代理重新加密
计算机科学
计算机网络
云计算
方案(数学)
代理(统计)
加密
广播加密
数据共享
配对
计算机安全
公钥密码术
操作系统
数学
量子力学
医学
超导电性
机器学习
物理
数学分析
病理
替代医学
作者
Binhan Li,Lunzhi Deng,Yiming Mou,Na Wang,Yanli Chen,Siwei Li
标识
DOI:10.1109/jiot.2025.3593909
摘要
In Cloud-Assisted IoT (CAIoT), the large amounts of data generated by devices and sensors need to be shared and stored efficiently and securely. Broadcast proxy re-encryption (BPRE) technology ensures data privacy and enables efficient sharing. A significant issue with existing BPRE schemes is that the re-encryption permissions of the cloud server are uncontrolled, potentially leading to re-encryption operations without the consent of the data owner, and increasing the risk of data leakage. Additionally, most conditional proxy re-encryption (CPRE) schemes rely on computationally intensive bilinear pairing operations, making them unsuitable for resource-constrained IoT devices. To address this, this paper proposes a new certificateless conditional broadcast proxy re-encryption scheme, where the data owner sets conversion conditions when generating the original ciphertext and re-encryption keys, ensuring that only ciphertext meeting the conditions can being converted, thus preventing the cloud platform from abusing re-encryption permissions. Security analysis shows that the proposed scheme can resist chosen ciphertext attacks and collusion attacks in the random oracle model. Performance evaluation shows that the proposed scheme avoids bilinear pairing and hash-to-point operations, reducing the computational cost for the data owner. This improves computational efficiency, making it more suitable for CAIoT scenarios.
科研通智能强力驱动
Strongly Powered by AbleSci AI