论文标题
有效的强大隐私保护联合关键字搜索在加密的云数据上
Efficient Strong Privacy-Preserving Conjunctive Keyword Search Over Encrypted Cloud Data
论文作者
论文摘要
可搜索的对称加密(SSE)支持对对称加密数据外包的关键字搜索。 SSE的变体动态可搜索的对称加密(DSSE)进一步启用数据更新。大多数DSSE使用连词关键字搜索主要考虑前进和向后隐私。理想情况下,服务器应仅学习涉及连词中所有关键字的结果集。但是,现有方案遭受关键字对结果模式(KPRP)泄漏,揭示了包含两个查询关键字的部分结果集。我们提出了第一个DSSE计划,以解决上述问题,以实现强大的隐私性连词关键字搜索。具体而言,我们的计划可以维护前后隐私并消除KPRP泄漏,从而提供更高的安全性。搜索复杂度缩放,数据库中存储在几种现有方案中的文档数量。但是,我们方案的复杂性与连词中最不常见的关键字的更新频率相比,该频率比整个数据库的大小小得多。此外,我们设计了一个最不常见的关键字获取协议,以减少客户之间的频繁交互。最后,我们分析了计划的安全性,并在理论上和实验上评估了其绩效。结果表明,我们的计划具有强大的隐私保护和效率。
Searchable symmetric encryption (SSE) supports keyword search over outsourced symmetrically encrypted data. Dynamic searchable symmetric encryption (DSSE), a variant of SSE, further enables data updating. Most DSSE works with conjunctive keyword search primarily consider forward and backward privacy. Ideally, the server should only learn the result sets involving all keywords in the conjunction. However, existing schemes suffer from keyword pair result pattern (KPRP) leakage, revealing the partial result sets containing two of query keywords. We propose the first DSSE scheme to address aforementioned concerns that achieves strong privacy-preserving conjunctive keyword search. Specifically, our scheme can maintain forward and backward privacy and eliminate KPRP leakage, offering a higher level of security. The search complexity scales with the number of documents stored in the database in several existing schemes. However, the complexity of our scheme scales with the update frequency of the least frequent keyword in the conjunction, which is much smaller than the size of the entire database. Besides, we devise a least frequent keyword acquisition protocol to reduce frequent interactions between clients. Finally, we analyze the security of our scheme and evaluate its performance theoretically and experimentally. The results show that our scheme has strong privacy preservation and efficiency.