面向云存储的高效动态密文访问控制方法

被引:77
作者
洪澄
张敏
冯登国
机构
[1] 中国科学院软件研究所信息安全国家重点实验室
关键词
云存储; 云计算; 密文访问控制; 基于属性的加密; 代理重加密;
D O I
暂无
中图分类号
TP333 [存贮器];
学科分类号
081201 ;
摘要
针对云存储中敏感数据的机密性保护问题,在基于属性的加密基础上提出了一种密文访问控制方法HCRE。其思想是设计一种基于秘密共享方案的算法,将访问控制策略变更导致的重加密过程转移到云端执行,从而降低权限管理的复杂度,实现高效的动态密文访问控制。实验分析表明HCRE显著降低了权限管理的时间代价,而且没有向云端泄露额外的信息,保持了数据机密性。
引用
收藏
页码:125 / 132
页数:8
相关论文
共 10 条
[1]  
Attribute-based encryptionfor fine-grained access control of encrypted data. GOYAL V,PANDEY O,SAHAI A,et al. Proceedings ofthe 13th ACM Conference on Computer and Communications Secu-rity . 2006
[2]  
"Ciphertext-policy attribute-based encryption". John Bethencourt,Amit Sahai,Brent Waters. IEEE Symposium on Security and Privacy . 2007
[3]  
"Achieving Secure,Scalable, and Fine-grained Data Access Control in Cloud Computing,". S.Yu,C.Wang,K.Ren,W.Lou. Proceedings IEEE INFOCOM . 2010
[4]  
Advanced crypto soft-ware collection:the cpabe toolkit. BETHENCOURT J,SAHAI A,WATERS B. http://acsc.cs.utexas.edu/cpabe/ .
[5]  
AES proposal:rijndael,technical report,national institute of standards and technology. DAEMEN J,RIJMEN V. http://csrc.nist.gov/encryption/aes/round2/r2algs.htm .
[6]  
An encryption scheme for asecure policy updating. LUAN I,MUHAMMAD A,PETKOVIC. Proceedings of International Conference onSecurity and Cryptography (SECRYPT 2010) . 2010
[7]  
Attribute-Based Encryption with Non-Monotonic Access Structures. R Ostrovsky,B Waters. Proceedings of the 14th ACM conference on Computer . 2007
[8]  
Combining attribute-based and access systems. Malek B,Miri A. Proc.IEEE CSE 2009,12th IEEEInt’l Conf.on Computational Science and Engineering . 2009
[9]  
AB-ACCS:a cryptographic accesscontrol scheme for cloud storage. HONG C,ZHANG M,FENG D G. Journal of Computer ResearchAnd Development . 2010
[10]  
Permission manage-ment system:permission as a service in cloud computing. ECHEVERRIA V,LIEBROCK L M,SHIN D. Pro-ceedings of the 1st IEEE International Workshop on Emerging Appli-cations for Cloud Computing . 2010