引用本文:张明川,万千雪,刘牧华,朱军龙,吴庆涛.支持索引动态更新的高效可搜索属性加密方案.软件学报,2026,37(3):1393-1412
【打印本页】   【下载PDF全文】   查看/发表评论  【EndNote】   【RefMan】   【BibTex】
←前一篇|后一篇→ 过刊浏览    高级检索
本文已被:浏览 955次   下载 1183 本文二维码信息
码上扫一扫!
分享到: 微信 更多
支持索引动态更新的高效可搜索属性加密方案
张明川1, 万千雪1, 刘牧华2, 朱军龙1, 吴庆涛1,3
1.河南科技大学 信息工程学院, 河南 洛阳 471023;2.河南科技大学 数学与统计学院, 河南 洛阳 471023;3.龙门实验室, 河南 洛阳 471000
摘要:
基于属性的可搜索加密技术实现了多用户场景下加密数据安全且细粒度的共享, 但往往面临着加解密计算开销大、查询效率低、索引无法更新等问题. 为同时解决上述问题, 在可搜索属性加密技术的基础上提出了一个支持索引动态更新的高效检索方案. 具体而言, 通过复用相同的访问策略, 减少加密过程中因策略重复带来的计算开销, 并将大部分解密运算安全外包给云服务器, 减轻了本地设备的解密计算负担. 结合哈希表和跳表构建了一个支持多关键词检索的倒排索引结构, 使用BLS短签名技术实现了索引更新的权限验证. 形式化的安全分析证明, 该方案能够有效抵御合谋攻击、选择明文攻击、伪造更新令牌和解密私钥等多种攻击方式. 实验结果显示, 该方案兼具高效的检索和索引更新性能, 在策略重复时能有效降低加密计算开销.
关键词:  属性基加密  可搜索加密  动态索引  多关键词检索  策略复用
DOI:10.13328/j.cnki.jos.007428
分类号:TP309
基金项目:国家自然科学基金(62102134); 河南省科技计划(231111222600, 231100220600); 河南省高校科技创新团队支持计划(24IRTSTHN022)
Efficient Searchable Attribute Encryption Scheme Supporting Dynamic Index Updates
ZHANG Ming-Chuan1, WAN Qian-Xue1, LIU Mu-Hua2, ZHU Jun-Long1, WU Qing-Tao1,3
1.School of Information Engineering, Henan University of Science and Technology, Luoyang 471023, China;2.School of Mathematics and Statistics, Henan University of Science and Technology, Luoyang 471023, China;3.Longmen Laboratory, Luoyang 471000, China
Abstract:
Attribute-based searchable encryption (ABSE) enables secure and fine-grained sharing of encrypted data in multi-user environments. However, it typically encounters challenges such as high computational overhead for encryption and decryption, limited query efficiency, and the inability to update indexes dynamically. To address these limitations, this study proposes an efficient searchable scheme based on ABSE that supports dynamic index updates. The reuse of identical access policies minimizes redundant computation during encryption. Most decryption operations are securely outsourced to the cloud, thus reducing the local device’s computational load. An inverted index structure supporting multi-keyword Boolean retrieval is constructed by integrating hash tables with skip lists. BLS short signature technology is employed to verify the permissions for index updates, ensuring data owners can manage the retrieval of encrypted data. Formal security analysis confirms that the proposed scheme effectively defends against collusion attacks, chosen plaintext attacks, forged update tokens, and decryption key forgery. Experimental results demonstrate high efficiency in both retrieval and index update operations, along with a significant reduction in encryption overhead when access policy reuse occurs.
Key words:  attribute-based encryption (ABE)  searchable encryption (SE)  dynamic index  multi-keyword retrieval  policy reuse

引用本文:
【打印本页】   【下载PDF全文】   查看/发表评论  【EndNote】   【RefMan】   【BibTex】
←前一篇|后一篇→ 过刊浏览    高级检索
本文已被:浏览次   下载  
分享到: 微信 更多
摘要:
关键词:  
DOI:
分类号:
基金项目:
Abstract:
Key words: