基于密文规则的属性基加密技术的云存储数据共享机制

被引:8
作者
刘孟占
印凯泽
机构
[1] 同济大学计算机科学与技术系
关键词
隐私安全; 云存储; 数据共享; 基于密文规则的属性基加密; 访问控制; 用户撤销;
D O I
暂无
中图分类号
TP309.7 [加密与解密];
学科分类号
081201 ; 0839 ; 1402 ;
摘要
为了在云存储系统中实现细粒度访问权限控制和灵活的用户撤销操作,提出一种基于密文规则的属性基加密(CPABE)技术的云存储数据共享机制。该机制通过制定合适的访问结构实现细粒度访问权限控制,每次用户撤销操作仅需修改访问结构,解决了公钥基础设施(PKI)机制中用户撤销操作需要重复执行大量非对称加密操作带来的系统扩展性问题。通过性能和安全分析表明,系统具有良好的扩展性,而且访问权限控制和用户撤销操作不会向云存储服务提供商泄露任何机密数据,达到了保护用户数据隐私安全的目的。
引用
收藏
页码:133 / 135+161 +161
页数:4
相关论文
共 11 条
[1]  
Identity-based encryption from the Weil pairing. Boneh D,Franklin M. Proceeding of Advances in Cryptology-Crypto’2001 . 2001
[2]  
SiRiUS:securing remote untrusted storage. GOH E-J,SHACHAM H,MODADUGU N,et al. Proceedings of the 2003 Symposium on Network and Distributed Systems Security . 2003
[3]  
CRUST: cryptographic remote untrusted storage without public keys[J] . Erel Geron,Avishai Wool. &nbspInternational Journal of Information Security . 2009 (5)
[4]  
SAPDS: self-healing attribute-based privacy aware data sharing in cloud[J] . Zeeshan Pervez,Asad Khattak,Sungyoung Lee,Young-Koo Lee. &nbspThe Journal of Supercomputing . 2012 (1)
[5]   属性基加密机制 [J].
苏金树 ;
曹丹 ;
王小峰 ;
孙一品 ;
胡乔林 .
软件学报, 2011, 22 (06) :1299-1315
[6]  
Ciphertext-policy attribute-based encryption. Bethencourt J,Sahai A,Waters B. Proceedings of the2007IEEE Symposium on Security and Privacy . 2007
[7]  
Lazy Revocation in Cryptographic File Systems. Michael Backes, Christian Cachin, Alina Oprea. Proceedings of the Third IEEE International Security in Storage Workshop . 2005
[8]  
Fuzzy identity-based encryption. Sahai A,Waters B. Advances in cryptology-eurocrypt 2005 . 2005
[9]  
Key regression:enabling efficient key distribution for secure distributed storage. FU K,KAMARA S,KOHNO T. Proceedings of the 2006 Symposium on Network and Distributed Systems Security . 2006
[10]  
Patient controlled encryption:ensuring privacy of electronic medical records. BENALOH J,CHASE M,HORVITZ E,et al. Proceedings of the 2009 ACM Workshop on Cloud Computing Security . 2009