




版權(quán)說明:本文檔由用戶提供并上傳,收益歸屬內(nèi)容提供方,若內(nèi)容存在侵權(quán),請進(jìn)行舉報(bào)或認(rèn)領(lǐng)
文檔簡介
VerifiableAB-PREforSecurePublicCloudDataSharingContentsIntroductionVerifiableattribute-basedPRE(AB-VPRE)ABE,PRE,AB-PREVerifiableoutsourcedcomputationOurtechniquesOurconstructionofAB-VPREInstantiationsSecurityanalysisAdvantagesofourAB-VPREschemesConclusions02ContentsIntroductionVerifiableattribute-basedPRE(AB-VPRE)ABE,PRE,AB-PREVerifiableoutsourcedcomputationOurtechniquesOurconstructionofAB-VPREInstantiationsSecurityanalysisAdvantagesofourAB-VPREschemesConclusions03DataStoragePrivacyIntactnessApplicabilityAccessControlLargeServersThinClients
Achievingdataprivacyandfine-grainedaccesscontrol.Applyingtothinclients.Updatingtheaccesscontrol.Tosolvethefollowingissues:Introduction04ContentsIntroductionVerifiableattribute-basedPRE(AB-VPRE)ABE,PRE,AB-PREVerifiableoutsourcedcomputationOurtechniquesOurconstructionofAB-VPREInstantiationsSecurityanalysisAdvantagesofourAB-VPREschemesConclusions05ORANDBobUnionHospitalChiefPhysiciansEncryption:Specifythequalifiedusersbyanaccesspolicyorasetofattributes.Keygeneration:Associatedwithusers’attributecharacteristic.Decryption:Accomplishedonlyifattributesandtheaccesspolicyarematched.UserAUserB
UnionHospitalChiefPhysician
BobAttribute-basedEncryption(ABE)06ORANDBobUnionHospitalUserAUserB
BobAttribute-basedEncryption(ABE)
UnionHospitalChiefPhysician
Bobisinanemergency.AlltheChiefPhysiciansareunavailable.Scenario:ChiefPhysiciansHowtoderiveBob’smedicalrecords?MedicalRecords07ProxyRe-encryption(PRE)UserAUserBProxy
Theproxycannotseetheplaintext.TheproxycannotderivethesecretkeyofUserA.SecurityRequirements:08Attribute-basedPRE(AB-PRE)
Updatingaccesscontrolfromdelegation.Theproxycannotderivetheplaintextandtheprivatekey.AB-PREisdividedintoCP-AB-PREandKP-AB-PRE.09Attribute-basedPRE(AB-PRE)
Liangetal.(ASIACCS’09):ThefirstCP-AB-PRE.Luoetal.(ICICS’10):CP-AB-PREwithmulti-valuepositiveattributes.Yuetal.(INFOCOM’10):KP-AB-PREforuserrevocation.Yuetal.(ASIACCS’10):CP-ABE-PREforattributerevocationbutnotcollusionresistant.Liangetal.(FGCS2014):CCAsecureCP-AB-PREbasedonLSSS.Liangetal.(TIFS2015):CCAsecuresearchableKP-AB-PREintherandomoraclemodel.Assumingtheproxyissemi-trusted!10ContentsIntroductionVerifiableattribute-basedPRE(AB-VPRE)ABE,PRE,AB-PREVerifiableoutsourcedcomputationOurtechniquesOurconstructionofAB-VPREInstantiationsSecurityanalysisAdvantagesofourAB-VPREschemesConclusions11Non-interactiveVerifiableComputation
