计算机与现代化

• 信息安全 • 上一篇    下一篇

指定服务器的基于身份加密连接关键字搜索方案

  

  1. 河海大学计算机与信息学院,江苏南京211100
  • 收稿日期:2016-09-07 出版日期:2017-04-20 发布日期:2017-05-08
  • 作者简介:王刚(1991-),男,江苏扬州人,河海大学计算机与信息学院硕士研究生,研究方向:可搜索加密; 李非非(1992-),女,山西临汾人,硕士研究生,研究方向:属性基加密; 王瑶(1991-),男,江西吉安人,硕士研究生,研究方向:属性基加密。

Designated Server Identity-based Encryption with Conjunctive Keyword Search Scheme

  1. College of Computer and Information, Hohai University, Nanjing 211100, China
  • Received:2016-09-07 Online:2017-04-20 Published:2017-05-08

摘要: 公钥加密关键字搜索(PEKS)允许用户发送关键字陷门给服务器,服务器可以通过陷门定位到包含用户搜索的关键字的密文。为了消除已有基于身份加密的关键字搜索(IBEKS)方案中服务器和接收者之间的安全信道,Wu等人提出了一种指定服务器基于身份加密的关键字搜索(dIBEKS)方案。可是,Wu等人提出的dIBEKS方案不满足密文不可区分性。为了克服Wu等人方案的不足,本文提出一种指定服务器基于身份加密的多关键字搜索方案。安全性分析表明,本文所提方案同时满足了密文不可区分、陷门不可区分和离线关键字猜测攻击的安全性。效率分析显示,本文的方案更高效。

关键词: 密文搜索, 指定服务器, 基于身份加密, 多关键字加密, 连接关键字搜索

Abstract: Public key encryption with keyword search (PKES) allows a user to send a trapdoor of some searched keywords to a server, which will enable the server locate all encrypted data containing the searched keywords. To remove the secure channel between the server and the receivers in the previous identity-based encryption with keyword search (IBEKS) schemes, Wu et al. proposed a designated server identity-based encryption with keyword search (dIBEKS) scheme. However, Wu et al.’s dIBEKS scheme can not satisfy the ciphertext indistinguishability. To overcome the security weakness in Wu et al.’s scheme and provide the functionality of multiple keywords searching, we put forward a designated server identity-based encryption with conjunctive keywords search scheme. The security analysis shows that the proposed scheme simultaneously satisfies the security of ciphertext indistinguishability, trapdoor indistinguishability and off-line keyword-guessing attack. Comparison analysis shows that the proposed scheme is more efficient and practical.

Key words: ciphertext search, designated server, identity-based encryption, multiple keywords encryption, conjunctive keywords search

中图分类号: