Efficient Statically-Secure Large-Universe Multi-Authority Attribute-Based Encryption

被引:172
作者
Rouselakis, Yannis [1 ]
Waters, Brent [1 ]
机构
[1] Univ Texas Austin, Austin, TX 78712 USA
来源
FINANCIAL CRYPTOGRAPHY AND DATA SECURITY (FC 2015) | 2015年 / 8975卷
关键词
Attribute-based encryption; Multi-authority; Large universe; Unbounded; q-type assumption; Charm; Implementations; IDENTITY-BASED ENCRYPTION; PREDICATE ENCRYPTION;
D O I
10.1007/978-3-662-47854-7_19
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
We propose an efficient large-universe multi-authority ciphertext -policy attribute-based encryption system. In a large-universe ABE scheme, any string can be used as an attribute of the system, and these attributes are not necessarily enumerated during setup. In a multi-authority ABE scheme, there is no central authority that distributes the keys to users. Instead, there are several authorities, each of which is responsible for the authorized key distribution of a specific set of attributes. Prior to our work, several schemes have been presented that satisfy one of these two properties but not both. Our construction achieves maximum versatility by allowing multiple authorities to control the key distribution for an exponential number of attributes. In addition, the ciphertext policies of our system are sufficiently expressive and overcome the restriction that "each attribute is used only once" that constrained previous constructions. Besides versatility, another goal of our work is to increase efficiency and practicality. As a result, we use the significantly faster prime order bilinear groups rather than composite order groups. The construction is non-adaptively secure in the random oracle model under a non-interactive q-type assumption, similar to one used in prior works. Our work extends existing " programand- cancel" techniques to prove security and introduces two new techniques of independent interest for other ABE constructions. We provide an implementation and some benchmarks of our construction in Charm, a programming framework developed for rapid prototyping of cryptographic primitives.
引用
收藏
页码:315 / 332
页数:18
相关论文
共 47 条
  • [21] Joseph A, 2011, 2011617 CRYPT EPRINT
  • [22] Katz J, 2008, LECT NOTES COMPUT SC, V4965, P146
  • [23] Lenstra AK, 2000, LECT NOTES COMPUT SC, V1751, P446
  • [24] Lewko A, 2012, LECT NOTES COMPUT SC, V7237, P318, DOI 10.1007/978-3-642-29011-4_20
  • [25] Decentralizing Attribute-Based Encryption
    Lewko, Allison
    Waters, Brent
    [J]. ADVANCES IN CRYPTOLOGY - EUROCRYPT 2011, 2011, 6632 : 568 - 588
  • [26] Lewko A, 2011, LECT NOTES COMPUT SC, V6632, P547, DOI 10.1007/978-3-642-20465-4_30
  • [27] Fully Secure Functional Encryption: Attribute-Based Encryption and (Hierarchical) Inner Product Encryption
    Lewko, Allison
    Okamoto, Tatsuaki
    Sahai, Amit
    Takashima, Katsuyuki
    Waters, Brent
    [J]. ADVANCES IN CRYPTOLOGY - EUROCRYPT 2010, 2010, 6110 : 62 - +
  • [28] Miklau Gerome., 2003, P 29 INT C VERY LARG, P898, DOI DOI 10.1016/B978-012722442
  • [29] Miyaji A., 2001, Information Security and Cryptology - ICISC 2000. Third International Conference. Proceedings (Lecture Notes in Computer Science Vol.2015), P90
  • [30] National Institute of Standards and Technology, 2010, NIST SPEC PUBL