Attribute-Based Secure Data Sharing with Hidden Policies in Smart Grid

Attribute-Based Secure Data Sharing with Hidden Policies in Smart Grid
复制标题

DOI:
10.1109/tpds.2012.61
复制
发表时间:
2013-11-01
影响因子:
5.3
通讯作者:
Hur, Junbeom
Hur, Junbeom
中科院分区:
计算机科学2区
文献类型:
--
作者:
Hur, Junbeom

文献摘要

被引文献

相似文献

智能电网使用智能输电和配电网络来输送电力。它旨在通过消耗数据的双向通信和电力系统运行、维护和规划的动态优化来提高电力系统的可靠性、安全性和效率。智能电网系统使用细粒度的电网测量来提供增加的电网稳定性和可靠性。实现这一目标的关键是在广域网上的网格实体之间安全地共享测量结果。通常,这种共享遵循的策略取决于数据生成器和消费者的偏好以及时间敏感的上下文。在智能电网中,以及数据,用于共享数据的策略可能是敏感的,因为它们直接包含敏感信息,并且揭示关于受策略保护的底层数据的信息,或者关于数据所有者或接收者的信息。在这项研究中,我们提出了一个基于属性的数据共享方案在智能电网。在数据共享过程中,从电网运营商的角度来看,不仅数据被混淆,访问策略也被混淆。因此,在所提出的方案中,数据隐私和策略隐私得到保护。访问策略可以用任意的访问公式表示。因此,增强了策略的表达能力。安全性也得到了提高,使得未经授权的密钥生成中心或存储数据的网格管理系统无法解密要共享的数据。通过将大部分费力的解密操作委托给更强大的网格管理系统,接收方的计算开销也减少了。
Smart grid uses intelligent transmission and distribution networks to deliver electricity. It aims to improve the electric system's reliability, security, and efficiency through two-way communication of consumption data and dynamic optimization of electric-system operations, maintenance, and planning. The smart grid systems use fine-grained power grid measurements to provide increased grid stability and reliability. Key to achieving this is securely sharing the measurements among grid entities over wide area networks. Typically, such sharing follows policies that depend on data generator and consumer preferences and on time-sensitive contexts. In smart grid, as well as the data, policies for sharing the data may be sensitive because they directly contain sensitive information, and reveal information about underlying data protected by the policy, or about the data owner or recipients. In this study, we propose an attribute-based data sharing scheme in smart grid. Not only the data but also the access policies are obfuscated in grid operators' point of view during the data sharing process. Thus, the data privacy and policy privacy are preserved in the proposed scheme. The access policy can be expressed with any arbitrary access formula. Thus, the expressiveness of the policy is enhanced. The security is also improved such that the unauthorized key generation center or the grid manage systems that store the data cannot decrypt the data to be shared. The computation overhead of recipients are also reduced by delegating most of the laborious decryption operations to the more powerful grid manage systems.