AKSER: Attribute-based keyword search with efficient revocation in cloud computing

AKSER: Attribute-based keyword search with efficient revocation in cloud computing
复制标题

DOI:
10.1016/j.ins.2017.09.029
复制
发表时间:
2018
期刊:
Inf. Sci.
影响因子:
--
通讯作者:
Jie Cui;Han Zhou;Hong Zhong;Yan Xu
Jie Cui;Han Zhou;Hong Zhong;Yan Xu
中科院分区:
其他
文献类型:
--
作者:
Jie Cui;Han Zhou;Hong Zhong;Yan Xu

文献摘要

被引文献

相似文献

随着云计算的出现,数据所有者越来越流行将其数据外包给公共云服务器,同时允许缩进数据用户检索存储在云中的这些数据。出于安全和隐私的原因,数据所有者通常在将数据外包给云服务器之前对其数据进行加密。同时,用户经常需要查找与感兴趣的特定关键字相关的数据,这激发了对可搜索加密技术的研究。在本文中,我们专注于一个不同的,但更具挑战性的场景,其中外包数据集可以有来自多个所有者的贡献,并可由多个用户搜索。在对基于属性的加密算法(ABE)进行研究的基础上,提出了一种基于属性的关键字搜索和高效撤销方案(AKSER)。该方案在用户撤销方面具有高效性,并能在分布式多属性授权机构下实现搜索的细粒度授权。安全性分析表明,AKSER方案能够实现关键字语义安全、关键字保密、陷门不可链接性和抗共谋性。
With the advent of cloud computing, it is becoming increasingly popular for data owners to outsource their data to public cloud servers while allowing indented data users to retrieve these data stored in the cloud. For security and privacy reasons, data owners usually encrypt their data prior to outsourcing to the cloud server. At the same time, users often need to find data related to specific keywords of interest, this motivates research on the searchable encryption technique. In this paper, we focus on a different, yet more challenging, scenario where the outsourced dataset can have contribution from multiple owners and are searchable by multiple users. Based on our research of attribute-based encryption (ABE), we propose an attribute-based keyword search with efficient revocation scheme (AKSER). Our scheme is highly efficient in terms of user revocation and can achieve fine-grained authorization of the search under the distributed multiple-attribute authorized institution. Security analysis demonstrates that the proposed scheme AKSER can achieve keyword semantic security, keyword secrecy, trapdoor unlinkability, and collusion resistance.