首页> 外国专利> Data access control method and system using attribute-based password for secure and efficient data sharing in cloud environment

Data access control method and system using attribute-based password for secure and efficient data sharing in cloud environment

机译:数据访问控制方法和系统使用基于属性的密码,用于云环境中的安全和有效的数据共享

摘要

The present invention discloses a data access control method and system using attribute-based encryption for safe and efficient data sharing in a cloud environment. In a data access control method using attribute-based encryption for safe and efficient data sharing in a cloud environment according to an aspect of the present invention, a TTP server manages user information registered by a user, and includes a public key and a master key and generating a secret key; transmitting, by the TTP server, the generated public key to a data owner unit and a user unit, respectively, and transmitting the master key and the private key to the user unit; encrypting, by the data owner unit, the data transmitted from the TTP server and uploading the data to the cloud storage by creating an access structure based on the information received from the TTP server and the attribute of the user unit capable of accessing its own data in the cloud environment; generating, by the user unit, a token for accessing the cloud using the information received from the TTP server and accessing the cloud storage; When the AC server compares and matches the attribute of the access structure specified in the cipher text to be accessed by the user unit and the user attribute, partial decryption proceeds to generate a key element necessary for final decryption and transmits it to the user unit together with the cipher text; and blocking, by the AC server, from accessing the cloud storage with information previously owned by the withdrawn user by canceling the attribute of the withdrawn user; The AC server is characterized in that the size of the cipher text is not proportional to the number of attributes and outputs a predetermined size.
机译:本发明公开了一种使用基于属性的加密的数据访问控制方法和系统,以便在云环境中安全和有效的数据共享。在根据本发明的一个方面的基于属性的加密在云环境中使用基于属性的加密的数据访问控制方法,TTP服务器管理由用户登记的用户信息,并包括公钥和主密钥并产生秘密密钥;通过TTP服务器将生成的公钥发送到数据所有者单元和用户单元,并将主密钥和私钥发送到用户单元;通过数据所有者单元加密从TTP服务器发送的数据并通过基于从TTP服务器接收的信息和能够访问其自己的数据的用户单元的属性来创建访问结构来将数据上载到云存储器在云环境中;由用户单元生成用于使用从TTP服务器接收的信息访问云并访问云存储的令牌;当AC服务器比较和匹配由用户单元和用户属性访问的密码文本中指定的访问结构的属性时,部分解密继续以生成最终解密所需的密钥元件,并将其发送到用户单元使用密文;通过取消撤出用户的属性,通过AC服务器通过撤出用户之前拥有的信息来阻止访问云存储; AC服务器的特征在于,密文的大小与属性的数量没有成比例,并输出预定大小。

著录项

  • 公开/公告号KR102298266B1

    专利类型

  • 公开/公告日2021-09-06

    原文格式PDF

  • 申请/专利权人 순천향대학교 산학협력단;

    申请/专利号KR20190145613

  • 发明设计人 황용운;이임영;

    申请日2019-11-14

  • 分类号H04L9/08;H04L29/06;H04L9/32;

  • 国家 KR

  • 入库时间 2022-08-24 20:51:39

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号