首页 | 本学科首页   官方微博 | 高级检索  
     

一种面向发布订阅系统的访问控制机制
引用本文:王启旭,丁哲,陈大江,秦臻,秦志光.一种面向发布订阅系统的访问控制机制[J].电子科技大学学报(自然科学版),2018,47(4):595-600.
作者姓名:王启旭  丁哲  陈大江  秦臻  秦志光
作者单位:1.四川大学网络空间安全学院/研究院 成都 610207
基金项目:国家自然科学基金611330161国家自然科学基金61472064国家自然科学基金61502085863项目2015AA016007中国博士后科学基金2015M570775
摘    要:针对发布订阅系统的安全攻击频频出现,为了保护其系统安全和用户隐私,提出一种基于全同态加密算法的访问控制机制(ACHO)。ACHO保证了发布订阅系统中用户交互去耦性和异步通信的特点,同时还能保护系统数据机密性和支持系统可扩展性。ACHO使用全同态加密算法对系统中发布的数据进行加密,同时在密文中嵌入访问控制结构和属性信息来达到控制访问的目的。理论分析了ACHO机制的正确性和安全性。实验结果表明,ACHO在保证安全开销的前提下,达到了发布订阅系统高效运行的性能要求。

关 键 词:访问控制    授权策略    全同态加密    物联网    发布订阅系统
收稿时间:2017-08-19

ACHO: An Access Control Scheme Based on Full Homomorphic Encryption for Publish-Subscribe System
Affiliation:1.College of Cybersecurity/Cybersecurity Research Institutes Sichuan University Chengdu 6102072.School of Information and Software Engineering, University of Electronic Science and Technology of China Chengdu 6100543.Department of Electrical and Computer Engineering, University of Waterloo Waterloo ON, Canada N2L 3G1
Abstract:Due to the complex application scenarios, the publish-subscribe (PS) system suffers from masses of security attacks. In order to protect the system security and users privacy, an access control scheme based on full homomorphic encryption (FHE) for PS system, named access control scheme based on full homomorphic encryption (ACHO), has been proposed in this article. ACHO can guarantee the features of decoupling users' interactions and asynchronous communications for PS system. Meanwhile, ACHO can protect the confidentiality of system data and support the system scalability. Specifically, 1) ACHO utilizes the FHE to encrypt the data published in the PS system, 2) it embeds the access control structure and the access attributes to achieve the aim of access control. Security analysis shows that the ACHO can guarantee the correctness and security in theory. Moreover, the experimental results show that ACHO can efficiently achieve the trade-off between the system cost and the security demand.
Keywords:
点击此处可从《电子科技大学学报(自然科学版)》浏览原始摘要信息
点击此处可从《电子科技大学学报(自然科学版)》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号