中国科学技术大学学报 ›› 2011, Vol. 41 ›› Issue (7): 619-625.DOI: 10.3969/j.issn.0253-2778.2011.07.009

• 原创论文 • 上一篇    下一篇

适应性安全的多主密钥KP-ABE方案

杨晓元   

  1. 1.武警工程学院电子技术系,陕西西安 710086;2.武警总医院通信站,北京 100039
  • 收稿日期:2011-04-28 修回日期:2011-07-13 出版日期:2011-07-31 发布日期:2011-07-31
  • 通讯作者: 杨晓元
  • 作者简介:杨晓元(通讯作者),男,1959年生,教授. 研究方向:密码算法与协议和网络安全. E-mail: xyyangwj@126.com
  • 基金资助:
    国家自然科学基金(60573036),陕西省自然科学基金(2010JM8034),武警工程学院基础基金(wjy201119)资助.

Multiple-authority-key KP-ABE scheme with adaptive security

YANG Xiaoyuan   

  1. 1.Department of Electronic Technology, Engineering College of the A. P. F., Xian 710086, China; 2.Station of Communication, General Hospital of A. P. F., Beijing 100039, China
  • Received:2011-04-28 Revised:2011-07-13 Online:2011-07-31 Published:2011-07-31

摘要: 功能加密能很好地满足多对多的网络环境下的机密性需求,功能性函数提供了比传统公钥更灵活的密文存取能力.已有的功能加密系统均只支持单主密钥功能性函数,本文提出了功能加密子类KP-ABE(key-policy attribute-based encryption)上的多主密钥适应性安全模型,该模型具有更强的表达能力及更广义的特性.利用线性多秘密共享方案,设计了该安全模型下的一个加密方案,并采用对偶法在标准模型下证明方案是IND-CPA(indistinguishability against chosen-ciphertext attacks)安全的.该方案加密数据的存取策略更为灵活,用户可根据权限存取多种类型的密文;提出的构造方法可应用于功能加密的其他子类,且计算量与单主密钥方案相比不存在线性扩张,具有较高的效率.

关键词: 密钥策略属性基加密, 适应性安全, 线性多秘密共享方案, 对偶法

Abstract: Functional encryption provides a good way for sharing encrypted data in the network environment, which is sufficient for new emerging applications. Several recent works only focused on the systems that supported single-authority-key functionality. In order to solve the open problem of the construction of multiple authority keys functional encryption, an adaptive security model of multiple-authority-key key-policy attribute-based encryption (M-KP-ABE) was presented, which allows for functionalities that take in multiple authority keys. In this system, an encryptor can specify a policy and a capability describing what the decryptor can learn from the ciphertext. A new M-KP-ABE scheme was proposed for any attribute access structure that could be expressed by a linear multi-secret sharing scheme (LMSSS). This scheme is proven to be adaptively secure in the standard model by using the dual system encryption methodology recently introduced. The key generation centre (KGC) with multiple authority keys can combine users capabilities in a specified manner and users can decrypt many kinds of ciphertexts. It is easy to apply this methodology to other subclasses of functional encryption with equal security and efficiency, which makes it more appropriate for applications.

Key words: KP-ABE, adaptive security, LMSSS, dual system encryption