首页> 外文会议>IEEE Conference on Computer Communications >Strongly Secure and Efficient Range Queries in Cloud Databases under Multiple Keys
【24h】

Strongly Secure and Efficient Range Queries in Cloud Databases under Multiple Keys

机译:多键下云数据库中的强安全有效范围查询

获取原文

摘要

Cloud database provides an advantageous platform for outsourcing of database service. To protect data confidentiality from an untrusted cloud, the original database is often encrypted and then uploaded to the cloud. However, in order to support functional queries, existing secure databases require users to encrypt their data under the same public/symmetric key, which restricts the usage scenarios since users do not really trust each other in practice. Imagine a scenario where a user uploaded his/her own encrypted data to the cloud database and another user wants to execute private range queries on this data. This scenario occurs in many cases of collaborative statistical analysis where the data provider and analyst are different entities. Then either the data provider must reveal its encryption key or the analyst must reveal the private queries. In this paper, we overcome this restriction for secure range queries by enabling query executions on the multi-key encryption data. We propose a secure cloud database supporting range queries under multiple keys, in which all users could preserve the confidentiality of their own different keys, and do not have to share them with each other. At a higher level, our system is constructed on a two-cloud architecture and a novel distributed two-trapdoor public key cryptosystem. We prove that the proposed scheme achieves the goal of a secure query without leaking data privacy, query privacy, and data access patterns. Finally, we use extensive experiments over a real-world dataset on a commercial cloud platform to verify the efficacy of our proposed scheme.
机译:云数据库为数据库服务外包提供了一个有利的平台。为了保护不受信任的云造成的数据机密性,通常会对原始数据库进行加密,然后将其上传到云中。但是,为了支持功能查询,现有的安全数据库要求用户在相同的公共/对称密钥下加密其数据,这限制了使用场景,因为用户实际上并不真正相互信任。想象一个场景,一个用户将自己的加密数据上传到云数据库,而另一个用户想要对该数据执行私有范围查询。在数据提供者和分析者是不同实体的协作统计分析的许多情况下,都会发生这种情况。然后,数据提供者必须显示其加密密钥,或者分析人员必须显示私有查询。在本文中,我们通过对多密钥加密数据执行查询来克服对安全范围查询的这一限制。我们提出了一个安全的云数据库,该数据库支持在多个密钥下进行范围查询,所有用户都可以保留自己不同密钥的机密性,而不必彼此共享。在更高的层次上,我们的系统是基于两云架构和新颖的分布式两活门公共密钥密码系统构建的。我们证明了该方案实现了安全查询的目标,而不会泄漏数据隐私,查询隐私和数据访问模式。最后,我们在商业云平台上对真实数据集进行了广泛的实验,以验证我们提出的方案的有效性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号