首页|医疗场景下基于属性的可净化可协同数据共享方案

医疗场景下基于属性的可净化可协同数据共享方案

扫码查看
密文策略属性基加密(Ciphertext Policy Attribute-Based Encryption,CP-ABE)方案能够实现对密文的细粒度访问控制,确保只有经过授权的用户才能访问数据,从而保证数据的安全.然而,随着云计算和物联网技术在医疗行业的广泛应用,传统的CP-ABE方案在新型医疗物联网场景下逐渐无法满足数据共享在访问策略表达和密文安全性方面的需求,如多学科会诊、患者隐私数据存储等.为此,文中提出一种基于属性的可净化可协同数据共享方案,通过密文净化机制可以有效应对恶意数据拥有者的威胁.此外,该方案可以在访问结构中指定协助结点,使得具有不同属性的多个用户可以合作进行数据访问.安全分析表明,所提方案在选择明文攻击下具有不可区分安全性;性能分析表明,本文方案与其他方案相比,计算开销更低.
Attribute-based Sanitizable and Collaborative Data Sharing Scheme in Medical Scenarios
Ciphertext policy attribute-based encryption(CP-ABE)is a mechanism that enables secure fine-grained access control of encrypted data,ensuring that only authorized users can access the data and avoiding unauthorized access and leakage in cloud environments to guarantee the safety of data.However,with the rapid development of cloud computing and IoT technology,tradi-tional CP-ABE scheme is gradually unable to meet requirements of data sharing in terms of access policy expression and cipher-text security requirements in new medical IoT applications,such as multidisciplinary consultation,patient privacy data storage.This paper proposes an attribute-based sanitizable and collaborative sharing scheme in medical scenarios,which can effectively deal with malicious data owners by sanitizing ciphertext.Additionally,this method can specify collaborative nodes in the access structure,allowing users with different attribute sets to collaborate to obtain access rights.Security analysis shows that the pro-posed scheme has indistinguishable security under chosen plaintext attack.Performance analysis shows that compared with other schemes,the proposed scheme has lower computational overhead.

Cloud computingAccess policySanitizableCollaborativeMalicious data owner

王政、王经纬、殷新春

展开 >

扬州大学信息工程学院 江苏扬州 225127

河南省网络密码技术重点实验室 郑州 450001

暨南大学网络空间安全学院 广州 510632

扬州大学广陵学院 江苏扬州 225128

展开 >

云计算 访问策略 可净化 可协同 恶意数据拥有者

河南省网络密码技术重点实验室

LNCT2022A17

2024

计算机科学
重庆西南信息有限公司(原科技部西南信息中心)

计算机科学

CSTPCD北大核心
影响因子:0.944
ISSN:1002-137X
年,卷(期):2024.51(10)