隐藏访问策略的属性加密方案研究
Attribute-Based Encryption Scheme with Hidden Access Policy
DOI: 10.12677/CSA.2018.83034, PDF,    科研立项经费支持
作者: 张兴兰*, 李建楠:北京工业大学,北京
关键词: 属性加密访问策略隐藏外包Attribute-Based Encryption Access Policy Hidden Outsourced
摘要: 传统基于密文策略的属性加密方案中,访问策略虽然能较好的实现属性加密,但也会带来数据隐私泄露问题,并且密文解密阶段的计算开销大。文章提出一种隐藏访问策略的外包加密方案,对属性的取值进行泛化处理,在加密过程中通过隐藏部分子集值使得有效密文和无效密文不可区分。此外,将密文解密的部分计算外包,减轻了数据接收方的计算负担,极大地提高了解密效率。分析表明,新方案在隐藏访问策略的同时增强了系统的灵活性,同时在DDH假设下证明是安全的,具有一定的理论和应用价值。
Abstract: In the traditional Ciphertext-Policy attributed-based encryption scheme, although the access policy can better implement attribute encryption, it will also bring the problem of data privacy leakage, and the large computation in the Ciphertext decryption stage. This paper proposes an outsourced encryption scheme to hide access policy, which generalizes the values of attributes. In the encryption process, the valid Ciphertext and the invalid Ciphertext are indistinguishable by hiding some subset values. In addition, outsourcing part of the Ciphertext decryption reduces the computing burden of the data receiver and greatly improves the efficiency of decryption. The analysis shows that the new scheme enhances the flexibility of the system while hiding the access policy, and it is proved to be safe under the assumption of DDH, which has certain theoretical and applied value.
文章引用:张兴兰, 李建楠. 隐藏访问策略的属性加密方案研究[J]. 计算机科学与应用, 2018, 8(3): 296-304. https://doi.org/10.12677/CSA.2018.83034

参考文献

[1] Shamir, A. (1984) Identity-Based Cryptosystems and Signature Schemes. Proceedings of CRYPTO’84 on Advances in Cryptology, 21, 47-53.
[2] Sahai, A. and Waters, B. (2005) Fuzzy Identity Based Encryption. Advances in Cryptology-EUROCRYPT 2005, 3494, 457-473. [Google Scholar] [CrossRef
[3] 冯登国, 陈成. 属性密码学研究[J]. 密码学报, 2014, 1(1): 1-12.
[4] 苏金树, 曹丹, 王小峰. 属性基加密机制[J]. 软件学报, 2011, 22(6): 1299-1315.
[5] Goyal, V., Pandey, O., Sahai, A. and Waters, B. (2006) Attribute-Based Encryption for Fine-Grained Access Control of Encrypted Data. Proceedings of the ACM Conference on Computer and Communications Security, October 30-November 3 2006, Alexandria, Virginia, 89-98. [Google Scholar] [CrossRef
[6] Cheung, L. and Newport, C. (2007) Provably Secure Ciphertext Policy ABE. CCS’07: Proceedings of the ACM Conference on Computer and Communications Security, Alexandria, Virginia, 456-465. [Google Scholar] [CrossRef
[7] Bethencourt, J., Sahai, A. and Waters, B. (2007) Ciphertext-Policy Attrib-ute-Based Encryption. Proceedings of the IEEE Symposium on Security and Privacy, 20-23 May 2007, Washington, DC, 321-334. [Google Scholar] [CrossRef
[8] Emura, K., Miyaji, A. and Nomura, A. (2009) A Ciphertext-Policy Attribute Based En-cryption Scheme with Constant Ciphertext Length. ISPEC 2009: Information Security Practice and Experience, 5451, 13-23. [Google Scholar] [CrossRef
[9] Nishide, T., Yoneyama, K. and Ohta, K. (2008) Attribute-Based Eneryption with Partially Hidden Encryption-Specified Access Structure. Proceedings of the Applied Cryptograph & Network Security, 5037, 111-129.
[10] Kapadi, A., Tsang, P. and Smith, W. (2007) Attribute-Based Publishing with Hidden Credentials and Hidden Policies. Network & Distributed System Security Symposium, 179-192.
[11] Shi, E., Bethncourt, J., Chan, S. and Perrig, A. (2007) Mul-ti-Dimensional Range Query over Encrypted Data. Proceedings of IEEE Symposium on Security and Privacy, 20-23 May 2007, Berke-ley, CA, 350-364. [Google Scholar] [CrossRef
[12] Bonehd, D. and Waters, B. (2007) Conjunctive, Subset, and Range Queries on Encrypt-ed Data. In: Vadhan, S.P., Ed., TCC 2007, Vol. 4392, 535-554.
[13] Lai, J., Deng, R.H. and Li, Y. (011) B-Ktlly Secure Ciper-text-Policy Hiding CP-ABE. ISPEC 2011, 6672, 24-39.
[14] Katz, J., Sahai, A. and Waters, B. (2008) Predicate Encryption Sup-porting Disjunctions, Polynomial Equations, and Inner Products. Advances in Cryptology-EUROCRYPT 2008, 4965, 146-162. [Google Scholar] [CrossRef