首页> 外文会议>IEEE Symposium on Security and Privacy >An Ideal-Security Protocol for Order-Preserving Encoding
【24h】

An Ideal-Security Protocol for Order-Preserving Encoding

机译:保序编码的理想安全协议

获取原文

摘要

Order-preserving encryption -- an encryption scheme where the sort order of ciphertexts matches the sort order of the corresponding plaintexts -- allows databases and other applications to process queries involving order over encrypted data efficiently. The ideal security guarantee for order-preserving encryption put forth in the literature is for the ciphertexts to reveal no information about the plaintexts besides order. Even though more than a dozen schemes were proposed, all these schemes leak more information than order. This paper presents the first order-preserving scheme that achieves ideal security. Our main technique is mutable ciphertexts, meaning that over time, the ciphertexts for a small number of plaintext values change, and we prove that mutable ciphertexts are needed for ideal security. Our resulting protocol is interactive, with a small number of interactions. We implemented our scheme and evaluated it on microbenchmarks and in the context of an encrypted MySQL database application. We show that in addition to providing ideal security, our scheme achieves 1 -- 2 orders of magnitude higher performance than the state-of-the-art order-preserving encryption scheme, which is less secure than our scheme.
机译:保留顺序的加密(一种加密方案,其中密文的排序顺序与相应的纯文本的排序顺序相匹配),允许数据库和其他应用程序有效地处理涉及加密数据顺序的查询。文献中提出的用于保持顺序的加密的理想安全保证是,密文除顺序外不透露任何与明文有关的信息。即使提出了十多个方案,所有这些方案泄漏的信息多于命令。本文提出了实现理想安全性的第一个订单保留方案。我们的主要技术是可变密文,这意味着随着时间的推移,少量明文值的密文会发生变化,并且我们证明了可变密文对于理想的安全性是必需的。我们得到的协议是交互式的,交互很少。我们实施了我们的方案,并在微基准和加密的MySQL数据库应用程序的上下文中对其进行了评估。我们表明,除了提供理想的安全性之外,我们的方案还比最先进的顺序保留加密方案实现了1-2个数量级的性能提高,后者比我们的方案安全性低。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号