Attribute-Based Encryption : Using Identity-Based Encryption for Access Control

We introduce an access-control technique that we refer to as attribute-based encryption (ABE). An extension of the cryptographic technique of identity-based encryption (IBE), our proposed ABE scheme can serve as the basis of an access-control architecture in which entities require no interaction with a trusted authority in order to gain access to sensitive data.We show how to construct any access-control policy for ABE that is expressible as monotone boolean formulae on variables describing the possession of attributes by a requesting entity. This encompasses a broad range of the policy formulations of common interest. Our system is practical: Indeed, its most attractive feature is architec-