首页 | 本学科首页   官方微博 | 高级检索  
     

云存储环境下无密钥托管可撤销属性基加密方案研究
引用本文:赵志远,朱智强,王建华,孙磊.云存储环境下无密钥托管可撤销属性基加密方案研究[J].电子与信息学报,2018,40(1):1-10.
作者姓名:赵志远  朱智强  王建华  孙磊
作者单位:1.(信息工程大学三院 郑州 450001) ②(郑州信大先进技术研究院 郑州 450001) ③(空军电子技术研究所 北京 100195)
基金项目:国家重点研发计划(2016YFB0501900),国家973计划项目(2013CB338000)
摘    要:属性基加密因其细粒度访问控制在云存储中得到广泛应用。但原始属性基加密方案存在密钥托管和属性撤销问题。为解决上述问题,该文提出一种密文策略的属性基加密方案。该方案中属性权威与中央控制通过安全两方计算技术构建无密钥托管密钥分发协议解决密钥托管问题。通过更新属性版本密钥的方式达到属性级用户撤销,同时通过中央控制可以实现系统级用户撤销。为减少用户解密过程的计算负担,将解密运算过程中复杂对运算外包给云服务商,提高解密效率。该文基于q-Parallel BDHE假设在随机预言机模型下对方案进行了选择访问结构明文攻击的安全性证明。最后从理论和实验两方面对所提方案的效率与功能性进行了分析。实验结果表明所提方案无密钥托管问题,且具有较高系统效率。

关 键 词:云存储    属性基加密    无密钥托管    撤销    解密外包
收稿时间:2017-04-11

Revocable Attribute-based Encryption with Escrow-free in Cloud Storage
ZHAO Zhiyuan,ZHU Zhiqiang,WANG Jianhua,SUN Lei.Revocable Attribute-based Encryption with Escrow-free in Cloud Storage[J].Journal of Electronics & Information Technology,2018,40(1):1-10.
Authors:ZHAO Zhiyuan  ZHU Zhiqiang  WANG Jianhua  SUN Lei
Affiliation:1.(The Third College, Information Engineering University, Zhengzhou 450001, China)
Abstract:Attribute-Based Encryption (ABE) scheme is widely used in cloud storage, which can achieve fine-grained access control. However, the original attribute-based encryption schemes have key escrow and attribute revocation problems. To solve these problems, this paper proposes a ciphertext-based ABE scheme. In the scheme, the key escrow problem could be solved by escrow-free key issuing protocol, which is constructed using the secure two-party computation between the attribute authority and the central controller. By updating the attribute version key, the scheme can achieve attribute-level user revocation. And by central controller, the scheme can achieve system-level user revocation. In order to reduce the user,s computational burden of decryption, this scheme outsources the complicated pair operation to cloud service providers. Based on the assumption of q-Parallel BDHE, the scheme is proved that is the security of the chosen plaintext attack in the random oracle model. Finally, the efficiency and function of this scheme are analyzed theoretically and experimentally. The experimental results show that the proposed scheme does not have key escrow problem and has the higher system efficiency.
Keywords:
点击此处可从《电子与信息学报》浏览原始摘要信息
点击此处可从《电子与信息学报》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号