首页|期刊导航|网络与信息安全学报|SI-CP-ABE:一类基于同源的密文策略属性基加密方案

SI-CP-ABE:一类基于同源的密文策略属性基加密方案OA

SI-CP-ABE:an isogeny-based ciphertext-policy attribute-based encryption scheme

中文摘要英文摘要

密文策略属性基加密(CP-ABE)是实现细粒度数据访问控制的关键密码学原语.然而,现有基于双线性映射或格困难问题的方案,普遍面临系统参数、密钥及密文尺寸较大的问题,严重制约了其在资源受限场景中的实际部署.针对上述挑战,提出了一种基于超奇异椭圆曲线同源的密文策略属性基加密(SI-CP-ABE)方案.该方案将同源理想类群作用与线性秘密共享方案结合,在后量子安全环境下实现了高效的细粒度访问控制.在安全性方面,提出了增强点交换超奇异同源计算型Diffie-Hellman假设(P+-CSSCDH)与增强点交换超奇异同源决策型Diffie-Hellman假设(P+-CSSDDH)两个新的困难假设,并基于此在选择性安全模型下严格证明了该方案满足选择明文攻击不可区分性.为进一步提升性能,在该方案的基础上设计了优化方案.此外,基于SI-CP-ABE核心代数结构,构造了一类具有认证功能的后量子Naor-Reingold型伪随机函数,丰富了后量子密码协议的构建原语.

Ciphertext-policy attribute-based encryption(CP-ABE)serves as a fundamental cryptographic primitive for fine-grained data access control.However,existing schemes,primarily based on bilinear maps or lattice hard-ness assumptions,generally suffer from large system parameters,key sizes,and ciphertext sizes,which severely re-strict their deployment in resource-constrained scenarios.To address this challenge,a novel CP-ABE scheme based on supersingular elliptic curve isogeny(SI-CP-ABE)is proposed.This scheme integrates the action of isogeny ideal class group with linear secret sharing schemes,achieving efficient fine-grained access control in a post-quantum security setting.Regarding security,two new hardness assumptions—P+-CSSCDH and P+-CSSDDH—are proposed,based on which the scheme is rigorously proven to satisfy indistinguishability under chosen plaintext at-tack in the selective security model.To further enhance performance,an optimized scheme is designed based on SI-CP-ABE.Furthermore,based on the core algebraic structure of SI-CP-ABE,a post-quantum Naor-Reingold-type pseudo-random function with authentication capability is constructed,thereby enriching the building blocks for post-quantum cryptographic protocols.

陈淅文;陈锦榕;徐铮;周子健

中国人民解放军国防科技大学理学院,湖南 长沙 410073中国人民解放军国防科技大学计算机学院,湖南 长沙 410073合肥国家实验室,安徽 合肥 230088中国人民解放军国防科技大学理学院,湖南 长沙 410073

信息技术与安全科学

同源密码密文策略属性基加密SiGamal线性秘密共享方案

isogeny-based cryptographyciphertext-policy attribute-based encryptionSiGamallinear secret shar-ing scheme

《网络与信息安全学报》 2026 (2)

65-82,18

国家自然科学基金资助项目(No.62202475,No.12501731,No.12371013)"量子通信与量子计算机"国家科技重大专项资助项目(No.2021ZD0302902) The National Natural Science Foundation of China(No.62202475,No.12501731,No.12371013),Quantum Science and Technology-National Science and Technology Major Project(No.2021ZD0302902)

10.11959/j.issn.2096-109x.AQ25251

评论