{"title":"多用户可搜索加密与细粒度访问控制没有密钥共享","authors":"Qinqin Wang, Yanqin Zhu, Xizhao Luo","doi":"10.1109/ACSAT.2014.32","DOIUrl":null,"url":null,"abstract":"Searchable Encryption(SE) schemes allow users to perform keyword search on encrypted data without leakage of the sensitive information. Most of the existing SE schemes are limited to single-user setting or multi-user setting with coarser-grained access control. However, the application that multiple users with different access rights to the sharing data is more practical under the cloud environment. To bridge this gap, we consider searchable encryption with fine-grained access control under multi-user setting in this paper. The proposed scheme requires less computation cost at user side but provides fine-grained access control to authorized users under a new hybrid architecture. Combining symmetric encryption and Cipher text-Policy Attribute based Encryption(CP-ABE), we achieve a user collusion resistant scheme with the help of the private cloud. Our scheme solves a prevalent problem of key sharing. And the exposure of attribute secret key to the public cloud will not affect the system security. Dynamic and efficient user revocation is also provided. Security analysis shows that our scheme is secure.","PeriodicalId":137452,"journal":{"name":"2014 3rd International Conference on Advanced Computer Science Applications and Technologies","volume":"19 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2014-12-29","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"17","resultStr":"{\"title\":\"Multi-user Searchable Encryption with Fine-Grained Access Control without Key Sharing\",\"authors\":\"Qinqin Wang, Yanqin Zhu, Xizhao Luo\",\"doi\":\"10.1109/ACSAT.2014.32\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Searchable Encryption(SE) schemes allow users to perform keyword search on encrypted data without leakage of the sensitive information. Most of the existing SE schemes are limited to single-user setting or multi-user setting with coarser-grained access control. However, the application that multiple users with different access rights to the sharing data is more practical under the cloud environment. To bridge this gap, we consider searchable encryption with fine-grained access control under multi-user setting in this paper. The proposed scheme requires less computation cost at user side but provides fine-grained access control to authorized users under a new hybrid architecture. Combining symmetric encryption and Cipher text-Policy Attribute based Encryption(CP-ABE), we achieve a user collusion resistant scheme with the help of the private cloud. Our scheme solves a prevalent problem of key sharing. And the exposure of attribute secret key to the public cloud will not affect the system security. Dynamic and efficient user revocation is also provided. Security analysis shows that our scheme is secure.\",\"PeriodicalId\":137452,\"journal\":{\"name\":\"2014 3rd International Conference on Advanced Computer Science Applications and Technologies\",\"volume\":\"19 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2014-12-29\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"17\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2014 3rd International Conference on Advanced Computer Science Applications and Technologies\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ACSAT.2014.32\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2014 3rd International Conference on Advanced Computer Science Applications and Technologies","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ACSAT.2014.32","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 17
摘要
可搜索加密(SE)方案允许用户在不泄露敏感信息的情况下对加密数据进行关键字搜索。现有的SE方案大多局限于单用户设置或多用户设置,具有粗粒度的访问控制。但是,在云环境下,多个具有不同访问权限的用户对共享数据进行访问的应用更加实用。为了弥补这一缺陷,本文考虑了在多用户设置下具有细粒度访问控制的可搜索加密。该方案减少了用户端的计算成本,同时在新的混合架构下为授权用户提供了细粒度的访问控制。结合对称加密和密码文本-策略属性加密(Cipher text-Policy Attribute based encryption, CP-ABE),在私有云的帮助下实现了一种抗用户合谋的方案。我们的方案解决了一个普遍存在的密钥共享问题。并且属性秘钥向公有云公开不会影响系统的安全性。还提供了动态和有效的用户撤销。安全性分析表明,该方案是安全的。
Multi-user Searchable Encryption with Fine-Grained Access Control without Key Sharing
Searchable Encryption(SE) schemes allow users to perform keyword search on encrypted data without leakage of the sensitive information. Most of the existing SE schemes are limited to single-user setting or multi-user setting with coarser-grained access control. However, the application that multiple users with different access rights to the sharing data is more practical under the cloud environment. To bridge this gap, we consider searchable encryption with fine-grained access control under multi-user setting in this paper. The proposed scheme requires less computation cost at user side but provides fine-grained access control to authorized users under a new hybrid architecture. Combining symmetric encryption and Cipher text-Policy Attribute based Encryption(CP-ABE), we achieve a user collusion resistant scheme with the help of the private cloud. Our scheme solves a prevalent problem of key sharing. And the exposure of attribute secret key to the public cloud will not affect the system security. Dynamic and efficient user revocation is also provided. Security analysis shows that our scheme is secure.