期刊文献+

面向公有云的支持快速解密的CP-ABE方案 被引量:2

CP-ABE Scheme with Fast Decryption for Public Cloud
在线阅读 下载PDF
导出
摘要 现有的密文策略基于属性加密CP-ABE(ciphertext-policy attribute-based encryption)算法普遍在解密时存在计算量过大、计算时间过长的问题,该问题造成CP-ABE难以应用和实施.针对该问题,将计算外包引入到方案的设计之中,提出一种面向公有云的基于Spark大数据平台的CP-ABE快速解密方案.在该方案中,专门根据CP-ABE的解密特点设计了解密并行化算法;利用并行化算法,将计算量较大的叶子节点解密和根节点解密并行化;之后,将并行化任务交给Spark集群进行处理.计算外包使得绝大多数解密工作由云服务器完成,用户客户端只需进行一次指数运算;而并行化处理则提高了解密速度.安全性分析表明,所提出的方案在一般群模型和随机预言模型下能对抗选择明文攻击. Most of existing CP-ABE(ciphertext-policy attribute-based encryption)schemes have such problems as over-computation and a long calculation time in decryption,which make them difficult to be applied and implemented.To solve this problem,the computation outsourcing is introduced into the design of CP-ABE scheme,a Spark-platform-based CP-ABE scheme with fast decryption for public cloud is proposed.In this scheme,the decryption parallelization algorithm is designed based on the decryption feature of CP-ABE,with which,decryption at both leaf node and root node with over-computation is parallelized.Then,the parallelization tasks are handed over to the Spark cluster.The computation outsourcing makes the most decryption computation done by cloud servers,while the user client only needs an exponential operation,and parallelization greatly improves the speed of decryption.Security analysis shows that the proposed scheme can fight against chosen plaintext attack under both the generic group model and the random oracle model.
作者 邹莉萍 冯朝胜 秦志光 袁丁 罗王平 李敏 ZOU Li-Ping;FENG Chao-Sheng;QIN Zhi-Guang;YUAN Ding;LUO Wang-Ping;LI Min(School of Computer Science,Sichuan Normal University,Chengdu 610101,China;School of Information&Software Engineering,University of Electronic Science and Technology of China,Chengdu 610054,China;Network and Data Security Key Laboratory of Sichuan Province(University of Electronic Science and Technology of China),Chengdu 610054,China)
出处 《软件学报》 EI CSCD 北大核心 2020年第6期1817-1828,共12页 Journal of Software
基金 国家自然科学基金(61373163) 国家科技支撑计划(2014BAH11F02,2014BAH11F01) 四川省科技支撑计划(2015GZ079) 网络与数据安全四川省重点实验室开放课题(NDSMS201606) 四川省教育厅重点项目(17ZA0322)。
关键词 快速解密 解密外包 密文策略基于属性加密 访问树 Spark平台 fast decryption decryption outsourcing CP-ABE access tree Spark platform
  • 相关文献

参考文献3

二级参考文献42

  • 1罗武庭.DJ—2可变矩形电子束曝光机的DMA驱动程序[J].LSI制造与测试,1989,10(4):20-26. 被引量:373
  • 2Organization for the Advancement of Structured Information Standards (OASIS) http://www.oasis-open.org/.
  • 3Distributed Management Task Force (DMTF) http://www.dmtf.org/home.
  • 4Cloud Security Alliance http://www.cloudsecurityalliance.org.
  • 5Crampton J, Martin K, Wild P. On key assignment for hierarchical access control. In: Guttan J, ed, Proc. of the 19th IEEE Computer Security Foundations Workshop--CSFW 2006. Venice: IEEE Computer Society Press, 2006. 5-7.
  • 6Damiani E, De S, Vimercati C, Foresti S, Jajodia S, Paraboschi S, Samarati P. An experimental evaluation of multi-key strategies for data outsourcing. In: Venter HS, Eloff MM, Labuschagne L, Eloff JHP, Solms RV, eds. New Approaches for Security, Privacy and Trust in Complex Environments, Proc. of the IFIP TC-11 22nd Int'l Information Security Conf. Sandton: Springer-Verlag, 2007. 395-396.
  • 7Bethencourt J, Sahai A, Waters B. Ciphertext-Policy attribute-based encryption. In: Shands D, ed. Proc. of the 2007 IEEE Symp. on Security and Privacy. Oakland: IEEE Computer Society, 2007. 321-334. [doi: 10.1109/SP.2007.11].
  • 8Yu S, Ren K, Lou W, Li J. Defending against key abuse attacks in KP-ABE enabled broadcast systems. In: Bao F, ed. Proc. of the 5th Int'l Conf. on Security and Privacy in Communication Networks. Singapore: Springer-Verlag, http://www.linkpdf.com/ ebook-viewer.php?url=http://www.ualr.edu/sxyul/file/SecureCommO9_AFKP_ABE.pdf.
  • 9Ibraimi L, Petkovic M, Nikova S, Hartel P, Jonker W. Ciphertext-Policy attribute-based threshold decryption with flexible delegation and revocation of user attributes. Technical Report, Centre for Telematics and Information Technology, University of Twente, 2009.
  • 10Roy S, Chuah M. Secure data retrieval based on ciphertext policy attribute-based encryption (CP-ABE) system for the DTNs. Technical Report, 2009.

共引文献1250

同被引文献11

引证文献2

二级引证文献3

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部