Searchable encrypted (SE) indexing systems are a useful tool for utilizing cloud services to store and manage sensitive information. However, much of the work on SE systems to date has remained theoretical. In order to make them of practical use, more work is needed to develop optimal protocols and working models for them. This includes, in particular, the creation of a working update model in order to maintain an encrypted index of a dynamic document set such as an email inbox. I have created a working, real-world end-to-end SE implementation that satisfies these needs, including the first empirical performance evaluation of the dynamic SE update operation. In doing so, I show a viable path to move from the theoretical concepts described by previous researchers to a future production-worthy implementation and identify issues for follow-on investigation.
翻译:可搜索加密(SE)索引系统是利用云服务存储和管理敏感信息的有用工具。然而,迄今为止,关于SE系统的大部分工作仍停留在理论层面。为了使其具有实际应用价值,需要进一步研究开发最优协议和工作模型。这尤其包括创建有效的工作更新模型,以便维护动态文档集(如电子邮件收件箱)的加密索引。本文创建了一个满足上述需求的实际端到端SE实现,包括首次对动态SE更新操作进行经验性能评估。通过这项工作,本文展示了一条从先前研究者描述的理论概念通向未来可投入生产的高质量实现的可行路径,并指出了后续研究需解决的问题。