基于STE的减少查询泄露的关系数据库加密方案
STE-based encrypted relational database scheme with reduced leakages
苏雨晨 1马昌社1
作者信息
- 1. 华南师范大学计算机学院,广东 广州 510631
- 折叠
摘要
近年提出的基于部分预计算的SQL连接索引(PpSj)方案是一种基于结构化加密技术的关系数据库加密方案,它利用部分预计算索引连接技术和过滤哈希集技术支持高效的连接查询和布尔查询.但是,该方案也存在一些缺陷,主要表现在执行布尔查询时会泄露过多的信息,以及不能支持范围查询.针对这些问题,提出一种改进的多功能加密数据库(MFEDB)方案,该方案在PpSj方案基础上,引入一种混合过滤技术,结合2种过滤方法,减少了布尔查询的信息泄露,扩展了支持的结构化查询语言(SQL)的查询子集,包括等值查询、连接查询、布尔查询和范围查询,同时平衡了服务器存储开销与客户端和服务器之间产生的通信开销.
Abstract
Recently,the concept of partially precomputed indexing for Structured query language(SQL)join(PpSj),which was predicated on structured encryption,has been introduced.This approach employed partial precomputed index join and hash filter set technology to facilitate efficient execution of join queries and Boolean queries.However,the scheme has encountered some limitations,primarily characterized by excessive information leakage during the execution of Boolean queries and an inability to support range queries.To resolve these issues,an enhanced relation database encryption scheme,termed multi-function encrypted database(MFEDB),was proposed.This scheme incorporated a hybrid filter technique derived from the PpSj scheme,integrating two filtering methods.It aimed to minimize the information leakage associated with Boolean queries,expand the subset of supported SQL queries to include equivalent queries,join queries,Boolean queries,and range queries,and balance the trade-off between the server's storage costs and the communication overhead between the client and the server.
关键词
等值查询/连接查询/范围查询/布尔查询/结构化加密Key words
equivalent query/join query/range query/Boolean query/structured encryption引用本文复制引用
出版年
2024