Publishing Service

Polishing & Checking

Frontiers of Information Technology & Electronic Engineering

ISSN 2095-9184 (print), ISSN 2095-9230 (online)

MULKASE: a novel approach for key-aggregate searchable encryption for multi-owner data

Abstract: Recent attempts at key-aggregate searchable encryption (KASE) combine the advantages of searching encrypted data with support for data owners to share an aggregate searchable key with a user delegating search rights to a set of data. A user, in turn, is required to submit only one single aggregate trapdoor to the cloud to perform a keyword search across the shared set of data. However, the existing KASE methods do not support searching through data that are shared by multiple owners using a single aggregate trapdoor. Therefore, we propose a MULKASE method that allows a user to search across different data records owned by multiple users using a single trapdoor. In MULKASE, the size of the aggregate key is independent of the number of documents held by a data owner. The size of an aggregate key remains constant even though the number of outsourced ciphertexts goes beyond the predefined limit. Security analysis proves that MULKASE is secure against chosen message attacks and chosen keyword attacks. In addition, the security analysis confirms that MULKASE is secure against cross-pairing attacks and provides query privacy. Theoretical and empirical analyses show that MULKASE performs better than the existing KASE methods. We also illustrate how MULKASE can carry out federated searches.

Key words: Searchable encryption, Cloud storage, Key-aggregate encryption, Data sharing

Chinese Summary  <19> MULKASE:一种针对多个所有者数据的新型密钥聚合可搜索加密方法

摘要:最新密钥聚合可搜索加密(KASE)尝试将搜索加密数据与支持数据所有者相结合,共享一个聚合的可搜索密钥;该密钥授权用户搜索数据。相应地,用户需提交一个单一聚合陷门至云端,在共享数据集上执行关键词搜索。然而,现有KASE方法不支持使用单一聚合陷门在由多个所有者共享的数据上搜索。因此,本文提出MULKASE方法,该方法允许用户使用单一陷门在由多用户拥有的不同数据记录上搜索。在MULKASE方法中,聚合密钥尺寸不依赖于数据所有者拥有的文档数量,即使外包密文数量超出预定限值,聚合密钥尺寸维持不变。安全性分析证实MULKASE方法对所选消息攻击和关键词攻击安全,亦证实该方法对交叉配对攻击安全,且提供查询隐私。理论和实验分析表明MULKASE方法性能优于现有KASE方法。文中还演示了MULKASE方法如何执行联合搜索。

关键词组:可搜索加密;云存储;密钥聚合加密;数据共享


Share this article to: More

Go to Contents

References:

<Show All>

Open peer comments: Debate/Discuss/Question/Opinion

<1>

Please provide your name, email address and a comment





DOI:

10.1631/FITEE.1800192

CLC number:

TP309

Download Full Text:

Click Here

Downloaded:

2823

Download summary:

<Click Here> 

Downloaded:

1406

Clicked:

6023

Cited:

0

On-line Access:

2020-01-13

Received:

2018-03-28

Revision Accepted:

2018-08-05

Crosschecked:

2019-08-12

Journal of Zhejiang University-SCIENCE, 38 Zheda Road, Hangzhou 310027, China
Tel: +86-571-87952276; Fax: +86-571-87952331; E-mail: jzus@zju.edu.cn
Copyright © 2000~ Journal of Zhejiang University-SCIENCE