现有可搜索加密方案通常索引的构建、检索效率不高,数据节点的维护不便,难以适应分布式密文检索要求.针对现有密文检索方案出现的-些问题,提出了可拆分密文倒排索引架构,改善了密文索引的并行构建性能,简化了数据增删维护过程,增强了与传动NoSQL系统的兼容性.采用检索结果集中化倒排索引方法,提高分布式密文检索系统检索效率.所提方案满足被广泛采用的选择关键词攻击下的不可区分性(IND-CKA)安全标准.结合Cassandra对多种性能进行了验证,实验数据表明,本架构对分布式、海量密文数据环境具有很好的适用性.
The existing encryption schemes were usually poor of index construction and maintenance, which was difficult to meet the retrieval requirements for distributed ciphertext. Aiming at the above shortage of existing schemes, a structure of separable ciphertext inverted index was proposed for improving the performance of parallel constructing cryptograph index, simplifying the data maintenance process, and increasing the compatibility with the traditional NoSQL system. The method of centralized inverted index was adopted to improve the retrieval efficiency of distributed retrieval system. Then, the proposed scheme was proved to meet the widely adopted IND-CKA security standard. Finally, Cassandra was com-bined to evaluate the several performance parameters, and the experimental results show proposed architecture has good applicability to the distributed and massive encrypted data environment.