计算机工程与应用2017,Vol.53Issue(2):134-140,7.DOI:10.3778/j.issn.1002-8331.1504-0209
一种改进的云存储平台权限管理机制设计
Improved design of cloud-storage privilege revoking management mechanism
摘要
Abstract
In order to effectively solve overhead computing and bandwidth, high complexity problems about user access privileges revoking of cloud-storage service, this paper designs a cloud-storage Privilege Revoking Optimizing mechanism based on Dynamic Re-encryption(DR-PRO). Firstly, DR-PRO uses (k'n) threshold algorithm of secret sharing scheme, the data information is divided into a number of blocks, and it achieves re-encryption to a data block. Secondly, it succes-sively achieves user access privilege revoking by data cutting, data reconstructing, data publishing, data extracting and data revoking sub-algorithms. Theoretical analysis and experimental evaluation show that, DR-PRO ensures high data security, effectively reduces the computing and bandwidth overhead, further optimizes and improves the performance.关键词
云存储/密文访问控制/权限撤销/动态重加密/密文策略的属性加密体制(CP-ABE)/基于动态重加密的云存储权限撤销优化机制(DR-PRO)Key words
cloud-storage/ciphertext access control/privilege revoking/dynamic re-encryption/Ciphertext Policy-Attribute Based Encryption(CP-ABE)/cloud-storage Privilege Revoking Optimizing mechanism based on Dynamic Re-encryption (DR-PRO)分类
信息技术与安全科学引用本文复制引用
向思豪,兰晓红,王慧..一种改进的云存储平台权限管理机制设计[J].计算机工程与应用,2017,53(2):134-140,7.基金项目
国家自然科学基金(No.61302180,No.11401065);中国博士后基金资助项目(No.2013M540698,No.2014T70854);重庆市教委自然科学基金(No.KJ120624,No.KJ130606);重庆市自然科学基金(No.cstc2014jcyjA00003);重庆师范大学重点项目基金(No.2011XLZ05)。 ()