面向物联网应用场景的CP-ABE加密数据访问控制策略
CSTR:
作者:
作者单位:

作者简介:

通讯作者:

中图分类号:

基金项目:

河南省住房城乡建设科学技术计划项目(HNJS-2024-K34);河南省学术学位研究生核心课程项目(YJS2026XSKC03)


CP-ABE Encrypted Data Access Control Strategy for Internet of Things
Author:
Affiliation:

Fund Project:

  • 摘要
  • |
  • 图/表
  • |
  • 访问统计
  • |
  • 参考文献
  • |
  • 相似文献
  • |
  • 引证文献
  • |
  • 资源附件
  • |
  • 文章评论
    摘要:

    针对物联网环境中设备规模庞大、数据共享频繁以及访问控制复杂多变,传统访问控制与隐私保护机制难以满足实际需求的问题,提出一种面向物联网的数据权限管理与安全共享方案。该方案融合CP-ABE、Fabric与IPFS分布式存储技术,构建链上链下协同的数据共享模型,并通过引入树形访问控制结构,将访问策略与属性层次进行统一建模,实现细粒度权限控制与动态授权管理。同时,设计智能合约以支持用户属性管理、策略更新及数据访问验证。为评估方案的性能,在Fabric环境下针对不同属性规模和并发请求场景进行实验。结果表明:随着属性规模和请求数量的增加,系统响应时间呈稳定增长趋势,整体吞吐性能良好,能够有效支撑复杂访问控制需求和大规模数据访问场景。所提方案在保障数据安全与隐私的同时,提高了权限管理的灵活性与系统的可扩展性,为物联网环境中的数据安全共享提供有效支撑。

    Abstract:

    Aiming at the problem that in the Internet of Things (IoT) environment, traditional access control and privacy protection mechanisms are difficult to meet the actual needs due to the large scale of devices, frequent data sharing and complex and changeable access control, a data rights management and secure sharing scheme for IoT is proposed. The scheme integrates CP-ABE, Fabric and IPFS distributed storage technologies, and constructs a data sharing model of on-chain and off-chain cooperation. Through the introduction of tree access control structure, the access policy and attribute hierarchy are modeled uniformly, and fine-grained access control and dynamic authorization management are realized. At the same time, smart contracts are designed to support user attribute management, policy updates, and data access validation. In order to evaluate the performance of the scheme, experiments are carried out in Fabric environment for different attribute sizes and concurrent request scenarios. The results show that with the increase of attribute size and the number of requests, the system response time shows a steady growth trend, and the overall throughput performance is good, which can effectively support complex access control requirements and large-scale data access scenarios. The proposed scheme not only ensures data security and privacy, but also improves the flexibility of authority management and the scalability of the system, providing effective support for secure data sharing in the Internet of Things environment.

    参考文献
    相似文献
    引证文献
引用本文

张家华.面向物联网应用场景的CP-ABE加密数据访问控制策略[J].,2026,45(06).

复制
分享
相关视频

文章指标
  • 点击次数:
  • 下载次数:
  • HTML阅读次数:
  • 引用次数:
历史
  • 收稿日期:2024-12-08
  • 最后修改日期:2025-01-25
  • 录用日期:
  • 在线发布日期: 2026-06-26
  • 出版日期:
文章二维码