摘要
针对移动云计算中数据安全和移动用户的隐私保护问题,结合在线离线和外包解密技术,对基于身份加密机制(IBE)中加密和解密算法进行扩展,提出了一种可外包解密的基于身份在线离线加密方案,并证明其安全性,构造出适合于移动云计算环境中轻量级设备保护隐私数据的方案。为了减少移动终端运行IBE的加密和解密开销,利用在线离线技术将IBE的加密分解为离线和在线两个阶段,使得移动设备仅需执行少量简单计算即可生成密文;在此基础上,利用外包解密技术,修改IBE的密钥生成算法和解密算法,增加一个密文转化算法,将解密的大部分复杂计算外包给云服务器,移动设备仅计算一个幂乘运算即可获得明文。与现有IBE方案的性能相比,该方案具有较少的加解密开销,适合于轻量级移动设备。
For the problems of data security and privacy of users in the mobile cloud computing,this paper modifies the encryption and decryption algorithms in Identity-Based Encryption(IBE)by introducing the offline/online and the outsourcing decryption,then proposes an Identity-Based Online/Offline Encryption scheme with Outsourcing Decryption(IBOOE-OD),and proves its security.The IBOOE-OD is very suitable for lightweight devices to protect privacy data in mobile cloud computing environment.To reduce the costs of encryption and decryption in IBE for mobile devices,firstly,the encryption of IBE is decomposed into offline and online two phases by the online/offline technology,such that mobile devices can perform simple calculations to generate a ciphertext.Secondly,this paper uses the outsourcing technology to modify the key generation and decryption algorithms,and adds a ciphertext transformation algorithm,so that it can outsource the majority work of decryption to the cloud services and the mobile devices can perform one exponentiation to obtain plaintext.Compared with the performances of the existing IBE schemes,the scheme has the less amount of encryption and decryption costs and is very suitable for lightweight mobile devices.
作者
王占君
马海英
王金华
WANG Zhanjun;MA Haiying;WANG Jinhua(School of Science,Nantong University,Nantong,Jiangsu 226019,China;College of Computer Science and Technology,Nantong University,Nantong,Jiangsu 226019,China;School of Computer and Science Engineering,Nanyang Technological University,Singapore 639815)
出处
《计算机工程与应用》
CSCD
北大核心
2018年第19期72-76,共5页
Computer Engineering and Applications
基金
国家自然科学基金(No.61402244
No.11371207)
南通大学博士科研启动基金(No.15B10)
江苏省高校优秀中青年教师和校长境外研修项目
江苏省高校自然科学研究基金(No.15KJB520029
No.16KJB52038)
2015年度江苏省现代教育技术研究课题(No.2015-R-4024)
关键词
移动云计算
基于身份加密
在线离线
外包解密
轻量级设备
mobile cloud computing
Identity-Based Encryption(IBE)
online-offline
outsourcing decryption
lightweight device