信息网络安全 ›› 2017, Vol. 17 ›› Issue (8): 19-25.doi: 10.3969/j.issn.1671-1122.2017.08.003

• • 上一篇    下一篇

云环境下理想格上的多机构属性基加密隐私保护方案

闫玺玺1, 刘媛1(), 李子臣2, 黄勤龙3   

  1. 1. 河南理工大学计算机科学与技术学院,河南焦作 454003
    2. 北京印刷学院信息工程学院,北京 102600
    3. 北京邮电大学网络空间安全学院,北京 100876
  • 收稿日期:2017-07-01 出版日期:2017-08-20 发布日期:2020-05-12
  • 作者简介:

    作者简介: 闫玺玺(1985—) ,女,河南,讲师,博士,主要研究方向为网络与信息安全、数字版权管理、数字内容安全;刘媛(1989—),女,河南,硕士研究生,主要研究方向为密码学、网络与信息安全;李子臣(1965—),男,河南,教授,博士,主要研究方向为信息安全、电子商务和密码学;黄勤龙(1988—),男,江西,讲师,博士,主要研究方向为数字版权管理、数字内容安全、网络安全。

  • 基金资助:
    国家自然科学基金[61300216];河南省科技厅项目[132102210123];河南省教育厅科研项目[16A520013]

A Privacy-preserving Multi-authority Attribute-based Encryption Scheme on Ideal Lattices in the Cloud Environment

Xixi YAN1, Yuan LIU1(), Zichen Li2, Qinlong Huang3   

  1. 1. School of Computer Science and Technology, Henan Polytechnic University, Jiaozuo Henan 454003, China
    2. School of Information Engineering, Beijing Institute of Graphic Communication, Beijing 102600, China
    3. School of Cyberspace Security, Beijing University of Posts and Telecommunications, Beijing 100876, China
  • Received:2017-07-01 Online:2017-08-20 Published:2020-05-12

摘要:

理想格上的加密方案具有密钥尺寸小、加密效率高且可抵抗量子攻击的优势,因此文章基于格上R-LWE问题提出一种支持隐私保护的多机构属性基加密方案,支持多个属性机构管理不同的属性集,并为其权限下的用户分发密钥,提高方案效率,缩短密钥尺寸。文中方案采用半策略隐藏方式,只利用属性名加密,而将用户的具体属性值进行隐藏,从而实现对用户的隐私保护,避免用户的敏感属性值泄露给其他任何第三方。另外,文中方案利用扩展的线性秘密共享技术构造访问结构,灵活性高。经安全性分析证明,文中方案在标准模型下满足自适应选择明文攻击安全。通过与其他方案的对比,文中方案用户私钥长度和密文长度都有所优化,在云环境实际应用中更加有效。

关键词: 云环境, 属性基加密, 多机构, 理想格, 隐私保护

Abstract:

Based on the small key size and high encryption efficiency on ideal lattices, a privacy-preserving multi-authority attribute-based encryption scheme on ideal lattices in the cloud was proposed in this paper, which can support different attribute authorities to manage different attribute sets and generate privacy keys for the user. In the scheme, a partially-hidden policy is introduced to protect the users’ privacy. Thus, the sensitive values of user’s attributes are hidden to prevent from revealing to any third parties. In addition, the extended linear secret-sharing scheme is used to construct the access structure with a high flexibility. Besides, the scheme is proved to be secure against chosen plaintext attack under the standard mode. Compared to the existing related schemes, the users’ secret key and ciphertext in our scheme is reduced and it is more effective in the cloud environment.

Key words: cloud environment, ABE, multi-authority, ideal lattices, privacy-preserving

中图分类号: