首页> 外文会议>Computer security-ESORICS 2009 >Attribute-Sets: A Practically Motivated Enhancement to Attribute-Based Encryption
【24h】

Attribute-Sets: A Practically Motivated Enhancement to Attribute-Based Encryption

机译:属性集:对基于属性的加密的一种实用动机增强

获取原文
获取原文并翻译 | 示例

摘要

In distributed systems users need to share sensitive objects with others based on the recipients' ability to satisfy a policy. Attribute-Based Encryption (ABE) is a new paradigm where such policies are specified and cryptographically enforced in the encryption algorithm itself. Ciphertext-Policy ABE (CP-ABE) is a form of ABE where policies are associated with encrypted data and attributes are associated with keys. In this work we focus on improving the flexibility of representing user attributes in keys. Specifically, we propose Ciphertext Policy Attribute Set Based Encryption (CP-ASBE) - a new form of CP-ABE - which, unlike existing CP-ABE schemes that represent user attributes as a monolithic set in keys, organizes user attributes into a recursive set based structure and allows users to impose dynamic constraints on how those attributes may be combined to satisfy a policy. We show that the proposed scheme is more versatile and supports many practical scenarios more naturally and efficiently. We provide a prototype implementation of our scheme and evaluate its performance overhead.
机译:在分布式系统中,用户需要根据收件人满足策略的能力与他人共享敏感对象。基于属性的加密(ABE)是一种新的范例,其中指定了此类策略,并在加密算法本身中以密码方式实施了这种策略。密文策略ABE(CP-ABE)是ABE的一种形式,其中策略与加密数据相关联,而属性与密钥相关联。在这项工作中,我们专注于提高在键中表示用户属性的灵活性。具体来说,我们提出了基于密文策略策略属性集的加密(CP-ASBE)-CP-ABE的一种新形式-与现有的CP-ABE方案不同,该方案将用户属性表示为密钥中的整体集,将用户属性组织为递归集基于结构的结构,并允许用户对如何组合这些属性来满足策略施加动态约束。我们表明,提出的方案更具通用性,并且更自然,更有效地支持许多实际方案。我们提供了该方案的原型实现,并评估了其性能开销。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号