首页> 外文期刊>IEICE Transactions on Information and Systems >MV-OPES: Multivalued-Order Preserving Encryption Scheme: A Novel Scheme for Encrypting Integer Value to Many Different Values
【24h】

MV-OPES: Multivalued-Order Preserving Encryption Scheme: A Novel Scheme for Encrypting Integer Value to Many Different Values

机译:MV-OPES:多值顺序保留加密方案:一种将整数值加密为许多不同值的新颖方案

获取原文
获取原文并翻译 | 示例
       

摘要

Encryption can provide strong security for sensitive data against inside and outside attacks. This is especially true in the "Database as Service" model, where confidentiality and privacy are important issues for the client. In fact, existing encryption approaches are vulnerable to a statistical attack because each value is encrypted to another fixed value. This paper presents a novel database encryption scheme called MV-OPES (Multivalued-Order Preserving Encryption Scheme), which allows privacy-preserving queries over encrypted databases with an improved security level. Our idea is to encrypt a value to different multiple values to prevent statistical attacks. At the same time, MV-OPES preserves the order of the integer values to allow comparison operations to be directly applied on encrypted data. Using calculated distance (range), we propose a novel method that allows a join query between relations based on inequality over encrypted values. We also present techniques to offload query execution load to a database server as much as possible, thereby making a better use of server resources in a database outsourcing environment. Our scheme can easily be integrated with current database systems as it is designed to work with existing indexing structures. It is robust against statistical attack and the estimation of true values. MV-OPES experiments show that security for sensitive data can be achieved with reasonable overhead, establishing the practicability of the scheme.
机译:加密可以为敏感数据提供强大的安全性,以防止内部和外部攻击。在“数据库即服务”模型中尤其如此,在该模型中,机密性和隐私性是客户端的重要问题。实际上,现有的加密方法很容易受到统计攻击,因为每个值都被加密为另一个固定值。本文提出了一种新颖的数据库加密方案,称为MV-OPES(多值顺序保留加密方案),该方案允许在加密数据库上以更高的安全级别保存隐私查询。我们的想法是将一个值加密为多个不同的值,以防止统计攻击。同时,MV-OPES保留整数值的顺序,以允许将比较操作直接应用于加密数据。使用计算出的距离(范围),我们提出了一种新颖的方法,该方法允许基于不等式对加密值进行关系之间的联接查询。我们还提出了将查询执行负载尽可能多地转移到数据库服务器的技术,从而更好地利用了数据库外包环境中的服务器资源。我们的方案可以轻松地与当前的数据库系统集成,因为它可以与现有的索引结构一起使用。它对于统计攻击和真实值的估计是强大的。 MV-OPES实验表明,可以通过合理的开销来实现敏感数据的安全性,从而确立了该方案的实用性。

著录项

  • 来源
    《IEICE Transactions on Information and Systems》 |2010年第9期|P.2520-2533|共14页
  • 作者单位

    Graduate School of Systems and Information Engineering, University of Tsukuba, Tsukuba-shi, 305-8573 Japan;

    rnGraduate School of Systems and Information Engineering, University of Tsukuba, Tsukuba-shi, 305-8573 Japan Center for Computational Sciences, University of Tsukuba, Tsukuba-shi, 305-8577 Japan;

    rnGraduate School of Systems and Information Engineering, University of Tsukuba, Tsukuba-shi, 305-8573 Japan Center for Computational Sciences, University of Tsukuba, Tsukuba-shi, 305-8577 Japan;

  • 收录信息 美国《科学引文索引》(SCI);美国《工程索引》(EI);
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    encryption; order-preserving; database outsourcing; statistical attack;

    机译:加密;保持订单;数据库外包;统计攻击;

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号