Identity-Based Encryption with Equality Test Supporting Accountable Authorization in Cloud Computing

被引:0
作者
Zhao, Zhen [1 ,2 ]
Wang, Bao-Cang [1 ]
Gao, Wen [3 ]
机构
[1] Xidian Univ, Sch Cyber Engn, Xian 710071, Peoples R China
[2] Henan Key Lab Network Cryptog Technol, Zhengzhou 453499, Peoples R China
[3] Xian Univ Posts & Telecommun, Sch Cyberspace Secur, Xian 710121, Peoples R China
基金
中国国家自然科学基金;
关键词
identity-based encryption with equality test; accountable authorization; cloud computing; Gentry's IBE; zero-knowledge proof; PUBLIC-KEY ENCRYPTION; GENERIC CONSTRUCTION; EFFICIENT; CIPHERTEXTS;
D O I
10.1007/s11390-024-2933-y
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Identity-based encryption with equality test (IBEET) is proposed to check whether the underlying messages of ciphertexts, even those encrypted with different public keys, are the same or not without decryption. Since people prefer to encrypt before outsourcing their data for privacy protection nowadays, the research of IBEET on cloud computing applications naturally attracts attention. However, we claim that the existing IBEET schemes suffer from the illegal trapdoor sharing problem caused by the inherited key escrow problem of the Identity-Based Encryption (IBE) mechanism. In traditional IBEET, the private key generator (PKG) with the master secret key generates trapdoors for all authorized cloud servers. Considering the reality in practice, the PKG is usually not fully trusted. In this case, the Private-Key Generator (PKG) may generate, share, or even sell any trapdoor without any risk of being caught, or not being held accountable, which may lead to serious consequences such as the illegal sharing of a gene bank's trapdoors. In this paper, to relieve the illegal trapdoor sharing problem in IBEET, we present a new notion, called IBEET Supporting Accountable Authorization (IBEET-AA). In IBEET-AA, if there is a disputed trapdoor, the generator will be distinguished among the PKG and suspected testers by an additional tracing algorithm. For the additional tracing function, except for the traditional indistinguishability (IND) and one-way (OW) security models in IBEET, we define three more security models to protect the tracing security against dishonest authorizers, PKG, and testers, respectively. Based on Gentry's IBE scheme, we instantiate IBEET-AA and give a specific construction along with a formalized security proof with random oracles.
引用
收藏
页码:215 / 228
页数:14
相关论文
共 50 条
[31]   Identity-Based Authentication for Cloud Computing [J].
Li, Hongwei ;
Dai, Yuanshun ;
Tian, Ling ;
Yang, Haomiao .
CLOUD COMPUTING, PROCEEDINGS, 2009, 5931 :157-166
[32]   Identity based encryption with equality test [J].
Batamuliza, Jennifer ;
Hanyurwimfura, Damien .
INFORMATION SECURITY JOURNAL, 2021, 30 (02) :111-124
[33]   Public Key Encryption with Equality Test for Heterogeneous Systems in Cloud Computing [J].
Elhabob, Rashad ;
Zhao, Yanan ;
Sella, Iva ;
Xiong, Hu .
KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS, 2019, 13 (09) :4742-4770
[34]   A compact public key encryption with equality test for lattice in cloud computing [J].
He, Junfei ;
Ye, Qing ;
Yang, Zhichao ;
Wang, Shixiong ;
Wang, Jiasheng .
SCIENTIFIC REPORTS, 2025, 15 (01)
[35]   Certificateless Encryption Supporting Multi-Ciphertext Equality Test with Proxy-Assisted Authorization [J].
Dong, Siyue ;
Zhao, Zhen ;
Wang, Baocang ;
Gao, Wen ;
Zhang, Shanshan .
ELECTRONICS, 2023, 12 (20)
[36]   Identity-Based Proxy Re-encryption over NTRU Lattices for Cloud Computing [J].
Yue, Na ;
Wang, Yang ;
Wang, Mingqiang .
2020 INTERNATIONAL CONFERENCE ON IDENTIFICATION, INFORMATION AND KNOWLEDGE IN THE INTERNET OF THINGS (IIKI2020), 2021, 187 :264-269
[37]   Ciphertext-Policy Attribute-Based Encryption With Delegated Equality Test in Cloud Computing [J].
Wang, Qiang ;
Peng, Li ;
Xiong, Hu ;
Sun, Jianfei ;
Qin, Zhiguang .
IEEE ACCESS, 2018, 6 :760-771
[38]   PKE-MET: Public-Key Encryption With Multi-Ciphertext Equality Test in Cloud Computing [J].
Susilo, Willy ;
Guo, Fuchun ;
Zhao, Zhen ;
Wu, Ge .
IEEE TRANSACTIONS ON CLOUD COMPUTING, 2022, 10 (02) :1476-1488
[39]   An Identity-Based Authentication Scheme in Cloud Computing [J].
Zhang, Zhi-Hua ;
Jiang Xue-Feng ;
Li, Jian-Jun ;
Jiang, Wei .
2012 INTERNATIONAL CONFERENCE ON INDUSTRIAL CONTROL AND ELECTRONICS ENGINEERING (ICICEE), 2012, :984-986
[40]   Identity-based key management for cloud computing [J].
Zhu, Hong ;
Mei, Zhuolin ;
Xie, Meiyi .
SECURITY AND COMMUNICATION NETWORKS, 2016, 9 (13) :2143-2156