Gennaroetal.(Crypto’10):VerifyingarbitrarydelegatingcomputationbasedonaFHEscheme.Chungetal.(Crypto’10):ImprovedGennaroetal’sscheme.Parnoetal.(TCC’12):PublicdelegationandpublicverifiabilityfromABEschemes.Goldwasseretal.(Eprint’12):Publicverifiableandsecretdelegatingcomputationforgeneralfunctions.Notsufficientlyefficientandimpractical!12VerifiableOutsourcedComputationforABEGreenetal.(USENIX’11):OutsourcingthedecryptionofABEbykeyblindingtechnique.Laietal.(TIFS2013):VerifiableoutsourceddecryptionforABEwhichdoublesthecomputationandcommunicationcostscomparedtotheunderlyingABEscheme.Linetal.(TIFS2015):GenericconstructionofVO-ABEwheretheinstantiationimprovedtheefficiencyofLaietal.’sscheme.13Disadvantage:Exposureofthekeyblindingfactordirectlyrevealstheprivatekey.ApplyingtoAB-PRE?ContentsIntroductionVerifiableattribute-basedPRE(AB-VPRE)ABE,PRE,AB-PREVerifiableoutsourcedcomputationOurtechniquesOurconstructionofAB-VPREInstantiationsSecurityanalysisAdvantagesofourAB-VPREschemesConclusions14VerifiableAttribute-basedPRE(AB-VPRE)
Updatingaccesscontrolfromdelegation.Theproxycannotderivetheplaintextandtheprivatekey.AB-PREisdividedintoCP-AB-PREandKP-AB-PRE.Verification15ContentsIntroductionVerifiableattribute-basedPRE(AB-VPRE)ABE,PRE,AB-PREVerifiableoutsourcedcomputationOurtechniquesOurconstructionofAB-VPREInstantiationsSecurityanalysisAdvantagesofourAB-VPREschemesConclusions16OurTechniques
CombiningacommitmentschemeandaKDFduringtheencryption.Verificationincludestwosteps:(1)Invarianttest;(2)Correctdetection.Ourtechniques:Theproxyisuntrusted!Verification17ContentsIntroductionVerifiableattribute-basedPRE(AB-VPRE)ABE,PRE,AB-PREVerifiableoutsourcedcomputationOurtechniquesOurconstructionofAB-VPREOutlineofourconstructionAlgorithmdescriptions1819AB-KEMSKE+CommitmentKDFKEMDEM+VerifiabilityOutlineofOurConstructionSKRKAB-PREABEKeyblindingmultiplierNewaccesspolicy/attributessetABE20AB-KEMSKE+CommitmentKDFKEMDEM+VerifiabilitySKRKABEKeyblindingmultiplierNewaccesspolicy/attributesetCTRKCT’ProxyAB-PREABEOutlineofOurConstruction21CTRKCSSRCS(proxy)CTCT’CT’Ver:1Ver:2Ver:1CheckingfortheinvariantcomponentsofCT.Ver:2ExaminingthecalculationcorrectnessofCT’.AB-VPREOutlineofOurConstruction22AB-KEMSKE+CommitmentKDFKEMDEM+VerifiabilityEncryptionProxyRe-encryptionDecryptionKeyblindingAccesscontrolUpdateVerificationOutlineofOurConstructionContentsIntroductionVerifiableattribute-basedPRE(AB-VPRE)ABE,PRE,AB-PREVerifiableoutsourcedcomputationOurtechniquesOurconstructionofAB-VPREOutlineofourconstructionAlgorithmdescriptions2324AB-KEMSKE+CommitmentKDFKEMDEM+VerifiabilityEncSK=(K,L)RK=(K,L’,Enc’(D,I’_enc))RKGenABEKeyblindingmultiplierDNewaccesspolicy/attributesetREncCT_{I_enc}CT_{I’_enc}RKAlgorithmDescriptions25Ver2+RDecCT_{I_enc},CT_{I’_enc}b=0orb=1?Ver:1⊥b=0RDec(SK’,CT_{I’_enc},b)b=1Pass?⊥NoVer:2MYesVer1AlgorithmDescriptionsContentsIntroductionVerifiableattribute-basedPRE(AB-VPRE)ABE,PRE,AB-PREVerifiableoutsourcedcomputationOurtechniquesOurconstructionofAB-VPRESecurityanalysis
Dataprivacyandverificationsoundness.
