Enabling efficient and secure data sharing in cloud computing

被引:16
作者
Li, Jingwei [1 ]
Li, Jin [2 ]
Liu, Zheli [1 ]
Jia, Chunfu [1 ]
机构
[1] Nankai Univ, Coll Informat Tech Sci, Tianjin 300071, Peoples R China
[2] Guangzhou Univ, Sch Comp Sci, Guangzhou, Guangdong, Peoples R China
基金
高等学校博士学科点专项科研基金; 中国国家自然科学基金;
关键词
access control; broadcast encryption; privacy-preserving keyword search; cloud computing; PUBLIC-KEY ENCRYPTION; KEYWORD GUESSING ATTACKS; BROADCAST ENCRYPTION; SEARCH; SCHEMES;
D O I
10.1002/cpe.3067
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
With the rapid development of cloud computing, more and more data are being centralized into remote cloud server for sharing, which raises a challenge on how to keep them both private and accessible. Although searchable encryption provides an efficient solution to support keyword-based search directly on encrypted data, considering its application in file sharing, existing work depends on key sharing among authorized users, which inevitably causes the risks of key exposure and abuse. In this paper, aiming at enabling efficient and secure data sharing in cloud computing, we provide a generic construction for this purpose. The proposed construction is full-featured: (i) It enables authorized users to perform keyword-based search directly on encrypted data without sharing the unique secret key; and (ii) it provides two-layered access control to limit unauthorized user's access to the shared data. On the basis of the proposed generic construction, we utilize the existing techniques on identity-based broadcast encryption and public key searchable encryption to instantiate a concrete construction. Copyright (c) 2013 John Wiley & Sons, Ltd.
引用
收藏
页码:1052 / 1066
页数:15
相关论文
共 38 条