摘要
针对云存储中的数据安全访问控制问题,设计了一个以云服务器为中心节点,支持不同权限多用户访问的安全高效的云存储模型。该模型利用椭圆曲线公钥密码设计具有语义安全的可搜索加密算法,并结合关键字相关度定义和保序加密算法提高数据检索准确性,降低系统通信负担;通过代理加密思想、用户访问控制列表和用户——数据访问控制矩阵实现不同权限用户的访问控制,安全灵活解决动态用户密钥管理问题。最后通过对模型安全性和模型效率两个方面对比分析,对模型可行性给出了证明。
Aimed at the problem of the secure access to the data in cloud storage,an efficient and secure model of cloud storage which supports the access of multi-user in hierarchy and adopts the cloud server as the central point is proposed.This model is used to design a semantic searchable encryption with the use of elliptic curve cryptosystem,and the use of the model improves the accuracy of the result by the keyword's degree of correlation and the order preserving encryption.Through the combination of proxy encryption,user access control list and user-data access control matrix,this model can satisfy the access of multi-user in hierarchy and efficiently solve the management of the dynamic user's private keys.In the end through the analysis and comparison of the security and efficiency,the results show that his new model is feasible.
出处
《空军工程大学学报(自然科学版)》
CSCD
北大核心
2013年第5期71-75,共5页
Journal of Air Force Engineering University(Natural Science Edition)
基金
国家自然科学基金资助项目(61272486)
关键词
云存储
椭圆曲线密码
保序加密
密钥管理
可搜索加密
cloud storage
elliptic curve cryptosystem
order preserving encryption
key management
searchable encryption