The Center for Education and Research in Information Assurance and Security (CERIAS)

The Center for Education and Research in
Information Assurance and Security (CERIAS)

P-Hera: Scalable fine-grained access control for P2P infrastructures


Bruno Crispo, Swaminathan Sivasubramanian, Pietro Mazzoleni, and Elisa Bertino

Tech report number

CERIAS TR 2005-107

Entry type



In this paper, we present P-Hera, a peer-to-peer (P2P) infrastructure for scalable and secure content hosting. P- Hera allows the users and content owners to dynamically establish trust using fine-grained access control. In P-Hera, resource owners can specify fine-grained restrictions on who can access their resources and which user can access which part of data. We differentiate our work with tradi- tional works of fine-grained access control on Web services, as our system in addition to handling access constrains of the service provider (which is the case in Web services), it also handles security constrains regarding actions per- formed on data: replication and modification. We believe this is of immense significance for wide-range of applica- tions such as data Grids, Information Grids and Web Con- tent Delivery Networks. In addition to presenting the over- all system architecture, we also study the problem of eval- uating these fine-grained access policies in depth and pro- pose a novel means of organizing these policies that can re- sult in faster evaluation. We demonstrate the effectiveness of our approach using prototype implementation.




Proceedings of the 2005 11th International Conference on Parallel and Distributed Systems (ICPADS'05)

Key alpha

P-Hera: Scalable fine-grained access control for P2P infrastructures




Vrije Universiteit, Amsterdam, University of Milan,Italy and Purdue University and Cerias, USA

Publication Date



2005 IEEE

BibTex-formatted data

To refer to this entry, you may select and copy the text below and paste it into your BibTex document. Note that the text may not contain all macros that BibTex supports.