摘要
物联网环境下,云存储技术的发展和应用降了低用户数据的存储和管理开销并实现了资源共享。为了保护用户的身份隐私,提出一种具有否认认证特性的可搜索加密方案。发送方对原始数据进行可否认加密并将密文上传,而接收端在密文的确认阶段无法向第三方证明数据的来源,保障了数据的安全性。相较于基于身份认证的单一设计,提出方案利用无证书密码技术解决了传统方案中密钥托管和密钥撤销阶段中存在的弊端,同时也实现了可否认加密的密态搜索。最后,对提出方案进行了严格的安全性分析。实验结果表明,该方案可以较好地完成可搜索加密任务。
In the Internet of Things,the development and application of cloud storage technology reduce the storage and mana-gement overhead of user data and realize resource sharing.To protect privacy of users,this paper proposed a searchable en-cryption scheme with denial-authentication property.The sender encrypted the original data and uploaded the ciphertext,while the receiver couldn’t prove the source of the data to a third party during the confirmation phase,ensuring data security.Compared with the single design based on identity authentication,the proposed scheme used certificateless cryptography technology to solve the disadvantages of the traditional scheme in the key escrow and key revocation stage,and also realized deniable encryption in the dense state search.Finally,it analyzed the security of the proposed scheme strictly.Experimental results show that the scheme can complete the searchable encryption task well.
作者
宋安宁
王宝成
李化鹏
Song Anning;Wang Baocheng;Li Huapeng(School of Information,North China University of Technology,Beijing 100144,China)
出处
《计算机应用研究》
CSCD
北大核心
2023年第5期1510-1514,共5页
Application Research of Computers
基金
北京市教育委员会科学研究计划资助项目(110052971921/021)。
关键词
无证书
否认认证
信息保护
可搜索加密
certificateless
denial of authentication
privacy protection
searchable encryption