- In order to save storage space, the data collected from cal treatment is very convenient for the chronic diseases body area networks can be stored in a third party. How- and disables. The communication in body area networks ever, this may bring security problems. The common has three layers, intra-BAN communications, inter-BAN method is encrypting data before outsourcing. In this pa- communications and beyond-BAN communications [10]. per, we design a role-based access control scheme (RACS) \Intra-BAN communications" refers to the communica- used in the cloud. Firstly, we classify the data which are tions between sensors or between sensors and personal collected from body area networks into different types, devices; \Inter-BAN communications" is the communica- and use the ciphertext-policy attribute-based encryption tions between personal devices and one or more access to encrypt them.