首页 | 本学科首页   官方微博 | 高级检索  
     

云存储环境下基于时释性加密的CP-ABE方案
引用本文:张戈,华蓓.云存储环境下基于时释性加密的CP-ABE方案[J].计算机系统应用,2021,30(1):45-53.
作者姓名:张戈  华蓓
作者单位:中国科学技术大学计算机科学与技术学院, 合肥 230027;中国科学技术大学计算机科学与技术学院, 合肥 230027
摘    要:云存储是未来存储业务的发展方向,数据安全是云存储客户的首要关切.密文策略属性加密(CP-ABE)算法允许数据拥有者将访问策略嵌入密文中,并结合数据访问者的密钥实施访问控制,特别适合云存储环境,但CP-ABE不支持与时间相关的访问控制.本文提出基于时释性加密的CP-ABE方案,通过在CP-ABE中融入时释性加密(TRE)机制来实现带有时间控制的密文共享,允许数据拥有者基于用户属性和访问时间制定更加灵活的访问策略.论文通过安全分析表明,该方案能够抵抗来自用户、云存储平台和授权机构的非法访问、非法用户的串谋攻击以及选择明文攻击.

关 键 词:云存储  访问控制  密文策略属性加密  时释性加密  数据安全
收稿时间:2020/6/1 0:00:00
修稿时间:2020/6/23 0:00:00

CP-ABE Solution Based on Time-Release Encryption in Cloud Storage Environment
ZHANG Ge,HUA Bei.CP-ABE Solution Based on Time-Release Encryption in Cloud Storage Environment[J].Computer Systems& Applications,2021,30(1):45-53.
Authors:ZHANG Ge  HUA Bei
Affiliation:School of Computer Science and Technology, University of Science and Technology of China, Hefei 230027, China
Abstract:Cloud storage is the future development direction of the storage business, and data security is the primary concern of cloud storage customers. The Ciphertext-Policy Attribute-Based Encryption (CP-ABE) algorithm allows the data owner to embed the access policy in the ciphertext and implement access control in conjunction with the key of data accessor, which is particularly appropriate for cloud storage environments. However, CP-ABE does not support time-related access control. This study proposes a CP-ABE scheme based on Time-Release Encryption (TRE). By incorporating a TRE mechanism in CP-ABE to achieve ciphertext sharing with time control, this scheme allows data owners to formulate a more flexible access strategy based on user attributes and access time. And then, we conduct security analysis to verify that this scheme can resist illegal access from users, cloud storage platforms and authorized institutions, as well as collusion attacks of illegal users. In addition, this scheme can also resist chosen-plaintext attack.
Keywords:cloud storage  access control  Ciphertext-Policy Attribute-Based Encryption (CP-ABE)  Time-Release Encryption (TRE)  data security
本文献已被 万方数据 等数据库收录!
点击此处可从《计算机系统应用》浏览原始摘要信息
点击此处可从《计算机系统应用》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号