摘要
现有的云存储访问控制方案只能根据用户属性的不同发送不同的消息,因而消息利用率不高。针对这一缺陷,首先设计了一个基于ElGamal的可截取签名方案,然后基于该可截取签名方案结合属性加密体制提出了一种新的云存储访问控制方案。新方案在实现数据加密的同时,提供了细粒度的访问控制,将符合属性的子消息发送给相应的用户,提高了消息的利用率,具有更强的应用性。
Existing access control schemes in cloud storage can only send different messages according to users' attributes, which leads to low utilization rate. In order to overcome this shortcoming, firstly, we design a content extraction signature scheme based on ElGamal; secondly, we propose a new access control scheme in cloud storage based on content extraction signature and attribute encryption system. The proposed scheme combines access control with attribute encryption and realizes fine-grained access control at the same time. The scheme can send sub-messages to corresponding users depending on users' attributes; it improves the utilization of the message and has better applicability.
出处
《计算机工程与科学》
CSCD
北大核心
2015年第2期238-244,共7页
Computer Engineering & Science
基金
国家自然科学基金资助项目(61163038
61262057)
甘肃省自然科学基金资助项目(1308RJYA039)
兰州市科技计划项目(2013-4-22)
甘肃省高等学校科研项目(2013A-014)
西北师范大学青年教师科研能力提升计划项目(NWNU-LKQN-12-32)
西北师范大学青年教师基金资助项目(NWNU-LKQN-13-12)
关键词
云存储
访问控制
可截取签名
属性加密
离散对数问题
cloud storage
access control
content extraction signature
attribute encryption
discrete logarithm problem