首页> 外文会议>31st International Conference on Distributed Computing Systems >Authorized Private Keyword Search over Encrypted Data in Cloud Computing
【24h】

Authorized Private Keyword Search over Encrypted Data in Cloud Computing

机译:在云计算中对加密数据进行授权的私有关键字搜索

获取原文
获取外文期刊封面目录资料

摘要

In cloud computing, clients usually outsource their data to the cloud storage servers to reduce the management costs. While those data may contain sensitive personal information, the cloud servers cannot be fully trusted in protecting them. Encryption is a promising way to protect the confidentiality of the outsourced data, but it also introduces much difficulty to performing effective searches over encrypted information. Most existing works do not support efficient searches with complex query conditions, and care needs to be taken when using them because of the potential privacy leakages about the data owners to the data users or the cloud server. In this paper, using on line Personal Health Record (PHR) as a case study, we first show the necessity of search capability authorization that reduces the privacy exposure resulting from the search results, and establish a scalable framework for Authorized Private Keyword Search (APKS) over encrypted cloud data. We then propose two novel solutions for APKS based on a recent cryptographic primitive, Hierarchical Predicate Encryption (HPE). Our solutions enable efficient multi-dimensional keyword searches with range query, allow delegation and revocation of search capabilities. Moreover, we enhance the query privacy which hides users' query keywords against the server. We implement our scheme on a modern workstation, and experimental results demonstrate its suitability for practical usage.
机译:在云计算中,客户端通常将其数据外包给云存储服务器以降低管理成本。尽管这些数据可能包含敏感的个人信息,但是在保护它们方面不能完全信任云服务器。加密是一种保护外包数据机密性的有前途的方法,但是它也给有效地执行对加密信息的搜索带来了很大的困难。大多数现有作品不支持在复杂查询条件下进行有效搜索,并且在使用它们时要格外小心,因为有关数据所有者的潜在隐私泄露给数据用户或云服务器。在本文中,我们以在线个人健康记录(PHR)为例,首先说明了搜索功能授权的必要性,以减少搜索结果带来的隐私风险,并建立可扩展的框架,用于授权私人关键字搜索(APKS) )在加密的云数据上。然后,我们基于最新的加密原语分层谓词加密(HPE),为APKS提出了两种新颖的解决方案。我们的解决方案可通过范围查询实现高效的多维关键字搜索,并允许委派和撤销搜索功能。此外,我们增强了查询隐私性,从而将用户的查询关键字隐藏在服务器上。我们在现代化的工作站上实施该方案,实验结果证明了该方案在实际应用中的适用性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号