摘要

The term big data refers to the massive amounts of digital information, which can be efficiently stored and processed on a cloud computing platform. However, security and privacy issues are magnified by high volume, variety, and velocity of big data. Ciphertext-Policy Attribute-Based Encryption (CP-ABE) is a promising cryptographic primitive for the security of cloud storage system and can bring together data leakage prevention and fine-grained access control. The existing researches on applying CP-ABE to cloud storage system mainly focus on the efficiency of decryption and user revocation, and some special improvements have been done to alleviate the workloads of data owners and users, such as proxy re-encryption and decryption outsourcing. However, the complexity of user revocation is still linearly correlated with the number of ciphertexts and users in the system. Therefore, in a big data environment with mass data and users, user revocation is still a challenge. In this paper, we propose a distributed, scalable and fine-grained access control scheme with efficient decryption and user revocation for the big data in clouds. We also present a new multi-authority CP-ABE scheme for supporting the efficient decryption outsourcing, user revocation and dynamically joining and exiting of attribute authorities. In our scheme, user revocation is only related to revoked user and can achieve both forward security and backward security. The system analysis shows that our scheme is efficient and provably secure in the generic group model.
机译:大数据一词是指可以在云计算平台上有效存储和处理的大量数字信息。但是,安全性和隐私问题因大数据的大容量,多样性和快速性而被放大。基于密文策略的基于属性的加密(CP-ABE)是一种有前途的加密原语,可确保云存储系统的安全,并且可以将防止数据泄漏和细粒度的访问控制结合在一起。现有的将CP-ABE应用于云存储系统的研究主要集中在解密和用户撤销的效率上,并且已经进行了一些特殊的改进以减轻数据所有者和用户的工作量,例如代理重新加密和解密外包。但是,用户吊销的复杂性仍然与系统中密文和用户的数量线性相关。因此,在具有海量数据和用户的大数据环境中,用户撤消仍然是一个挑战。在本文中,我们针对云中的大数据提出了一种具有高效解密和用户撤销功能的分布式,可扩展且细粒度的访问控制方案。我们还提出了一种新的多权限CP-ABE方案,用于支持有效的解密外包,用户撤销以及属性机构的动态加入和退出。在我们的方案中,用户撤销仅与被撤销的用户有关,并且可以实现前向安全性和后向安全性。系统分析表明,我们的方案在通用组模型中是有效且可证明的安全性。

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号