首页> 外文期刊>IEEE transactions on information forensics and security >Attribute-Based Data Sharing Scheme Revisited in Cloud Computing
【24h】

Attribute-Based Data Sharing Scheme Revisited in Cloud Computing

机译:云计算中基于属性的数据共享方案

获取原文
获取原文并翻译 | 示例
           

摘要

Ciphertext-policy attribute-based encryption (CP-ABE) is a very promising encryption technique for secure data sharing in the context of cloud computing. Data owner is allowed to fully control the access policy associated with his data which to be shared. However, CP-ABE is limited to a potential security risk that is known as key escrow problem, whereby the secret keys of users have to be issued by a trusted key authority. Besides, most of the existing CP-ABE schemes cannot support attribute with arbitrary state. In this paper, we revisit attribute-based data sharing scheme in order to solve the key escrow issue but also improve the expressiveness of attribute, so that the resulting scheme is more friendly to cloud computing applications. We propose an improved two-party key issuing protocol that can guarantee that neither key authority nor cloud service provider can compromise the whole secret key of a user individually. Moreover, we introduce the concept of attribute with weight, being provided to enhance the expression of attribute, which can not only extend the expression from binary to arbitrary state, but also lighten the complexity of access policy. Therefore, both storage cost and encryption complexity for a ciphertext are relieved. The performance analysis and the security proof show that the proposed scheme is able to achieve efficient and secure data sharing in cloud computing.
机译:基于密文策略的基于属性的加密(CP-ABE)是一种非常有前途的加密技术,用于在云计算环境中实现安全的数据共享。允许数据所有者完全控制与其要共享的数据相关联的访问策略。但是,CP-ABE受到潜在的安全风险(称为密钥托管问题)的限制,因此,用户的秘密密钥必须由受信任的密钥颁发机构颁发。此外,大多数现有的CP-ABE方案不能支持具有任意状态的属性。在本文中,我们重新审视了基于属性的数据共享方案,以解决关键的托管问题,同时也提高了属性的可表达性,从而使该方案对云计算应用程序更加友好。我们提出了一种改进的两方密钥发布协议,该协议可以保证密钥授权机构和云服务提供商都不能单独破坏用户的整个密钥。此外,我们引入了具有权重的属性的概念,以增强属性的表达,它不仅可以将表达从二进制状态扩展到任意状态,而且可以减轻访问策略的复杂性。因此,减轻了密文的存储成本和加密复杂度。性能分析和安全证明表明,该方案能够在云计算中实现高效,安全的数据共享。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号