首页> 外文OA文献 >A secure and efficient ciphertext-policy attribute-based proxy re-encryption for cloud data sharing
【2h】

A secure and efficient ciphertext-policy attribute-based proxy re-encryption for cloud data sharing

机译:用于云数据共享的安全,高效的基于密文策略的基于属性的代理重新加密

摘要

Proxy Re-Encryption (PRE) is a useful cryptographic primitive that allows a data owner to delegate the access rights of the encrypted data stored on a cloud storage system to others without leaking the information of the data to the honest-but-curious cloud server. It provides effectiveness for data sharing as the data owner even using limited resource devices (e.g. mobile devices) can offload most of the computational operations to the cloud. Since its introduction many variants of PRE have been proposed. A Ciphertext-Policy Attribute-Based Proxy Re-Encryption (CP-ABPRE), which is regarded as a general notion for PRE, employs the PRE technology in the attribute-based encryption cryptographic setting such that the proxy is allowed to convert an encryption under an access policy to another encryption under a new access policy. CP-ABPRE is applicable to many network applications, such as network data sharing. The existing CP-ABPRE systems, however, leave how to achieve adaptive CCA security as an interesting open problem. This paper, for the first time, proposes a new CP-ABPRE to tackle the problem by integrating the dual system encryption technology with selective proof technique. Although the new scheme supporting any monotonic access structures is built in the composite order bilinear group, it is proven adaptively CCA secure in the standard model without jeopardizing the expressiveness of access policy. We further make an improvement for the scheme to achieve more efficiency in the re-encryption key generation and re-encryption phases.
机译:代理重新加密(PRE)是一种有用的加密原语,它使数据所有者可以将存储在云存储系统上的加密数据的访问权限委派给其他人,而无需将数据信息泄漏给诚实但好奇的云服务器。它提供了数据共享的有效性,因为即使使用有限的资源设备(例如移动设备),数据所有者也可以将大多数计算操作卸载到云中。自引入以来,已经提出了PRE的许多变体。被视为PRE的通用概念的基于密文策略的基于属性的代理重新加密(CP-ABPRE)在基于属性的加密密码设置中采用了PRE技术,从而允许代理在以下情况下转换加密:在新的访问策略下对另一种加密的访问策略。 CP-ABPRE适用于许多网络应用程序,例如网络数据共享。但是,现有的CP-ABPRE系统将如何实现自适应CCA安全性作为一个有趣的开放问题。本文首次提出了一种新的CP-ABPRE,它将双系统加密技术与选择性证明技术相集成来解决该问题。尽管支持任何单调访问结构的新方案是在复合顺序双线性组中构建的,但是在标准模型中已证明自适应CCA是安全的,而不会损害访问策略的表示性。我们进一步对该方案进行了改进,以在重新加密密钥生成和重新加密阶段实现更高的效率。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号