首页> 外文会议>2011 IEEE World Congress on Services >A Privacy Preserving Selective Authorization Enforcement Approach in Daas
【24h】

A Privacy Preserving Selective Authorization Enforcement Approach in Daas

机译:Daas中的一种隐私保护选择性授权执行方法

获取原文

摘要

Database as a Service(DaaS) is a practical and useful paradigm, in which the Database Service Provider(DSP) hosts the delegated database generated from the Source DB of Data Owner(DO). Due to the untrusted DSP, most of the proposed approaches were concentrated on using encryption to guarantee the privacy of delegated database and using partition based index to speed up the query. However, few papers were proposed to guarantee the privacy of delegated access control policies. Therefore in order to improve the usability of delegated database and guarantee the privacy of delegated access control policies, a critical problem to be addressed in DaaS is to make the DSP enforce the delegated selective authorization policies correctly, but know nothing about the privacy of users or the privacy of delegated authorization policies. In this paper, we present a privacy preserving selective authorization enforcement approach to resolve the critical problem above. By using selective encryption, Pedersen commitment and access control policy polynomial, the privacy of delegated access control policies and the privacy of users can be efficiently guaranteed. Finally we analyze the security properties of our approach from different aspects.
机译:数据库即服务(DaaS)是一种实用且有用的范例,其中数据库服务提供者(DSP)托管从数据所有者(DO)的源数据库生成的委托数据库。由于DSP的不可信性,大多数提出的方法都集中在使用加密来保证委托数据库的私密性以及使用基于分区的索引来加快查询的速度上。但是,很少有人提出论文来保证委派访问控制策略的私密性。因此,为了提高委派数据库的可用性并确保委派访问控制策略的私密性,DaaS中要解决的一个关键问题是使DSP正确执行委派的选择性授权策略,而对用户或用户的隐私一无所知。委托授权策略的隐私。在本文中,我们提出了一种保护隐私的选择性授权实施方法,以解决上述关键问题。通过使用选择性加密,Pedersen承诺和访问控制策略多项式,可以有效地保证委派的访问控制策略的私密性和用户的私密性。最后,我们从不同方面分析了我们方法的安全性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号