代理重新加密
计算机科学
加密
访问控制
广播加密
代理(统计)
数据共享
共谋
基于属性的加密
计算机安全
方案(数学)
公钥密码术
经济
替代医学
微观经济学
病理
数学分析
机器学习
医学
数学
作者
Hua Deng,Zheng Qin,Qianhong Wu,Zhenyu Guan,Yunya Zhou
标识
DOI:10.1016/j.ins.2019.09.052
摘要
An increasing number of people are sharing their data through third-party platforms. Attribute-based encryption (ABE) is a promising primitive that allows enforcing fine-grained access control on the data to be shared. An issue in ABE is that a priori access policies should be determined during the system setup or encryption phase, but these policies will become obsolete over time. Another issue is that the decryption of ABE generally requires complicated and expensive computations, which may be unaffordable for resource-limited users (e.g., mobile-device users). To address these issues, we propose a new paradigm called hybrid attribute-based proxy re-encryption (HAPRE). In HAPRE, a semitrusted proxy can be authorized to convert ciphertexts of an ABE scheme into ciphertexts of an identity-based encryption (IBE) scheme without letting the proxy know the underlying messages. With these features, HAPRE enables resource-limited users to efficiently access the data previously encrypted by ABE. We construct two HAPRE schemes by utilizing a compact IBE scheme and a key rerandomization technique, and then we prove that the schemes are semantically secure and collusion resistant. Theoretical and experimental analyses demonstrate the efficiency of the HAPRE schemes.
科研通智能强力驱动
Strongly Powered by AbleSci AI