首页> 外文会议> >Hierarchical Conditional Proxy Re-Encryption: A New Insight of Fine-Grained Secure Data Sharing
【24h】

Hierarchical Conditional Proxy Re-Encryption: A New Insight of Fine-Grained Secure Data Sharing

机译:分层条件代理重新加密:细粒度安全数据共享的新见解

获取原文

摘要

Outsource local data to remote cloud has become prevalence for Internet users to date. While being unable to "handle" (outsourced) data at hand, Internet users may concern about the confidentiality of data but also further operations over remote data. This paper deals with the case where a secure data sharing mechanism is needed when data is encrypted and stored in remote cloud. Proxy re-encryption (PRE) is a promising cryptographic tool for secure data sharing. It allows a "honest-but-curious" third party (e.g., cloud server), which we call "proxy", to convert all ciphertexts encrypted for a delegator into those intended for a del-egatee. The delegatee can further gain access to the plaintexts with private key, while the proxy learns nothing about the underlying plaintexts. Being regarded as a general extension of PRE, conditional PRE supports a finegrained level of data sharing. In particular, condition is embedded into ciphertext that offers a chance for the delegator to generate conditional re-encryption key to control with which ciphertexts he wants to share. In this paper, for the first time, we introduce a new notion, called "hierarchical conditional" PRE. The new notion allows re-encryption rights to be "re-delegated" for "low-level" encrypted data. We propose the seminal scheme satisfying the notion in the context of identity-based encryption and further, prove it secure against chosen-ciphertext security.
机译:迄今为止,将本地数据外包到远程云已经成为Internet用户的盛行。 Internet用户虽然无法“处理”(外包的)手头的数据,但可能会担心数据的机密性,还会担心对远程数据的进一步操作。本文讨论了在对数据进行加密并将其存储在远程云中时需要安全的数据共享机制的情况。代理重新加密(PRE)是用于安全数据共享的有前途的加密工具。它允许“诚实但好奇”的第三方(例如云服务器)(我们称为“代理”)将为委托人加密的所有密文转换为用于del-egatee的密文。委托者可以进一步获得具有私钥的纯文本的访问权限,而代理则不了解有关基础纯文本的任何信息。有条件的PRE被认为是PRE的一般扩展,它支持细粒度的数据共享。特别地,条件被嵌入到密文中,这为委托人提供了机会来生成条件重新加密密钥,以控制他希望与哪些密文共享。在本文中,我们首次引入了一个新概念,称为“分层条件” PRE。新概念允许对“低级”加密数据“重新委派”重新加密权限。我们提出了在基于身份的加密上下文中满足该概念的开创性方案,并进一步证明了其对于选择密文安全性的安全性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号