基于访问代理的数据加密及搜索技术研究  被引量:10

Research on technology of data encryption and search based on access broker

在线阅读下载全文

作  者:王国峰 刘川意 韩培义 潘鹤中 方滨兴 WANG Guofeng;LIU Chuanyi;HAN Peiyi;PAN Hezhong;FANG Binxing(College of Cyberspace Security,Beijing University of Posts and Telecommunications,Beijing 100876,China;School of Computer Science and Technology,Harbin Institute of Technology(Shenzhen),Shenzhen 518055,China)

机构地区:[1]北京邮电大学网络空间安全学院,北京100876 [2]哈尔滨工业大学(深圳)计算机科学与技术学院,广东深圳518055

出  处:《通信学报》2018年第7期1-14,共14页Journal on Communications

基  金:国家高技术研究发展计划("863"计划)基金资助项目(No.2015AA016001);国家重点研发计划基金资助项目(No.2017YFB0801801);国家科技重大专项基金资助项目(No.BB29100002);国家科研发展咨询基金资助项目(No.BA25500031;No.BB25500019)~~

摘  要:针对云应用程序数据机密性问题,提出一种访问代理执行的密文搜索方案。此方案不需要修改云应用程序且不改变用户使用习惯,具有很强的可适用性。首先从功能性、效率性和安全性等方面分析了基于访问代理的密文搜索方案,并指出其所面临的关键问题,包括代理间索引和密文的安全分享,并设计解决方案。实验结果表明,此方案可有效保护云服务用户数据,实现多种搜索功能,且具有很高的效率性和安全性。Broker executed searchable encryption(BESE)scheme was proposed for the confidentiality issues of cloud application data.The scheme did not need to modify the cloud application or user habits,thus had strong applicability.Firstly,systematic and quantitative analysis on BESE scheme was conducted in terms of query expressiveness,performance and security.Then,the main challenges of BESE scheme including securely sharing index and encrypted data between brokers were pointed out,and corresponding schemes were proposed to address the above challenges.The experimental results show that the BESE scheme can effectively protect the user data in the cloud,achieve a variety of search functions,and has high efficiency and security.

关 键 词:云安全 数据保护 密文搜索 密文分享 

分 类 号:TP302[自动化与计算机技术—计算机系统结构]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象