计算机应用 ›› 2016, Vol. 36 ›› Issue (10): 2747-2752.DOI: 10.11772/j.issn.1001-9081.2016.10.2747

• 网络空间安全 • 上一篇    下一篇

支持通用电路的多线性映射外包属性加密方案

陈飞1,2, 韩益亮1,2, 李晓策1,2, 孙家浩3, 杨晓元1,2   

  1. 1. 武警工程大学 电子技术系, 西安 710086;
    2. 武警工程大学 网络与信息安全武警部队重点实验室, 西安 710086;
    3. 武警海南省总队司令部, 海口 570203
  • 收稿日期:2016-03-18 修回日期:2016-06-22 出版日期:2016-10-10 发布日期:2016-10-10
  • 通讯作者: 韩益亮,E-mail:yilianghan@hotmail.com
  • 作者简介:陈飞(1992—),男,安徽马鞍山人,硕士研究生,主要研究方向:公钥密码学;韩益亮(1977—),男,甘肃会宁人,副教授,博士,CCF会员,主要研究方向:密码学;李晓策(1991—),男,河北石家庄人,硕士研究生,主要研究方向:可信计算;孙家浩(1978—),男,海南海口人,硕士,主要研究方向:密码学;杨晓元(1959—),男,湖南湘潭人,教授,博士生导师,CCF会员,主要研究方向:密码学、信息安全。
  • 基金资助:
    国家自然科学基金资助项目(61572521,61272492,61272468);陕西省自然科学基础研究计划项目(2015JM6353)。

Outsourced attribute-based encryption for general circuit from multilinear maps

CHEN Fei1,2, HAN Yiliang1,2, LI Xiaoce1,2, SUN Jiahao3, YANG Xiaoyuan1,2   

  1. 1. Department of Electronic Technology, Engineering University of Chinese Armed Police Force, Xi'an Shaanxi 710086, China;
    2. Key Laboratory for Network and Information Security of Chinese Armed Police Force, Engineering University of Chinese Armed Police Force, Xi'an Shaanxi 710086, China;
    3. Command, Hainan Corps of Chinese Armed Police Force, Haikou Hainan 570203, China
  • Received:2016-03-18 Revised:2016-06-22 Online:2016-10-10 Published:2016-10-10
  • Supported by:
    BackgroundThis work is partially supported by the National Natural Science Foundation of China (61572521, 61272492, 61272468), the Basic Research Project of Natural Science in Shaanxi Province (2015JM6353).

摘要: 针对基于多线性映射的属性加密方案存在密文扩展率大、解密效率低、密钥托管的问题,将外包技术和用户秘密值法运用于方案中,设计了一个密钥策略的多线性映射属性加密方案。方案以通用多项式电路作为访问结构,支持任意扇出,其用户的私钥由密钥生成中心和用户共同产生。密文长度固定为|G|+|Z|,按照椭圆曲线标准设置合理参数后,与已知密文量最小的方案对比,存储代价减少25%。用户解密时仅对转换密文作运算,且外包正确性可验证,解密所需多线性运算次数仅为3次,大大降低了用户的计算代价。在标准模型下利用多线性判断Diffie-Hellman困难问题证明了方案的安全性。该方案也能适用于运算能力有限的小型移动设备。

关键词: 属性加密, 多线性映射, 通用电路, 可验证外包

Abstract: Since the ciphertext length of attribute-based encryption scheme from multilinear maps is large, the decryption is inefficient and the scheme has key escrow problem, a key-policy attribute-based encryption scheme from multilinear maps was proposed by using outsourcing technology and user's secret value. The proposed scheme supported general polynomial-size circuit and arbitrary fanout, the private key was generated by key generation center and user. The length of the ciphertext is fixed to |G|+|Z|, compared with the known ciphertext scheme with the minimum ciphertext, the storage cost is decreased by 25% after setting reasonable parameters in accordance with the standards elliptic curves. Users only need to compute transformation ciphertext and the ciphertext is verifiable. The decryption multilinear operation count is only 3, which greatly reduces the computional cost. Selective security is proved in standard model under the multilinear decisional Diffie-Hellman problem. Additionally, it also can be applied in small mobile devices with limited computing capability.

Key words: attribute-based encryption, multilinear map, general circuit, verifiable outsourcing

中图分类号: