Authors:
Go Ohtake
1
;
Yuki Hironaka
1
;
Kenjiro Kai
1
;
Yosuke Endo
1
;
Goichiro Hanaoka
2
;
Hajime Watanabe
2
;
Shota Yamada
3
;
Kouhei Kasamatsu
4
;
Takashi Yamakawa
3
and
Hideki Imai
5
Affiliations:
1
Japan Broadcasting Corporation, Japan
;
2
National Institute of Advanced Industrial Science and Technology (AIST), Japan
;
3
National Institute of Advanced Industrial Science and Technology (AIST) and The University of Tokyo, Japan
;
4
National Institute of Advanced Industrial Science and Technology (AIST) and NTT Software Corporation, Japan
;
5
National Institute of Advanced Industrial Science and Technology (AIST) and Chuo University, Japan
Keyword(s):
Attribute-based Encryption, Ciphertext Policy, Wildcard.
Related
Ontology
Subjects/Areas/Topics:
Access Control
;
Applied Cryptography
;
Cryptographic Techniques and Key Management
;
Data and Application Security and Privacy
;
Data Engineering
;
Data Protection
;
Databases and Data Security
;
Information and Systems Security
;
Internet Technology
;
Security and Privacy in the Cloud
;
Security Protocols
;
Web Information Systems and Technologies
Abstract:
Many kinds of ciphertext-policy attribute-based encryption (CP-ABE) schemes have been proposed. In CPABE, the set of user attributes is associated with his/her secret key whereas a policy is associated with a ciphertext so that only users whose attributes satisfy the policy can decrypt the ciphertext. CP-ABE may be applied to a variety of services such as access control for file sharing systems and content distribution services. However, CP-ABE costs more for encryption and decryption in comparison with conventional public key encryption schemes since it can handle more flexible policies. In particular, wildcards, which mean that certain attributes are not relevant to the ciphertext policy, are not essential for a certain service. In this paper, we construct a partially wildcarded CP-ABE scheme with a lower decryption cost. In our scheme, the user’s attributes are separated into those requiring wildcards and those not requiring wildcards. Our scheme hence embodies a CP-ABE scheme wit
h a wildcard functionality and an efficient CP-ABE scheme without wildcard functionality. We compare our scheme with the conventional CP-ABE schemes and describe a content distribution service as an application of our scheme.
(More)