Tipo
Artigos em Revista
Tipo de Documento
Artigo Completo
Título
Boolean Searchable Symmetric Encryption with Filters on Trusted Hardware
Participantes na publicação
Bernardo Ferreira (Author)
Dep. Informática
LASIGE
Bernardo Portela (Author)
FACULDADE DE CIÊNCIAS DA UNIVERSIDADE DO PORTO
Tiago Oliveira (Author)
FACULDADE DE CIÊNCIAS DA UNIVERSIDADE DO PORTO
Guilherme Borges (Author)
FACULDADE DE CIÊNCIAS E TECNOLOGIA DA UNIVERSIDADE NOVA DE LISBOA
Henrique Joao Domingos (Author)
FACULDADE DE CIÊNCIAS E TECNOLOGIA DA UNIVERSIDADE NOVA DE LISBOA
Joao Leitao (Author)
FACULDADE DE CIÊNCIAS E TECNOLOGIA DA UNIVERSIDADE NOVA DE LISBOA
Resumo
The prevalence and availability of cloud infrastructures has made them the de facto solution for storing and archiving data, both for organizations and individual users. Nonetheless, the cloud’s wide spread adoption is still hindered by dependability and security concerns, particularly in applications with large data collections where efficient search and retrieval services are also major requirements. This leads to an increased tension between security, efficiency, and search expressiveness. In this paper we tackle this tension by proposing BISEN, a new provably-secure boolean searchable symmetric encryption scheme that improves these three complementary dimensions by exploring the design space of isolation guarantees offered by novel commodity hardware such as Intel SGX, abstracted as Isolated Execution Environments (IEEs). BISEN is the first scheme to support multiple users and enable highly expressive and arbitrarily complex boolean queries, with minimal information leakage regarding performed queries and accessed data, and verifiability regarding fully malicious adversaries. Furthermore, BISEN extends the traditional SSE model to support filter functions on search results based on generic metadata created by the users. Experimental validation and comparison with the state of art shows that BISEN provides better performance with enriched search semantics and security properties.
Data de Submissão/Pedido
2019-10-15
Data de Aceitação
2020-07-02
Data de Publicação
2020
Suporte
IEEE Transactions on Dependable and Secure Computing
Identificadores da Publicação
ISSN - 1545-5971
eISSN - 1941-0018
Editora
Institute of Electrical and Electronics Engineers (IEEE)
Número de Páginas
13
Página Inicial
1
Página Final
1
Identificadores do Documento
DOI -
https://doi.org/10.1109/tdsc.2020.3012100
URL -
http://dx.doi.org/10.1109/tdsc.2020.3012100
Identificadores de Qualidade
SCIMAGO Q1 (2019) - 1.531 - Computer Science
Download