• 中国计算机学会会刊
  • 中国科技核心期刊
  • 中文核心期刊

计算机工程与科学 ›› 2021, Vol. 43 ›› Issue (07): 1219-1225.

• 计算机网络与信息安全 • 上一篇    下一篇

支持连接关键词搜索的属性加密方案研究

陈思琦,黄汝维   

  1. (广西大学计算机与电子信息学院,广西 南宁 530004)
  • 收稿日期:2020-10-17 修回日期:2020-12-15 接受日期:2021-07-25 出版日期:2021-07-25 发布日期:2021-08-16
  • 基金资助:
    国家自然科学基金(62062009);广西科技重大专项(AA17204058-17,桂科AA18118047-7)

Attribute-based encryption supporting conjunctive keyword

CHEN Si-qi,HUANG  Ru-wei   

  1. (School of Computer and Electronic Information,Guangxi University,Nanning 530004,China)
  • Received:2020-10-17 Revised:2020-12-15 Accepted:2021-07-25 Online:2021-07-25 Published:2021-08-16

摘要: 基于属性的加密机制能够实现细粒度的访问控制,支持多用户数据共享。针对大部分基于属性的可搜索加密方案存在效率低下、密钥易泄露以及仅支持单关键词搜索的问题,提出了一个支持连接关键词搜索的属性加密方案。该方案采用线性秘密共享矩阵实现访问控制,将秘密共享和恢复操作在一个与参与方属性关联的矩阵中进行,通过矩阵运算减少了计算量。在陷门生成阶段,避免直接将用户密钥提交给云服务器,保证了用户密钥的安全性。基于多项式方程实现了连接关键词搜索,缩小了搜索范围,提升了用户的搜索体验,严格的安全性分析证明方案能够达到抵抗关键字攻击安全。

关键词: 可搜索加密, 属性加密, 访问控制, 连接关键词

Abstract: The attribute-based encryption mechanism enables fine-grained access control and supports multi-user data sharing. Aiming at the problems of inefficiency, easy key leakage and only supporting single keyword search in most attribute-based searchable encryption schemes, an attribute-based encryption scheme supporting conjunctive keyword search is proposed. The scheme uses a linear secret sharing scheme to implement access control, and performs secret sharing and recovery operations in a matrix associated wit-h the attributes of the participants, which reduces the amount of calculation through matrix operations. In the trapdoor generation stage, the user key is not directly submitted to the cloud server, thus ensuring the security  of the user key. Based on the polynomial equation, conjunctive keyword search is realized to narrow the search scope and improve the user’s search experience. Strict security analysis proves that the scheme can achieve security against keyword attacks.


Key words: searchable encryption, attribute-based encryption, access control, conjunctive keyword