返回
Policy-driven Data Sharing over Attribute-Based Encryption supporting Dual Membership
DOI:10.1016/j.jss.2022.111271.png)
摘要
En 中文
Attribute-Based Encryption (ABE) plays an important role in current secure data sharing through finegrained customizable policies. However, the existing ABE schemes only support simple predicates, = and ?=, but cannot express a more general membership predicates, E and /E, in policies. The low expressivity of ABE will enlarge the ciphertext storage and reduce the communication efficiency. To overcome this problem, we propose an ABE supporting Dual Membership (DM-ABE). The core problem for implementing this scheme is how to use cryptographic methods to decide the membership between the verified element and the given set. In order to solve this problem, we design a cryptographic algorithm, called Secure Decision of Membership (SDM), based on aggregation functions. In this algorithm, any set can be aggregated into one cryptographic element, and the verified element and the given set can be converted into another cryptographic element in decision process. The membership between them can be decided by the above two cryptographic elements. Furthermore, we construct the DM-ABE by using SDM. Because of the good expressivity of our DM-ABE, we further propose a novel cryptographic data sharing framework by integrating DM-ABE and attribute-based access control to provide fine-grained access control and security protection for private data. In the security proof of DM-ABE, we prove that the DM-ABE satisfies the semantic security against chosen-plaintext attacks under the DBDHE assumption in the standard model through a unified way, considering both two encryption methods for E and E/ at the same time. Finally, we analyze our scheme in terms of time and space complexity, and compare it with some existing schemes. The results show that our DM-ABE has a better expressive ability on the boolean logic of general membership predicates, E and /E.(c) 2022 Published by Elsevier Inc.
Keyword:
Dual Membership
Secure Decision of Membership
Attribute-Based Encryption
Private data sharing
AI总结
对已上传原文的论文进行重点信息的提取,主要内容包括:简要概述、研究摘要、背景介绍、关键亮点、图文解析、展望与总结。
期刊
IF:
4.1
论文数:
5.4K
被引数:
8.4K
机构
引用论文
Verifiable and Exculpable Outsourced Attribute-Based Encryption for Access Control in Cloud Computing云计算中基于属性的可验证和可加密的外包访问控制
SDSS-MAC: Secure data sharing scheme in multi-authority cloud storage systems
COMPUTERS & SECURITY
IF5.4
A method of taking off citrus fruit mesocarp using compound enzyme preparation in a self-made device.使用复合酶制剂在自制装置中去除柑橘果瓤中果皮的方法。

