适用于云存储的并行无证书代理重加密方案
On Parallel Certificateless Proxy Re-Encryption Scheme for Secure Cloud Data Sharing
-
摘要: 为了保证云存储中数据的安全访问控制,并基于CPU已进入多核阶段的现状,将并行计算思想用于代理重加密算法中,提出了一个并行代理重加密方案(PCL‐PRE)。数据拥有者使用对称加密密钥(DEK )加密敏感数据,同时使用代理重加密算法加密该DEK ,将这些加密内容存储于云存储中心。云存储中心作为半可信的代理节点,根据访问控制列表,将数据拥有者的DEK进行代理加密,转化为多个接收者可以用自己私钥解密的密文,而在整个过程中都无法获取任何明文信息。接收者收到密文后,即可解密。该方案使用随机数复用技术,对消息进行优化并行,并结合密文聚合,进一步提高了传输效率。实验表明,并行代理重加密方案具有明显的效率优势。Abstract: Aimed to secure data access control in cloud storage ,and based on the situation that CPU has entered the reality of multi‐core ,parallel computing idea into the proxy re‐encryption has been introduced , and a parallel certificateless proxy re‐encryption (PCL‐PRE) scheme proposed .The data owner encrypts in parallel the sensitive data with his ow n public key and uploads the encrypted data to the semi‐trusted proxy in cloud .While according to the Access Control List (ACL ) ,the proxy transforms the encrypted cipher‐text into a ciphertext of the same message that could be decrypted by receivers' secret key ,but the proxy cannot obtain any information about the message .After receiving the the converted decrypted data ,the re‐ceivers can subsequently get the plain text .The messages are optimized parallel with randomness reusing and cipher text aggregation ,which will reduce the computation and transmission overheads further .Ex‐periment result shows that compared with other existing CL‐PRE schemes ,the scheme is very efficient .
-
-
计量
- 文章访问数: 599
- HTML全文浏览数: 434
- PDF下载数: 0
- 施引文献: 0