计算机工程与应用 ›› 2021, Vol. 57 ›› Issue (6): 81-87.DOI: 10.3778/j.issn.1002-8331.2002-0260

• 网络、通信与安全 • 上一篇    下一篇

雾计算中支持计算外包的访问控制方案

李玲,王峥,李娜   

  1. 1.太原理工大学 信息与计算机学院,山西 晋中 030600
    2.国网山西省电力公司,太原 030024
  • 出版日期:2021-03-15 发布日期:2021-03-12

Access Control Scheme Supporting Computing Outsourcing in Fog Computing

LI Ling, WANG Zheng, LI Na   

  1. 1.College of Information and Computer, Taiyuan University of Technology, Jinzhong, Shanxi 030600, China
    2.State Grid Shanxi Electric Power Company, Taiyuan 030024, China
  • Online:2021-03-15 Published:2021-03-12

摘要:

在雾计算中,基于密文策略属性加密(Ciphertext-Policy Attribute-Based Encryption,CP-ABE)技术被广泛用于解决数据的细粒度访问控制问题,然而其中的加解密计算给资源有限的物联网设备带来沉重的负担。提出一种改进的支持计算外包的多授权CP-ABE访问控制方案,将部分加解密计算从物联网设备外包给临近的雾节点,在实现数据细粒度访问控制的同时减少物联网设备的计算开销,适用于实际的物联网应用场景。从理论和实验两方面对所提方案的效率与功能进行分析,分析结果表明所提方案具有较高的系统效率和实用价值。

关键词: 雾计算, 基于密文策略属性加密(CP-ABE), 计算外包, 多授权机构

Abstract:

In fog computing, Ciphertext-Policy Attribute-Based Encryption(CP-ABE) technology is widely used to solve the problem of fine-grained access control of data. However, the encryption and decryption calculations bring a heavy burden on IoT devices with limited resources. This paper proposes an improved CP-ABE scheme based on multi-authority model, outsourcing part of the encryption and decryption computing from the IoT device to the nearby fog nodes, reducing the computing of the IoT device while achieving fine-grained access control of data. This scheme is suitable for actual IoT application scenarios. The efficiency and function of the proposed scheme are analyzed from both theoretical and experimental aspects. The analysis results show that the proposed scheme has higher system efficiency and practical value.

Key words: fog computing, Ciphertext-Policy Attribute-Based Encryption(CP-ABE), computing outsourcing, multi-authority