可验证的完全外包基于属性的签密系统,用于云计算中的物联网电子健康大数据。
Verifiable fully outsourced attribute-based signcryption system for IoT eHealth big data in cloud computing.
机构信息
School of Information and Software Engineering, University of Electronic Science and Technology of China, Chengdu, 610054, China.
Department of Mathematics and Computer Science, University of Eldoret P. O. Box 1125-30100 Eldoret, Kenya.
出版信息
Math Biosci Eng. 2019 Apr 22;16(5):3561-3594. doi: 10.3934/mbe.2019178.
The entrance of Internet of Things (IoT) technologies to healthcare industry has impacted the explosion of eHealth big data. Cloud computing is widely considered to be the promising solution to store this data because of the presence of abundant resources at a lower cost. However, the privacy and security of the IoT generated data cannot be ensured as the data is kept far from the owner's phys- ical domain. In order to resolve the underlined issues, a reassuring solution is to adopt attribute-based signcryption (ABSC) due to the desirable cryptographic properties it holds including fine-grained ac- cess control, authentication, confidentiality and data owner privacy. Nonetheless, executing expensive computation such as pairing and modular exponential operations in resource-constrained IoT device platform can be too taxing and demanding. To address the challenges stated above, we proposed in this paper, a more efficient scheme where computation power is borrowed from the cloud server to process expensive computations while leaving simple operations to local users. In order to realize this, trusted attribute authority, signcryptor and designcryptor outsources to the cloud expensive tasks for key gener- ation, signcryption and designcryption respectively. Moreover, validity and correctness of outsourced computations can be verified by employing outsourcing verification server. Security analysis, compar- isons evaluation and simulation of the proposed scheme is presented. The output demonstrates that it is efficient, secure and therefore suitable for application in resource-constrained IoT devices.
物联网 (IoT) 技术进入医疗保健行业,推动了电子健康大数据的爆发。云计算由于具有丰富的资源和较低的成本,被广泛认为是存储这些数据的有前途的解决方案。然而,由于物联网生成的数据远离所有者的物理域,因此无法保证其隐私和安全性。为了解决这些问题,采用基于属性的签密 (ABSC) 是一个令人放心的解决方案,因为它具有细粒度的访问控制、身份验证、机密性和数据所有者隐私等理想的密码学属性。然而,在资源受限的物联网设备平台上执行昂贵的计算,如配对和模幂运算,可能过于繁重和苛刻。为了解决上述挑战,我们在本文中提出了一种更有效的方案,该方案从云服务器借用计算能力来处理昂贵的计算,而将简单的操作留给本地用户。为了实现这一点,可信属性权威机构、签密者和设计密者将密钥生成、签密和设计密等昂贵任务外包给云。此外,还可以通过使用外包验证服务器来验证外包计算的有效性和正确性。我们提出了方案的安全性分析、比较评估和仿真。结果表明,该方案效率高、安全可靠,因此适用于资源受限的物联网设备。