发明名称 METHOD AND SYSTEM FOR AT LEAST PARTIALLY UPDATING DATA ENCRYPTED WITH AN ALL-OR-NOTHING ENCRYPTION SCHEME
摘要 The present invention relates to a method for at least partially updating data encrypted with an all-or-nothing encryption scheme stored on one or more servers, comprising the steps of: a) Dividing the data comprising a first number of m plaintext blocks into a second number N of equal sized chunks, wherein the second number is based on the number of servers on which said data is to be stored, such that each chunk comprises m/N blocks of the plaintext blocks, b) Encrypting each of the chunks using an All-Or-Nothing Encryption scheme with an encryption key, wherein an additional randomness per chunk is embedded into the All-Or-Nothing Encryption scheme, and outputting a plurality of ciphertext blocks for each chunk, c) Storing the encrypted chunks on the N servers such that the i-th ciphertext block of each encrypted chunk is stored on the i-th server, and wherein a result of a predetermined function performed on said randomness for all encrypted chunks is stored with each encrypted chunk, d) Determining one or more parts of one or more chunks which need to be updated if any e) Reverting said function by accessing all the chunks to acquire the randomness of said determined one or more chunks, f) Decrypting said determined chunks based on the result of step e), g) Updating the decrypted chunks, h) Re-encrypting the updated chunks using said All-Or-Nothing Encryption scheme, and i) Storing the re-encrypted chunks according to step c).
申请公布号 WO2016050287(A1) 申请公布日期 2016.04.07
申请号 WO2014EP70986 申请日期 2014.09.30
申请人 NEC EUROPE LTD. 发明人 KARAME, GHASSAN
分类号 H04L9/06 主分类号 H04L9/06
代理机构 代理人
主权项
地址