中国邮电高校学报(英文版) ›› 2017, Vol. 24 ›› Issue (5): 23-34.doi: 10.1016/S1005-8885(17)60230-9

• security • 上一篇    下一篇

Hybrid cloud approach for block-level deduplication and searchable encryption in large universe

Liu Zhenhua, Kang Yaqian, Li Chen, Fan Yaqing   

  1. School of Mathematics and Statistics, Xidian University, Xi’an 710071, China
  • 收稿日期:2017-07-20 修回日期:2017-09-28 出版日期:2017-10-30 发布日期:2017-12-18
  • 通讯作者: Kang Yaqian, E-mail: 2393340199@qq.com E-mail:2393340199@qq.com
  • 作者简介:Kang Yaqian, E-mail: 2393340199@qq.com
  • 基金资助:
    This work was supported by the National Natural Science Foundation of China (61472470), the Science and Technology Bureau Project of Weiyang District of Xi’an City (201403), and the National Natural Science Foundation of Shaanxi Province (2014JM2-6091, 2015JQ1007).

Hybrid cloud approach for block-level deduplication and searchable encryption in large universe

Liu Zhenhua, Kang Yaqian, Li Chen, Fan Yaqing   

  1. School of Mathematics and Statistics, Xidian University, Xi’an 710071, China
  • Received:2017-07-20 Revised:2017-09-28 Online:2017-10-30 Published:2017-12-18
  • Contact: Kang Yaqian, E-mail: 2393340199@qq.com E-mail:2393340199@qq.com
  • About author:Kang Yaqian, E-mail: 2393340199@qq.com
  • Supported by:

    This work was supported by the National Natural Science Foundation of China (61472470), the Science and Technology Bureau Project of Weiyang District of Xi’an City (201403), and the National Natural Science Foundation of Shaanxi Province (2014JM2-6091, 2015JQ1007).

摘要: Ciphertext-policy attribute-based searchable encryption (CP-ABSE) can achieve fine-grained access control for data sharing and retrieval, and secure deduplication can save storage space by eliminating duplicate copies. However, there are seldom schemes supporting both searchable encryption and secure deduplication. In this paper, a large universe CP-ABSE scheme supporting secure block-level deduplication are proposed under a hybrid cloud mechanism. In the proposed scheme, after the ciphertext is inserted into bloom filter tree (BFT), private cloud can perform fine-grained deduplication efficiently by matching tags, and public cloud can search efficiently using homomorphic searchable method and keywords matching. Finally, the proposed scheme can achieve privacy under chosen distribution attacks block-level (PRV-CDA-B) secure deduplication and match-concealing (MC) searchable security. Compared with existing schemes, the proposed scheme has the advantage in supporting fine-grained access control, block-level deduplication and efficient search, simultaneously.

关键词: block-level deduplication, searchable encryption, large universe, BFT

Abstract:

Ciphertext-policy attribute-based searchable encryption (CP-ABSE) can achieve fine-grained access control for data sharing and retrieval, and secure deduplication can save storage space by eliminating duplicate copies. However, there are seldom schemes supporting both searchable encryption and secure deduplication. In this paper, a large universe CP-ABSE scheme supporting secure block-level deduplication are proposed under a hybrid cloud mechanism. In the proposed scheme, after the ciphertext is inserted into bloom filter tree (BFT), private cloud can perform fine-grained deduplication efficiently by matching tags, and public cloud can search efficiently using homomorphic searchable method and keywords matching. Finally, the proposed scheme can achieve privacy under chosen distribution attacks block-level (PRV-CDA-B) secure deduplication and match-concealing (MC) searchable security. Compared with existing schemes, the proposed scheme has the advantage in supporting fine-grained access control, block-level deduplication and efficient search, simultaneously.

Key words: block-level deduplication, searchable encryption, large universe, BFT

中图分类号: