首页> 美国卫生研究院文献>PLoS Clinical Trials >Traceable ciphertext-policy attribute-based encryption scheme with attribute level user revocation for cloud storage
【2h】

Traceable ciphertext-policy attribute-based encryption scheme with attribute level user revocation for cloud storage

机译:具有属性级用户吊销的可跟踪的基于密文策略的基于属性的加密方案,用于云存储

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

In a ciphertext-policy attribute-based encryption (CP-ABE) scheme, a user may have multiple attributes, and each attribute may be shared simultaneously by many users. The decryption key of an attribute can thus be shared by many users who all possess the attribute. For monetary gain, a malicious authorized user may reveal his/her decryption key to a third party, and it is difficult to trace the owner of primitive secret key from an exposed key. At the same time, this situation may also limit commercial applications of CP-ABE systems. To solve these problems and enable fine-grained access control for the encrypted data, we propose a traceable CP-ABE scheme with attribute-level user revocation for cloud storage (TUR-CPABE). Our scheme enjoys four advantages. First, it has the ability to trace malicious users who have leaked key information from the system. Second, it supports attribute-level user revocation for malicious users and allows ABE fine-grained access control. Third, it allows secret key updates and ciphertext updates to resist collusion attacks between users. Fourth, outsourcing encryption, decryption and attribute revocation are used to reduce the computational burden on data owners, data users and the trust authority, respectively. In addition, our scheme has been proven to be secure against chosen plaintext attacks under a selective access policy based on decisional q – BDHE assumption in the standard model.
机译:在基于密文策略属性的加密(CP-ABE)方案中,用户可能具有多个属性,并且每个属性可能同时被许多用户共享。因此,属性的解密密钥可以由拥有该属性的许多用户共享。为了获得金钱,恶意授权用户可能会将其解密密钥透露给第三方,并且很难从公开密钥中跟踪原始秘密密钥的所有者。同时,这种情况也可能限制CP-ABE系统的商业应用。为了解决这些问题并启用对加密数据的细粒度访问控制,我们提出了一种可跟踪的CP-ABE方案,该方案具有用于云存储的属性级用户吊销(TUR-CPABE)。我们的方案有四个优点。首先,它具有跟踪从系统中泄漏关键信息的恶意用户的能力。其次,它支持恶意用户的属性级用户吊销,并允许ABE细粒度的访问控制。第三,它允许秘密密钥更新和密文更新来抵抗用户之间的串通攻击。第四,外包加密,解密和属性吊销分别用于减轻数据所有者,数据用户和信任机构的计算负担。此外,在标准模型中基于决策q – BDHE假设的选择性访问策略下,我们的方案已被证明可以安全地抵抗选定的明文攻击。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号