一种支持属性撤销的ABE高效数据共享方案  

An Efficient Attribute Based Encryption Data Sharing Scheme of Supporting Attribute Revocation

在线阅读下载全文

作  者:韦明伦 吕鑫[1] 徐淑芳[1] 王龙宝[1] 李水艳[1] 平萍[1] 马鸿旭[1] 刘璇[1] 

机构地区:[1]河海大学计算机与信息学院,江苏南京211100

出  处:《计算机与现代化》2016年第2期66-71,共6页Computer and Modernization

基  金:国家自然科学基金面上项目(61272543);国家科技支撑计划(2013BAB06B04);中国华能集团公司总部科技项目(HNKJ13-H17-04);江苏省自然科学基金资助项目(BK20130852);江苏省博士后科研资助计划(1401001C)

摘  要:随着云计算的流行,越来越多的敏感数据存储在云端并通过Internet实现数据共享,与此同时也带来了很多安全问题。针对这一问题,提出一种基于CP-ABE的高效数据共享方案。该方案是一种非常适用于外包数据的细粒度访问控制加密方案,可用于解决云存储中的一些安全问题。采用只有与门的访问结构,以属性作为公钥,能够表示属性在与门中正、非和无关紧要3种情况,将密文与用户私钥属性相关联,支持代理重加密技术,能够灵活表示访问控制策略的同时减轻授权机构的负担,并能够实现用户属性的即时撤销和高效解密。With the popular of cloud computing, more and more sensitive data are stored on cloud and it can easily be shared over the Internet. At the same time, the problems of security come. To counter this problem, this paper proposes an effectual way for data shared based on CP-ABE. This encryption scheme is very applicable to fine-grained access controls of outsourced database, and can be used to solve some safety problems of cloud usage. In this paper, we use the access structure with only AND gates and make attributes as public key. Every attribute can express three different situations, including positive, negative, and irrelevant, in AND gate. In particular, It associates ciphertext with user' s private key properties, supporting proxy re-encryption. Based on the above, this proposed scheme can also have high flexibility in representing access control policy and reduce the burden of authorized agency. In addition, it implemented instant revoking of user properties and efficient decryption.

关 键 词:基于属性的加密 访问控制 密钥撤销 

分 类 号:TP309[自动化与计算机技术—计算机系统结构]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象