首页> 外文会议>Cryptographers' track at the RSA conference >Fully Secure Attribute-Based Systems with Short Ciphertexts/Signatures and Threshold Access Structures
【24h】

Fully Secure Attribute-Based Systems with Short Ciphertexts/Signatures and Threshold Access Structures

机译:具有短密文/签名和阈值访问结构的完全安全的基于属性的系统

获取原文

摘要

It has been an appealing but challenging goal in research on attribute-based encryption (ABE) and attribute-based signatures (ABS) to design a secure scheme with short ciphertexts and signatures, respectively. While recent results show that some promising progress has been made in this direction, they do not always offer a satisfactory level of security, i.e. achieving selective rather than full security. In this paper, we aim to achieve both full security and short cipher-texts/signatures for threshold access structures in the ABE/ABS setting. Towards achieving this goal, we propose generic property-preserving conversions from inner-product systems to attribute-based systems. We first give concrete constructions of fully secure IPE/IPS with constant-size ciphertexts/signatures in the composite order groups. By making use of our IPE/IPS schemes as building blocks, we then present concrete constructions of fully secure key-policy ABE (KP-ABE) and ciphertext-policy ABE (CP-ABE) with constant-size ciphertexts, and a fully secure ABS with constant-size signatures with perfect privacy for threshold access structures. These results give rise to the first constructions satisfying the aforementioned requirements. Our schemes reduce the number of pairing evaluations to a constant, a very attractive property for practical attribute-based systems. Furthermore, we show that our schemes can be extended to support large attribute universes and more expressive access structures.
机译:在基于属性的加密(ABE)和基于属性的签名(ABS)的研究中,设计一种分别具有短密文和签名的安全方案一直是一个吸引人但具有挑战性的目标。尽管最近的结果表明在这个方向上已经取得了一些可喜的进展,但它们并不总是提供令人满意的安全级别,即实现选择性而不是完全的安全性。在本文中,我们的目标是在ABE / ABS设置中实现阈值访问结构的完整安全性和短密文/签名。为了实现此目标,我们提出了从内部产品系统到基于属性的系统的通用属性保留转换。我们首先给出在复合顺序组中具有恒定大小的密文/签名的完全安全的IPE / IPS的具体构造。通过将我们的IPE / IPS方案用作构建块,然后我们提出具有恒定大小密文的完全安全的密钥策略ABE(KP-ABE)和密文策略ABE(CP-ABE)的具体结构,以及一个完全安全的具有恒定大小签名的ABS,具有针对阈值访问结构的完美隐私。这些结果导致满足上述要求的第一构造。我们的方案将配对评估的数量减少到一个常数,这对于基于属性的实际系统是非常有吸引力的。此外,我们证明了我们的方案可以扩展为支持大型属性Universe和更具表达性的访问结构。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号