通信学报 ›› 2021, Vol. 42 ›› Issue (10): 67-80.doi: 10.11959/j.issn.1000-436x.2021187

• 学术论文 • 上一篇    下一篇

加密去重场景下基于AONT和NTRU的密钥更新方案

贾春福1,2, 哈冠雄1,2, 武少强1,2, 陈杭1,2, 李瑞琪1,2   

  1. 1 南开大学网络空间安全学院,天津 300350
    2 天津市网络与数据安全技术重点实验室,天津 300350
  • 修回日期:2021-08-31 出版日期:2021-10-25 发布日期:2021-10-01
  • 作者简介:贾春福(1967- ),男,河北文安人,博士,南开大学教授、博士生导师,主要研究方向为网络与信息安全、可信计算、恶意代码分析、密码技术应用等
    哈冠雄(1995- ),男,回族,天津人,南开大学博士生,主要研究方向为云数据安全、密码学应用
    武少强(1996- ),女,山西汾阳人,南开大学硕士生,主要研究方向为密码学应用、隐私保护
    陈杭(1998- ),女,天津人,南开大学硕士生,主要研究方向为密码学应用、加密去重
    李瑞琪(1993- ),男,黑龙江尚志人,南开大学博士生,主要研究方向为同态加密、格密码学等
  • 基金资助:
    国家重点研发计划基金资助项目(2018YFA0704703);国家自然科学基金资助项目(61972215);国家自然科学基金资助项目(61972073);国家自然科学基金资助项目(62172238);天津市自然科学基金资助项目(20JCZDJC00640)

AONT-and-NTRU-based rekeying scheme for encrypted deduplication

Chunfu JIA1,2, Guanxiong HA1,2, Shaoqiang WU1,2, Hang CHEN1,2, Ruiqi LI1,2   

  1. 1 College of Cyber Science, Nankai University, Tianjin 300350, China
    2 Tianjin Key Laboratory of Network and Data Security Technology, Tianjin 300350, China
  • Revised:2021-08-31 Online:2021-10-25 Published:2021-10-01
  • Supported by:
    The National Key Research and Development Program of China(2018YFA0704703);The National Natural Science Foundation of China(61972215);The National Natural Science Foundation of China(61972073);The National Natural Science Foundation of China(62172238);The Natural Science Foundation of Tianjin(20JCZDJC00640)

摘要:

密钥更新是对抗密钥泄露的有效方法。现有加密去重系统大多基于消息锁加密实现,拥有相同数据的多个用户共享同一加密密钥,某一用户更新密钥时其他数据所有者需同步该更新,这将引起较大的计算和通信开销。针对这一问题,提出了一种基于AONT和NTRU的密钥更新方案,设计了一个AONT的变体以解决多用户密钥更新时的同步问题,引入了一种基于NTRU的代理重加密方案以降低密钥更新过程中的系统通信开销和客户端计算开销。效率分析与实验结果表明,所提方案与现有方案相比具有更高的加解密效率,显著降低了密钥更新过程中的时间开销。

关键词: 云存储, 加密去重, 密钥更新, AONT, NTRU

Abstract:

Rekeying is a good way to protect against key exposure.Most of the existing encrypted deduplication systems are implemented based on message-locked-encryption, in which multiple users with the identical data share the same encryption key.When a user updates keys, that update must be followed by all other data owners, which will incur large computational and communicational overheads.To solve this problem, an AONT-and-NTRU-based rekeying scheme was proposed, a variant of AONT was designed to solve the synchronization problem of multi-user rekeying, and a proxy re-encryption algorithm based on NTRU was introduced to reduce the communicational overhead for the system and computational overhead for clients during rekeying.The efficiency analysis and experimental results show that the proposed scheme has better encryption and decryption efficiency than existing schemes and the time cost of rekeying is significantly reduced.

Key words: cloud storage, encrypted deduplication, rekeying, AONT, NTRU

中图分类号: 

No Suggested Reading articles found!