计算机科学
正确性
通道结构
密文
基于属性的加密
云计算
数据共享
加密
秘密分享
计算机安全
访问控制
密码学
信息隐私
许可
公钥密码术
理论计算机科学
算法
法学
政治学
医学
操作系统
病理
替代医学
作者
Zhaoqian Zhang,Jianbiao Zhang,Yilin Yuan,Zheng Li
出处
期刊:IEEE Internet of Things Journal
[Institute of Electrical and Electronics Engineers]
日期:2022-06-01
卷期号:9 (11): 8681-8692
被引量:21
标识
DOI:10.1109/jiot.2021.3117378
摘要
As the public cloud becomes one of the leading ways in data-sharing nowadays, data confidentiality and user privacy are increasingly critical. Partially policy-hidden ciphertext policy attribute-based encryption (CP-ABE) can effectively protect data confidentiality while reducing privacy leakage by hiding part of the access structure. However, it cannot satisfy the need of data sharing in the public cloud with complex users and large amounts of data, both in terms of less expressive access structures and limited granularity of policy hiding. Moreover, the verification of access right to shared data and correctness of decryption are ignored or conducted by an untrusted third party, and the prime-order groups are seldom considered in the expressive policy-hidden schemes. This article proposes a fully policy-hidden CP-ABE scheme constructed on linear secret sharing scheme (LSSS) access structure and prime-order groups for public cloud data sharing. To help users decrypt, hidden vector encryption (HVE) with a “convert step” is applied, which is more compatible with CP-ABE. Meanwhile, decentralized credible verification of access right to shared data and correctness of decryption based on blockchain are also provided. We prove the security of our scheme rigorously and compare the scheme with others comprehensively. The results show that our scheme performs better.
科研通智能强力驱动
Strongly Powered by AbleSci AI