Looking for breakthrough ideas for innovation challenges? Try Patsnap Eureka!

A keyless escrow multi-authorization attribute-based encryption method and system

An authorization attribute and key escrow technology, applied in the field of cloud computing security, can solve the problems of key escrow, data owners cannot access cloud server data access management, etc., achieve strong anti-key escrow performance, and alleviate key escrow problems. Effect

Active Publication Date: 2022-07-22
FUJIAN NORMAL UNIV
View PDF4 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

Therefore, based on those servers may not be able to obtain an effective security mechanism, data owners cannot fully trust cloud servers to provide secure data access management
In attribute-based encryption (ABE) applications, the attribute authorization center AAs can generate the decryption key of all users, and can decrypt the ciphertext of all users without user participation, that is, there is a key escrow problem

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • A keyless escrow multi-authorization attribute-based encryption method and system
  • A keyless escrow multi-authorization attribute-based encryption method and system
  • A keyless escrow multi-authorization attribute-based encryption method and system

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0051] In order to make the purposes, technical solutions and advantages of the embodiments of the present application clearer, the technical solutions in the embodiments of the present application will be clearly and completely described below with reference to the accompanying drawings in the embodiments of the present application.

[0052] like figure 1 As shown, the present invention discloses a keyless escrow multi-authorization attribute-based encryption system, which includes five roles: user identity manager (IDM), attribute authorization center (AAs), data owner (DO), data User (DU) and Cloud Storage Server (CSS). The data user DU submits its legal identity information and commitment value to IDM. After the IDM successfully detects the identity of the DU, the IDM generates and returns a corresponding certificate containing the DU's commitment value. When the DU applies for the decryption key to the AAs, it also submits the corresponding commitment value. After the ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses a multi-authorization attribute-based encryption method and system without key escrow. The system includes a user identity manager IDM, an attribute authorization center AAs, a data owner DO, a data user DU, a cloud storage server CSS, and a data user DU. Submit its legal identity information and commitment value to IDM; after IDM successfully detects the identity of the DU, IDM generates and returns the corresponding certificate containing the DU commitment value; when the DU applies for the decryption key to the AAs, the DU also submits the corresponding commitment value; after the AAs successfully verify the signature in the certificate, the AAs calculate the corresponding private key for the DU respectively; the data owner DO encrypts the data and uploads it to the cloud storage server CSS, and the DU downloads the corresponding ciphertext from CSS and uses its private key. key to decrypt. The invention not only overcomes the key escrow problem by adding embedded user secret value, embedded legality authentication role private key value, etc., but also realizes the anti-AAs collusion attack and anti malicious user collusion attack problems.

Description

technical field [0001] The invention relates to the technical field of cloud computing security, in particular to a multi-authorization attribute-based encryption method and system without key escrow. Background technique [0002] An important application of cloud computing services is data storage. The data owner uploads data to the cloud for some special users. To use that data, these users must first gain access to the data. Data owners and data consumers do not interact directly. In order to protect the data confidentiality of data owners, many data encryption and data access control methods are employed to prevent data resources from being used by unauthorized users. In a complex cloud computing environment, cloud servers are often operated by commercial organizations, which may provide data access rights for unauthorized users for some benefit. Therefore, data owners cannot fully trust cloud servers to provide secure data access management based on the fact that tho...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
Patent Type & Authority Patents(China)
IPC IPC(8): H04L9/40H04L67/06H04L67/1097H04L9/32
CPCH04L63/0428H04L67/06H04L67/1097H04L9/3263H04L63/0823H04L63/10
Inventor 李继国张亦辰胡声洲杨书略章如愿康曌哲
Owner FUJIAN NORMAL UNIV
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Patsnap Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Patsnap Eureka Blog
Learn More
PatSnap group products