基于云环境可撤销用户属性的外包解密方案

OUTSOURCED DECRYPTION SCHEME BASED ON CLOUD ENVIRONMENT REVOCABLE USER ATTRIBUTES

  • 摘要: 为解决云环境数据资源共享中用户缺乏灵活管理及解密计算开销大的问题,提出一种基于云环境可撤销用户属性的外包解密方案。方案公共参数由固定数量的群元素构成,对用于加密的属性集没有限制。用户撤销可以在每个属性级别而不是在系统级别执行,实现更细粒度的用户访问控制。并且不会在判断用户是否被撤销及外包解密时泄露用户信息。该方案在含数据库的复杂性假设下被证明是安全的。通过对类似方案的性能作对比分析,结果表明在云环境中用户管理的场景下该方案是更高效的、更灵活的。

     

    Abstract: In order to solve the problems of users’ lack of flexible management and high cost of decryption computing in cloud environment data resource sharing, an outsourcing decryption scheme based on cloud environment revocable user attributes is proposed. Scheme public parameters consisted of a fixed number of group elements and there was no restriction on the set of attributes used for encryption. User undo could be performed at each property level rather than at the system level for more fine-grained user access control. It would not disclose user information when determining whether a user was revoked or outsourced for decryption. The scheme was proved to be safe under the complexity assumption of composite order groups. By comparing the performance of similar experiments, the results show that the scheme is more efficient and flexible in the user management scenarios in cloud environment.

     

/

返回文章
返回