WeakMasterkeysecurity.2627SemanticallysecureComputationalhiding+bindingIND-CPAKDFsecureIND-CPA+VerificationSoundnessSecurityAnalysisforAB-VPREAB-KEMSKECommitment
Dataprivacyandverificationsoundness.AB-VPRE28SecurityAnalysisforAB-VPRE
WeakMasterkeysecurity.SelectivelyWeakMasterKeySecuritySelectivelyIND-CPACDHAssumptionAB-VPRENote:ExposureofthekeyblindingmultiplierprovidesnohelpforrevealingtheprivatekeyduetotheCDHAssumption.ContentsIntroductionVerifiableattribute-basedPRE(AB-VPRE)ABE,PRE,AB-PREVerifiableoutsourcedcomputationOurtechniquesOurconstructionofAB-VPREInstantiationsSecurityanalysisAdvantagesofourAB-VPREschemesConclusions2930AB-KEMOne-timepad+PedersenCommitmentKDFKEMDEM+VerifiabilityInstantiationsofAB-VPRESchemesAB-KEMAccesspolicyAB-VPRE-1CP(Liang’09)Non-monotonicAB-VPRE-2CP(Waters’11)LSSSAB-VPRE-3KP(Goyal’06)LSSSContentsIntroductionVerifiableattribute-basedPRE(AB-VPRE)ABE,PRE,AB-PREVerifiableoutsourcedcomputationOurtechniquesOurconstructionofAB-VPREInstantiationsSecurityanalysisAdvantagesofourAB-VPREschemesConclusions3132AdvantagesofOurAB-VPRESchemesFunctionsRe-encryptionverifiability(non-interactive)Accesscontrolupdatefromuntrustedprox
溫馨提示
- 1. 本站所有資源如無特殊說明,都需要本地電腦安裝OFFICE2007和PDF閱讀器。圖紙軟件為CAD,CAXA,PROE,UG,SolidWorks等.壓縮文件請下載最新的WinRAR軟件解壓。
- 2. 本站的文檔不包含任何第三方提供的附件圖紙等,如果需要附件,請聯(lián)系上傳者。文件的所有權(quán)益歸上傳用戶所有。
- 3. 本站RAR壓縮包中若帶圖紙,網(wǎng)頁內(nèi)容里面會有圖紙預(yù)覽,若沒有圖紙預(yù)覽就沒有圖紙。
- 4. 未經(jīng)權(quán)益所有人同意不得將文件中的內(nèi)容挪作商業(yè)或盈利用途。
- 5. 人人文庫網(wǎng)僅提供信息存儲空間,僅對用戶上傳內(nèi)容的表現(xiàn)方式做保護(hù)處理,對用戶上傳分享的文檔內(nèi)容本身不做任何修改或編輯,并不能對任何下載內(nèi)容負(fù)責(zé)。
- 6. 下載文件中如有侵權(quán)或不適當(dāng)內(nèi)容,請與我們聯(lián)系,我們立即糾正。
- 7. 本站不保證下載資源的準(zhǔn)確性、安全性和完整性, 同時(shí)也不承擔(dān)用戶因使用這些下載資源對自己和他人造成任何形式的傷害或損失。
最新文檔
- 2025至2030年洗面器可變角度支座項(xiàng)目投資價(jià)值分析報(bào)告
- 造瘺口術(shù)后的心理護(hù)理
- 血糖護(hù)理流程圖解
- 采購核價(jià)制度培訓(xùn)
- 2025至2030年女膠鞋項(xiàng)目投資價(jià)值分析報(bào)告
- 圓的有關(guān)性質(zhì)-圓周角(全國賽課公開課一等獎(jiǎng))課件-九年級數(shù)學(xué)新人教版上冊
- 2025至2030年中國草本美白面膜膏項(xiàng)目投資可行性研究報(bào)告
- 2025至2030年中國紙漿制造行業(yè)市場供需與投資預(yù)測分析報(bào)告
- 2025至2030年中國奶酪行業(yè)競爭現(xiàn)狀及投資決策建議報(bào)告
- 2025至2030年三向高架叉車項(xiàng)目投資價(jià)值分析報(bào)告
- DG-TJ 08-2451-2024 電動自行車集中充電和停放場所設(shè)計(jì)標(biāo)準(zhǔn)
- 江蘇省蘇州市(2024年-2025年小學(xué)四年級語文)人教版期中考試((上下)學(xué)期)試卷及答案
- 2024年6月廣東深圳市事業(yè)單位面試題及參考答案
- GB 44496-2024汽車軟件升級通用技術(shù)要求
- 江蘇省期無錫市天一實(shí)驗(yàn)校2025屆初三下學(xué)期第一次模擬考試英語試題含答案
- 第九單元 文人情致 課件高一音樂人音版(2019)必修 音樂鑒賞
- 全過程工程咨詢投標(biāo)方案(技術(shù)方案)
- DL∕T 1051-2019 電力技術(shù)監(jiān)督導(dǎo)則
- 關(guān)于學(xué)生假期(寒暑假)安排的調(diào)查問卷
- 2024廣東深圳市龍崗區(qū)總工會招聘社會化工會工作者及事宜筆試歷年典型考題及考點(diǎn)剖析附答案帶詳解
- 缺血性腦卒中的護(hù)理
評論
0/150
提交評論