• •    

一种基于CP-ABE的云存储数据更新方法研究

刘荣,潘洪志,刘波,祖婷,方群,何昕,王杨   

  1. 安徽师范大学
  • 收稿日期:2017-07-28 修回日期:2017-09-07 发布日期:2017-09-07
  • 通讯作者: 刘荣

A Study on Data Updating for Cloud Storage Based on CP-ABE

  • Received:2017-07-28 Revised:2017-09-07 Online:2017-09-07
  • Contact: Rong LIU

摘要: 摘 要: 针对云计算数据易遭非法窃取和恶意篡改问题,本文提出一种支持动态更新操作的密文策略的属性加密方案DU-CPABE(Dynamic Updating Ciphertext-Policy Attribute-based Encryption),利用线性分割思想将数据分成固定大小的数据块,然后采用CP-ABE加密算法对各数据块进行加密;进而提出一种A-MHT (Address-Merkle Hash Tree)搜索树结构,借助A-MHT快速定位数据块实现云服务器中数据动态更新。经理论分析证明了该方案的安全性,仿真实验表明此方案在数据动态更新速度和系统开销方面较传统云存储方案有较为明显的改善。

关键词: 关键词: 云计算, 动态更新, CP-ABE算法, Merkle Hash Tree, 云安全

Abstract: Abstract: This paper investigates the security protection and data dynamic updating problems in cloud computing. It proposes a dynamic updating ciphertext-policy attribute-based encryption (DU-CPABE) scheme which enables both data dynamic updating and security protection. The DU-CPABE scheme linearly splits the data into blocks with a fixed size, and applies ciphertext-policy attribute-based encryption (CP-ABE) algorithm for data protection. Furthermore, based on conventional Merkle hash tree (MHT), an address MHT (A-MHT) is proposed for the operation of dynamically updating data in cloud computing. Based on theoretical analyses and simulation results, our proposed scheme outperforms conventional CP-ABE method in terms of performance and time overhead in cloud computing environment.

Key words: cloud computing, data dynamic updating, CP-ABE algorithm, Merkle Hash Tree, cloud security

中图分类号: