芦婷婷,
杨晓涛
西北师范大学数学与统计学院 兰州 730070
基金项目:国家自然科学基金(61662071, 61562077)
详细信息
作者简介:刘雪艳:女,1978年生,副教授,硕士生导师,研究方向为密码学与云存储中数据隐私保护
芦婷婷:女,1994年生,硕士生,研究方向为密码学与可搜索加密
杨晓涛:女,1993年生,硕士生,研究方向为密码学与属性密码学
通讯作者:刘雪艳 liuxy@nwnu.edu.cn
中图分类号:TN918计量
文章访问数:798
HTML全文浏览量:308
PDF下载量:55
被引次数:0
出版历程
收稿日期:2019-10-22
修回日期:2020-06-12
网络出版日期:2020-07-20
刊出日期:2021-01-15
Verifiable Attribute-based Keyword Search Scheme with Privacy Preservation
Xueyan LIU,,Tingting LU,
Xiaotao YANG
School of Mathematics and Statistics, Northwest Normal University, Lanzhou 730070, China
Funds:The National Natural Science Foundation of China (61662071, 61562077)
摘要
摘要:针对传统基于属性关键字搜索(ABKS)方案存在访问结构泄密、用户侧计算量高及缺乏完整性验证问题,该文提出具有隐私保护和完整性可验证的基于属性的关键字搜索方案。该方案提出了有序多值属性访问结构和有序多值属性集,固定每个属性的位置,减少参数及相关计算,提高了方案的效率,而在密钥生成时计算具体属性取值的哈希值,从而达到区别多值属性取值的不同。同时,采用Hash和对运算实现对访问结构的隐藏,防止访问结构泄密;采用倒序索引结构和Merkle树建立数据认证树,可验证云服务器返回文档和外包解密结果的正确性。此外,支持外包解密以降低用户侧的计算量。安全分析和实验表明所提方案实现云中共享数据的可验证性、关键字不可区分性和关键字不可链接性,且是高效的。
关键词:基于属性关键字搜索/
有序多值属性集/
隐藏访问结构/
数据完整性认证/
外包解密
Abstract:To address the problems of the leakage of access structure, high computation of user side and lack of integrity verification in current Attribute-Based Keyword Search (ABKS) scheme, a verifiable attribute-based keyword search scheme with privacy preservation is proposed. The scheme adopts the ordered multi-valued attribute access structure and ordered multi-valued attribute set, and fixes the position of each attribute to reduce the parameters and related computation cost and to improve the efficiency of the scheme, while in key generation, the Hash values of specific attributes are calculated to distinguish the different values of multi-valued attributes. At the same time, Hash and pair operation are used to hide the access structure and prevent the disclosure of the access structure. The inverted index structure and Merkle tree are used to establish the data authentication tree, which can verify the correctness of the document returned by the cloud server provider and the result of outsourced decryption. In addition, outsourced decryption is used to reduce the computation cost on the user side. Finally, formal proofs and experimental results show that the scheme achieve verifiability of shared data in the cloud, keyword undistinguishable and keyword unlinkable, and is efficient.
Key words:Attribute-Based Keyword Search (ABKS)/
Ordered multi-valued attribute set/
Hidden access policy/
Data integrity verification/
Outsourced decryption
PDF全文下载地址:
https://jeit.ac.cn/article/exportPdf?id=17967ad0-feed-4676-a87f-981f2f139017