Netinfo Security ›› 2020, Vol. 20 ›› Issue (3): 90-97.doi: 10.3969/j.issn.1671-1122.2020.03.012

Previous Articles    

CP-ABE Scheme Supporting Attribute Revocation and Outsourcing Decryption

LIU Peng1,2(), HE Qian2, LIU Wangyang1, CHENG Xu1   

  1. 1. CETC Big Data Research Institute Co.,Ltd., Guiyang 550018, China
    2. Guangxi Key Laboratory of Cryptography and Information Security, Guilin University of Electronic Technology, Guilin 541004, China
  • Received:2019-10-20 Online:2020-03-10 Published:2020-05-11

Abstract:

The attribute-based encryption mechanism provides a flexible access control scheme for data sharing and management in a cloud environment. However, the traditional attribute-based encryption scheme has the problems of high decryption complexity and difficulty in attribute revocation, which leads to limited application of the attribute-based encryption mechanism in practice. Aiming at the above problems, this paper proposes a ciphertext-policy attribute-based encryption scheme, which only needs to update the corresponding secret in the attribute revocation process. The text component effectively reduces the computational cost of the ciphertext update, and the attribute revocation process is transparent to the user. The user does not need to participate in the ciphertext and the key update, thereby reducing the impact of the attribute revocation on the user. At the same time, the decryption agent is introduced to outsource the part with large computational cost in the decryption process to the server, thereby reducing the decryption overhead of the client. Security analysis shows that this scheme can resist joint collusion and selective plaintext attacks. Finally, through comparative analysis, the scheme has certain advantages in the computational overhead of the ciphertext update and decryption process.

Key words: attribute-based encryption, access control, attribute revocation, outsourcing decryption

CLC Number: