DocumentCode
2397345
Title
Authorized Private Keyword Search over Encrypted Data in Cloud Computing
Author
Li, Ming ; Yu, Shucheng ; Cao, Ning ; Lou, Wenjing
fYear
2011
fDate
20-24 June 2011
Firstpage
383
Lastpage
392
Abstract
In cloud computing, clients usually outsource their data to the cloud storage servers to reduce the management costs. While those data may contain sensitive personal information, the cloud servers cannot be fully trusted in protecting them. Encryption is a promising way to protect the confidentiality of the outsourced data, but it also introduces much difficulty to performing effective searches over encrypted information. Most existing works do not support efficient searches with complex query conditions, and care needs to be taken when using them because of the potential privacy leakages about the data owners to the data users or the cloud server. In this paper, using on line Personal Health Record (PHR) as a case study, we first show the necessity of search capability authorization that reduces the privacy exposure resulting from the search results, and establish a scalable framework for Authorized Private Keyword Search (APKS) over encrypted cloud data. We then propose two novel solutions for APKS based on a recent cryptographic primitive, Hierarchical Predicate Encryption (HPE). Our solutions enable efficient multi-dimensional keyword searches with range query, allow delegation and revocation of search capabilities. Moreover, we enhance the query privacy which hides users´ query keywords against the server. We implement our scheme on a modern workstation, and experimental results demonstrate its suitability for practical usage.
Keywords
authorisation; cloud computing; cryptography; data privacy; medical information systems; query processing; APKS; HPE; PHR; authorized private keyword search; cloud computing; cloud storage server; cryptography; data confidentiality; encrypted data; hierarchical predicate encryption; multidimensional keyword search; online personal health record; privacy leakages; query privacy; range query; search capability authorization; sensitive personal information protection; Authorization; Cloud computing; Encryption; Indexes; Servers; Cloud computing; data outsourcing; data privacy; encrypted data; personal health records; searchable encryption;
fLanguage
English
Publisher
ieee
Conference_Titel
Distributed Computing Systems (ICDCS), 2011 31st International Conference on
Conference_Location
Minneapolis, MN
ISSN
1063-6927
Print_ISBN
978-1-61284-384-1
Electronic_ISBN
1063-6927
Type
conf
DOI
10.1109/ICDCS.2011.55
Filename
5961719
Link To Document