首页> 外文期刊>Journal of Parallel and Distributed Computing >A fine-grained authorized keyword secure search scheme with efficient search permission update in cloud computing
【24h】

A fine-grained authorized keyword secure search scheme with efficient search permission update in cloud computing

机译:云计算中具有有效搜索权限更新的细粒度授权关键字安全搜索方案

获取原文
获取原文并翻译 | 示例
           

摘要

With the rapid development of cloud computing, secure search has become a hot research spot, which is a promising technique that allows a data user to perform privacy-preserving keyword-based search over encrypted cloud data. In this paper, we further consider the secure search problem based on a practical application scenario that a data owner needs to grant different keyword query permissions for different data users to achieve flexible access control on outsourced encrypted data in the cloud computing environment. To address this problem, we propose a fine-grained authorized keyword secure search scheme by leveraging the ciphertext policy attribute-based encryption (ABE), which not only supports privacy-preserving keyword-based search over encrypted data, but also inherits flexible and fine-grained data privilege control properties of ABE. Moreover, our proposed scheme is able to achieve fine-grained search permission update with very small communication and computation cost. By running the attribute revocation sub-protocol and attribute addition sub-protocol, the data owner can flexibly and efficiently update a data user's keyword search permissions when the data user's system role changes. We provide detailed performance analysis and rigorous security proof for our scheme. Extensive experiments demonstrate the correctness and practicality of the proposed scheme. (C) 2019 Elsevier Inc. All rights reserved.
机译:随着云计算的飞速发展,安全搜索已成为研究的热点,这是一种有前途的技术,它允许数据用户对加密的云数据执行基于隐私保护的基于关键字的搜索。在本文中,我们将基于实际应用场景进一步考虑安全搜索问题,即数据所有者需要为不同的数据用户授予不同的关键字查询权限,以在云计算环境中实现对外包加密数据的灵活访问控制。为了解决这个问题,我们提出了一种利用基于密文策略属性的加密(ABE)的细粒度授权关键字安全搜索方案,该方案不仅支持对加密数据的基于隐私的基于关键字的搜索,而且还继承了灵活而精细的特性。粒度的ABE数据特权控制属性。而且,我们提出的方案能够以非常小的通信和计算成本实现细粒度的搜索权限更新。通过运行属性吊销子协议和属性添加子协议,数据所有者可以在数据用户的系统角色更改时灵活而有效地更新数据用户的关键字搜索权限。我们为我们的方案提供详细的性能分析和严格的安全证明。大量的实验证明了该方案的正确性和实用性。 (C)2019 Elsevier Inc.保留所有权利。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号