期刊文献+

可撤销属性加密的区块链数据访问控制方法 被引量:1

Blockchain data access control method with revocable attribute encryption
下载PDF
导出
摘要 针对区块链数据共享中存在的粗粒度访问控制问题,提出一种基于属性撤销密文策略属性基加密的区块链数据访问控制方法。在现有方案基础上进行改造,引入预解密过程,结合属性撤销列表实现属性实时撤销;基于非对称群下的DBDH困难问题假设进行安全性证明;基于超级账本Fabric进行系统设计,结合星际文件系统采用链上链下存储方式解决区块链容量不足和系统效率问题。实验结果表明,所提方案撤销属性时无需更新密钥密文重复上链,仅需要6次Pairing操作进行预解密和解密,且在大规模属性集下,预解密时间和解密时间平均保持在百毫秒左右的常量级上,实现区块链数据高效、细粒度的访问控制。 To solve the problems of coarse-grained access control in blockchain data sharing,a blockchain data access control method based on attribute revocation ciphertext policy attribute based encryption was proposed.Based on the existing scheme,the pre decryption process was introduced.Combined with the attribute revocation list,the real-time revocation of the attribute was realized.The security was proved based on the assumption of decisional bilinear Diffie-Hellman problem under asymmetric group.The system was designed based on the Hyperledger Fabric.Combined with the interstellar file system,the on chain and off chain storage method was adopted to solve the problems of insufficient capacity and system efficiency of the blockchain.The experimental result shows that the proposed scheme does not require updating the key ciphertext and repeatedly storing in the blockchain when revoking attributes.And,the proposed scheme only needs 6 Pairing operations for pre decryption and decryption.In addition,under the large-scale attribute set,the pre decryption time and decryption time are kept at a constant level of about 100 milliseconds on average,which ensures the efficient operation of the blockchain system and realizes the fine-grained access control of blockchain data.
作者 李健 戚湧 LI Jian;QI Yong(School of Computer Science and Engineering,Nanjing University of Science and Technology,Nanjing 210094,China)
出处 《计算机工程与设计》 北大核心 2024年第2期348-355,共8页 Computer Engineering and Design
基金 国家重点研发计划政府间国际科技创新合作重点专项基金项目(2019YFE0123800) 欧盟地平线2020科研计划基金项目(LC-GV-05-2019)。
关键词 区块链 数据共享 访问控制 属性基加密 预解密 属性撤销 星际文件系统 blockchain data sharing access control attribute based encryption pre decryption attribute revocation interstellar file system
  • 相关文献

参考文献7

二级参考文献41

共引文献108

同被引文献9

引证文献1

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部