信息网络安全 ›› 2021, Vol. 21 ›› Issue (3): 26-36.doi: 10.3969/j.issn.1671-1122.2021.03.004

• 技术研究 • 上一篇    下一篇

支持区间查询的基于位置服务外包数据隐私保护方案

周由胜1,2(), 王明1, 刘媛妮2   

  1. 1.重庆邮电大学计算机科学与技术学院,重庆 400065
    2.重庆邮电大学网络空间安全与信息法学院,重庆 400065
  • 收稿日期:2020-11-15 出版日期:2021-03-10 发布日期:2021-03-16
  • 通讯作者: 周由胜 E-mail:zhouys@cqupt.edu.cn
  • 作者简介:周由胜(1979—),男,湖北,副教授,博士,主要研究方向为数据安全、认证与密钥协商|王明(1995—),男,安徽,硕士研究生,主要研究方向为位置隐私保护|刘媛妮(1982—),女,河南,副教授,博士,主要研究方向为网络安全、网络智能、未来网络、IP路由技术
  • 基金资助:
    国家自然科学基金(61702067);重庆市自然科学基金(cstc2020joymsxmX0343);重庆市留学人员回国创业创新支持计划(CX2018122)

Privacy Protection Scheme Supporting Interval Query for LBS Outsourced Data

ZHOU Yousheng1,2(), WANG Ming1, LIU Yuanni2   

  1. 1. College of Computer Science and Technology, Chongqing University of Posts and Telecommunications, Chongqing 400065, China
    2. College of Cyber Security and Information Law, Chongqing University of Posts and Telecommunications, Chongqing 400065, China
  • Received:2020-11-15 Online:2021-03-10 Published:2021-03-16
  • Contact: ZHOU Yousheng E-mail:zhouys@cqupt.edu.cn

摘要:

随着云计算技术的迅猛发展,越来越多的LBS服务被外包到云上运行以减少本地的计算和存储成本。然而,外包环境下的云服务器通常被认为是一个半可信的实体,LBS提供商的数据安全和用户的个人隐私将会面临新的安全挑战。针对现有基于位置服务数据外包方案中不支持区间查询和隐私保护不足等问题,文章提出一种支持区间查询的LBS外包数据隐私保护方案,利用非对称向量积保值加密和公钥可搜索加密对LBS坐标和关键词进行加密,实现LBS数据的机密性和用户查询模式的隐私性;利用轻量级的矩阵运算使用户在不泄露查询区间的前提下准确获得所需LBS数据。在新用户注册方面,采用基于双线性配对运算实现用户身份认证。安全性和性能分析表明,文章方案较同类方案具有一定优势。

关键词: 隐私保护, 基于位置服务, 区间查询, 外包计算

Abstract:

With the rapid development of cloud computing technology, more and more LBS services are being outsourced to the cloud to reduce local computing and storage costs. However, cloud servers are generally considered to be a semi-trusted entity in outsourced environment, the data security of LBS providers and the personal privacy of users will face new security challenges. In view of the fact that the absence of interval query and sufficient privacy protection in the existing LBS data outsourcing using cloud computing, a LBS interval query scheme with privacy protection features is proposed. Asymmetric scalar-product-preserving encryption and public key searchable encryption are used to encrypt LBS coordinates and point interest keywords to realize the confidentiality of LBS data and the user query mode. Lightweight matrix computing enables users to accurately obtain LBS data without revealing query intervals. In terms of new user registration, the bilinear pairing operation structure is adopted to realize user identity authentication. The performance analysis demonstrates that the proposed scheme has some advantages over existing similar schemes.

Key words: privacy protection, location-based service, interval query, outsourcing computing

中图分类号: