• 検索結果がありません。

HPKI認証の特長を考慮した在宅医療介護システムにおける患者情報の開示先制御

N/A
N/A
Protected

Academic year: 2021

シェア "HPKI認証の特長を考慮した在宅医療介護システムにおける患者情報の開示先制御"

Copied!
8
0
0

読み込み中.... (全文を見る)

全文

(1)Vol.2017-CSEC-79 No.3 2017/12/4. ৘ใॲཧֶձ‫ڀݚ‬ใࠂ IPSJ SIG Technical Report. HPKI ೝূͷಛ௕Λߟྀͨ͠ࡏ୐ҩྍհ‫ޢ‬γεςϜ ʹ͓͚Δ‫ऀױ‬৘ใͷ։ࣔઌ੍‫ޚ‬ Ҵ٢ ཅҰ࿕1,a). നੴ ળ໌2. ஛ඌ ३1. Ճ౻ ঢฏ1. ໼‫໌ོ ޱ‬1. ‫ ాؠ‬জ1. ֓ཁɿࡏ୐ҩྍհ‫ޢ‬࿈‫͚͓ʹܞ‬Δଟ৬छͷҩྍհ‫ऀࣄैޢ‬ͷؒͷ৘ใ‫ڞ‬༗ʹ ICT Λ‫͢༻׆‬Δ͜ͱͰɼνʔ ϜέΞ͕ԁ‫ͳͱ׈‬ΓɼαʔϏεͷ࣭͕޲্΍ޮ཰Խʹ‫͕ܨ‬Δ͜ͱ͕‫ظ‬଴͞Ε͍ͯΔɽ͔͠͠ɼͦͷΑ͏ͳ ৘ใγεςϜͰ͸‫ऀױ‬ͷ‫ػ‬ඍͳ‫ݸ‬ਓ৘ใΛҰ‫ݩ‬؅ཧ͢ΔɽΑͬͯɼͦΕΒ͸҉߸Խอ؅͞ΕΔ͜ͱ͕๬ ·͍͠ɽ·ͨɼอ݈ҩྍ෱ࢱ෼໺Ͱ͸ઐ༻ͷެ։‫جݤ‬൫ʢHPKIʣ͕੔උ͞Ε͍ͯΔɽͦ͜ͰɼຊߘͰ͸. HPKI ʹΑΔೝূʹΑͬͯ୲อ͞ΕΔ৘ใʹ‫͍ͯͮج‬ɼ҉߸Խ͞Εͨ‫ݸ‬ਓ৘ใͷ։ࣔઌ੍‫ޚ‬Λߦ͏ํࣜΛ 2 ͭఏҊ͢Δɽ·ͣɼ୅දతͳެ։‫͋Ͱ߸҉ݤ‬Δ RSA ҉߸ʹΑͬͯߏ੒͢ΔํࣜΛɼ࣍ʹ҉߸จϙϦγʔ ଐੑϕʔε҉߸ʢCP-ABEʣʹΑͬͯߏ੒͢ΔํࣜΛఏҊ͢Δɽ·ͨɼ͜ͷ 2 ํࣜʹ͓͚Δ҉߸Խ͓Αͼ ෮߸ॲཧ࣌ؒΛଌఆͨ͠ɽͦͷ݁ՌɼRSA ํࣜ͸มԽස౓ͷେ͖͍৘ใͷ։ࣔઌ੍‫ʹޚ‬ɼCP-ABE ํࣜ ͸มԽස౓ͷখ͘͞‫࠷ʹ࣌ٸۓ‬௿‫ݶ‬ඞཁͱͳΔ৘ใͷ։ࣔઌ੍‫ʹޚ‬ద͍ͯ͠Δ͜ͱ͕෼͔ͬͨɽ Ωʔϫʔυɿࡏ୐ҩྍհ‫ޢ‬࿈‫ܞ‬ɼ։ࣔઌ੍‫ޚ‬ɼHPKIɼ҉߸จϙϦγʔଐੑϕʔε҉߸. Information Disclosing Mechanism Using a Feature of the Healthcare PKI for Collaboration of Home Medical Care and Nursing Services Yoichiro INAYOSHI1,a) Yoshiaki SHIRAISHI2 Jun TAKEO1 Takaaki YAGUCHI1 Akira IWATA1. Shohei KATO1. Abstract: In home medical care and nursing, information sharing using ICT among medical care workers makes team care smooth and improves quality and efficiency of medical care and nursing care. However, in such a system, sensitive personal information of patients should be encrypted and stored, because it is exchanged through the internet. In addition, there is dedicated public key infrastructure (HPKI) in the health and welfare field. Therefore, we show two methods of information disclosing mechanism based on the HPKI. One is a RSA method using RSA. The other is a CP-ABE method using Ciphertext-Policy Attribute-Based Encryption. We measured processing time of encryption and decryption in those two methods. The results showed that RSA method is suitable for disclosing mechanism of information with high change frequency, and CP-ABE method is suitable for some with low change frequency. Keywords: Collaboration of Home Medical Care and Nursing, Disclosure Control, Healthcare Public Key Infrastructure, Ciphertext-Policy Attribute-Based Encryption. 1. ͸͡Ίʹ 1. 2. a). ໊‫ݹ‬԰޻‫ۀ‬େֶ Nagoya Institute of Technology, Gokiso-cho, Shouwaku, Nagoya-shi, Aichi, 466–8555, Japan ਆ‫ށ‬େֶ Kobe University, Rokkodai-cho 1–1, Nadaku, Kobe-shi, Hyogo, 657–8501, Japan inayoshi@katolab.nitech.ac.jp. c 2017 Information Processing Society of Japan . ࡏ୐ҩྍհ‫͍͓ͯʹޢ‬͸ɼҰਓͷࡏ୐‫ʹऀױ‬ର͠ɼଟ‫ػ‬ ؔଟ৬छͷҩྍհ‫͕ऀࣄैޢ‬ҰମͱͳͬͯαʔϏεΛఏ‫ڙ‬ ͢ΔνʔϜέΞ͕‫ٻ‬ΊΒΕ͍ͯΔɽ·ͨɼICT ར‫ؔʹ༻׆‬ ͢Δௐࠪ [1] Ͱ͸ɼࡏ୐ҩྍհ‫͍͓ͯʹޢ‬ҩྍհ‫ऀࣄैޢ‬. 1.

(2) Vol.2017-CSEC-79 No.3 2017/12/4. ৘ใॲཧֶձ‫ڀݚ‬ใࠂ IPSJ SIG Technical Report. ؒͷ৘ใ‫ڞ‬༗ʹ ICT Λ‫͢༻׆‬Δ͜ͱͰνʔϜέΞ͕ԁ‫׈‬ ͱͳΓɼҩྍɾհ‫ޢ‬ͷ࣭ͷ޲্΍ޮ཰Խ͕‫ظ‬଴͞ΕΔ͜ͱ. ද 1 hcRole ଐੑͱͯ͠‫ࡌه‬ՄೳͰ͋Δࢿ໊֨ [3] ࢿ໊֨ʢࠃՈࢿ֨ʣ. આ໌. ʞMedical Doctorʟ. ҩࢣ. ʞDentistʟ. ࣃՊҩࢣ. ʞPharmacistʟ. ༀࡎࢣ. ʞMedical Technologistʟ. ྟচ‫ࢣٕࠪݕ‬. ʞRadiological Technologistʟ. ਍ྍ์ࣹઢٕࢣ. ʞRegistered Nurseʟ. ‫ࢣޢ؃‬. ϝϯόʔʹ‫ݶʹີݫ‬ఆ͞Εͳ͚Ε͹ͳΒͳ͍ɽ·ͨɼࠓ‫ޙ‬. ʞPublic Health Nurseʟ. อ݈ࢣ. ΑΓଟ͘ͷ‫ݸ‬ਓ৘ใ͕αʔόʹిࢠԽอଘ͞ΕΔ͜ͱΛ૝. ʞMidwifeʟ. ॿ࢈ࢣ. ఆ͢Δͱɼ֎෦͔Βͷ߈ܸʹΑΔαʔό͔Βͷ৘ใ࿙Ӯͷ. ʞPhysical Therapistʟ. ཧֶྍ๏࢜. ‫ݥة‬ੑ͕͋Δɽ͜Εʹରͯ͠ɼ‫ݸ‬ਓ৘ใͷ҉߸Խอ؅ʹΑ. ʞOccupational Therapistʟ. ࡞‫ྍۀ‬๏࢜. Γɼ࿙Ӯ࣌ʹ௚ͪʹͦͷ಺༰͕໌Β͔ʹͳΔϦεΫΛ௿‫ݮ‬. ʞOrthoptistʟ. ࢹೳ‫܇‬࿅࢜. ʞSpeech Therapistʟ. ‫ޠݴ‬ௌ֮࢜. ʞDental Technicianʟ. ࣃՊٕ޻࢜. ʞNational Registered ʞDietitianʟ. ؅ཧӫཆ࢜. ʞCertified Social Workerʟ. ࣾձ෱ࢱ࢜. ʞCertified Care Workerʟ. հ‫ޢ‬෱ࢱ࢜. ৘ใͷվ᜵Λ๷͙ͨΊʹɼઐ༻ͷެ։‫جݤ‬൫ʢHealthcare. ʞEmergency Medical Technicianʟ. ‫໋࢜ٹٸٹ‬. Public Key Infrastructure: HPKIʣ͕੔උ͞Ε͍ͯΔɽฏ. ʞPsychiatric Social Workerʟ. ਫ਼ਆอ݈෱ࢱ࢜. ੒ 21 ೥౓ʹ͸ʮอ݈ҩྍ෱ࢱ෼໺ PKI ೝূ‫ہ‬ೝূ༻ʢਓʣ. ʞClinical Engineerʟ. ྟচ޻ֶٕ࢜. ʞMassage and Finger Pressure. ͋ΜຎϚοαʔδ. ɹ Practitionerʟ. ࢦѹࢣ. ʞAcupuncturistʟ. ͸Γࢣ. ͕ࣔ͞Ε͍ͯΔɽ ͔͠͠ɼࡏ୐ҩྍհ‫ޢ‬࿈‫ܞ‬ͷͨΊͷ৘ใ‫ڞ‬༗γεςϜͰ ͸‫ऀױ‬ͷҩྍ৘ใͱ͍͏‫ػ‬ඍͳ৘ใ [2] Λ͸͡Ίɼ‫ऀױ‬ͷ ੜ‫׆‬ঢ়‫گ‬΍Ո଒ʹؔ͢Δ৘ใͳͲͷϓϥΠόγʔੑͷߴ͍ ‫ݸ‬ਓ৘ใΛѻ͏ɽ͕ͨͬͯ͠ɼͦͷ։ࣔઌ͸έΞνʔϜͷ. ͢Δ͜ͱ͕Ͱ͖Δɽ͢ͳΘͪɼࡏ୐ҩྍհ‫ޢ‬࿈‫ܞ‬γεςϜ ʹ͓͍ͯ͸ɼ҉߸Խอ؅͞Εͨ‫ݸ‬ਓ৘ใͷ։ࣔઌ੍‫͕ޚ‬ඞ ཁͱͳΔɽ ·ͨɼอ݈ҩྍ෱ࢱ෼໺Ͱ͸ɼར༻ऀͷͳΓ͢·͠΍. ূ໌ॻϙϦγʯ[3] ͷࡦఆ͕ߦΘΕɼೝূ༻ͷ HPKI ূ໌ ॻͷൃߦ͕ߦ͑Δ͜ͱͱͳͬͨɽ ‫ݸ‬ਓ৘ใͷ‫ͳີݫ‬։ࣔઌ੍‫ޚ‬Λߟ͑Δ্Ͱ͸ɼ։ࣔઌͷ. ʞMoxibustion Practitionerʟ. ͖Ύ͏ࢣ. ਖ਼౰ੑΛ֬ೝ͢ΔೝূΛ߹Θͤͯߟ͑Δඞཁ͕͋Δɽ͔͠. ʞDental Hygienistʟ. ࣃՊӴੜ࢜. ͠ɼؔ࿈‫Ͱڀݚ‬͸ͦͷ఺ʹ͍ͭͯߟྀ͞Ε͍ͯͳ͍ [4]ɽͦ. ʞProsthetics & Orthcticʟ. ٛࢶ૷۩࢜. ͜ͰɼຊߘͰ͸ HPKI ʹΑΔೝূʹΑͬͯ୲อ͞ΕΔ৘ใ. ʞArtificial Limb Fitterʟ. ॊಓ੔෮ࢣ. ʹ‫͍ͯͮج‬ɼ҉߸Խ͞Εͨ‫ݸ‬ਓ৘ใͷ։ࣔઌ੍‫ޚ‬Λߦ͏ํ. ʞClinical Laboratory Technicianʟ. Ӵੜ‫ࢣٕࠪݕ‬. ࣜΛ 2 ͭఏҊ͢Δɽ·ͣɼ୅දతͳެ։‫͋Ͱ߸҉ݤ‬Δ RSA ҉߸ʹΑͬͯߏ੒͢Δํࣜͱɼ࣍ʹଐੑϕʔε҉߸ͷҰछ. ηΩϡΞʹ؅ཧ͢Δɽ·ͨɼPKG ͸ Keygen ʹ͓͍ͯϚ. Ͱ͋Δ҉߸จϙϦγʔଐੑϕʔε҉߸ʢCiphertext-Policy. ελൿີ‫ݤ‬Λ༻͍ͯϢʔβͷଐੑू߹ʹରԠͨ͠ൿີ‫ݤ‬Λ. Attribute-Based Encryption: CP-ABEʣʹΑͬͯߏ੒͢. ੜ੒͠ൃߦ͢Δɽ·ͨɼEncrypto ʹ͓͍ͯ҉߸จʹຒΊ. ΔํࣜΛఏҊ͢Δɽ·ͨɼ҉߸Խ͓Αͼ෮߸ॲཧ࣌ؒͷଌ. ࠐΉΞΫηεߏ଄͸ɼ৬छ΍ॴଐ౳ͷଐੑΛ࿦ཧࣜͷ‫Ͱܗ‬. ఆʹΑΓɼ2 ํࣜΛධՁ͢Δɽ. ද‫͞ݱ‬ΕΔɽྫ͑͹ɼ“ਓࣄ෦ and ʢ෦௕ or ՝௕ʣ” Ͱ͋. 2. ҉߸จϙϦγʔଐੑϕʔε҉߸ʢCP-ABEʣ CP-ABE ͸ Bethencourt[5] ΒʹΑͬͯఏҊ͞Ε͓ͯΓɼ ҎԼͷ 4 ͭͷΞϧΰϦζϜ͔ΒͳΔɽ. Setup ηΩϡϦςΟύϥϝʔλ λ Λೖྗͱͯ͠ɼϚελ ެ։‫ ݤ‬P K ͱϚελൿີ‫ ݤ‬M K Λग़ྗ͢Δɽ. Encrypto Ϛελެ։‫ ݤ‬P K ͱฏจ M ɼ·ͨΞΫηε. Δɽ͜ΕΛຬͨ͢ଐੑू߹ʹରԠͨ͠ൿີ‫ݤ‬ͷΈɼ҉߸จ Λ෮߸ՄೳͱͳΔɽ. 3. HPKI ʹΑΔೝূ HPKI ʹΑΔೝূͷ֓ཁΛઆ໌͢Δɽͳ͓ɼ‫ ࡏݱ‬HPKI ʹ͓͍ͯ͸ॺ໊༻ূ໌ॻϙϦγͱೝূ༻ূ໌ॻϙϦγ͕ࡦ ఆ͞Ε͍ͯΔ͕ɼ͜͜Ͱ͸୯ʹূ໌ॻͱ‫ه‬ड़ͨ͠৔߹ɼೝ. ߏ଄ P Λೖྗͱͯ͠ɼ҉߸จ CT Λग़ྗ͢Δɽ. ূ༻ূ໌ॻΛࢦ͢͜ͱͱ͢ΔɽHPKI ʹΑΔిࢠೝূͷ࢓. Keygen Ϛελൿີ‫ ݤ‬M K ͱϢʔβͷଐੑू߹ S Λೖ. ૊Έࣗମ͸ɼPKI ೝূͱಉ༷Ͱ͋Γɼೝূ༻ͷൿີ‫ެͱݤ‬. ྗͱͯ͠ɼൿີ‫ ݤ‬SK Λग़ྗ͢Δɽ. ։‫ॻ໌ূݤ‬Λ༻͍Δɽൿີ‫ʹݤ‬ΑΔॺ໊ͷ‫ʹূݕ‬ΑΓຊਓ. Decrypto Ϛελެ։‫ ݤ‬P K ͱൿີ‫ ݤ‬SK ɼ҉߸จ CT. ੑΛ֬ೝ͠ɼެ։‫ॻ໌ূݤ‬ͷ‫ʹূݕ‬ΑΓ࣮ࡏੑΛ֬ೝ͢Δ. Λೖྗͱͯ͠ɼSK ͷଐੑू߹ S ͕ CT ͷΞΫηεߏ. ͜ͱͰূ໌ॻॴ༗ऀΛೝূ͢Δɽͦͯ͠ɼγεςϜ΍Ξϓ. ଄ P Λຬͨ͢৔߹ɼฏจ M Λग़ྗ͢Δɽ. ϦέʔγϣϯͰ͸ূ໌ॻʹ‫͞ࡌه‬Εͨ৘ใʹ‫͍ͯͮج‬Ճೖ. PKG(Private Key Generater) ͱ‫ݺ‬͹ΕΔ৴པ͞Εͨ‫ؔػ‬. ऀΛࣝผ͠ɼ༩͑ΒΕͨ‫ݶݖ‬Λ֬ೝ͢Δ͜ͱͰɼ৘ใ΁ͷ. ͕ Setup ʹ͓͍ͯϚελެ։‫ͱݤ‬Ϛελൿີ‫ݤ‬ͷੜ੒͠ɼ. ΞΫηεʹର͢Δ‫ڐ‬ՄΛߦ͏ [6]ɽ. ͦͷ͏ͪϚελެ։‫ݤ‬ΛϢʔβʹ഑෍͠ɼϚελൿີ‫ݤ‬Λ. c 2017 Information Processing Society of Japan . ূ໌ॻͷ‫ج‬ຊྖҬʹ‫͞ࡌه‬ΕΔ Subject(Ճೖऀ໊) ಺ͷ. 2.

(3) Vol.2017-CSEC-79 No.3 2017/12/4. ৘ใॲཧֶձ‫ڀݚ‬ใࠂ IPSJ SIG Technical Report ද 2 ࣬‫ױ‬ɾ৬छผ৘ใൃ৴݅਺ͷׂ߹ʢ%ʣ[7] ͕Μ. ೝ஌঱. ৺࣬‫ױ‬. ഏ࣬‫ױ‬. ࠎં. ҩࢣ. 39.4. 14.5. 17.4. 13.3. 11.4. ࣃՊҩࢣ. 0.0. 5.1. 6.7. 15.6. 9.3. ༀࡎࢣ. 6.4. 0.2. 1.2. 0.0. 5.5. ‫ࢣޢ؃‬. 41.8. 18.1. 21.4. 37.8. 18.1. հ‫ࢧޢ‬ԉઐ໳һ. 5.8. 16.1. 17.4. 33.3. 26.2. ཧֶྍ๏࢜. 5.5. 4.2. 15.9. 0.0. 8.4. ࣃՊӴੜ࢜. 0.3. 3.2. 7.0. 0.0. 15.2. հ‫ޢ‬৬. 0.9. 38.6. 13.0. 0.0. 5.9. ✀ูẖ䛾 䜹䝔䝂䝷䜲䝈. ᝈ⪅y䛾 ಶே᝟ሗ. 䠄ϭ䠅䜹䝔䝂䝸ẖ 䛾^ ᬯྕ໬. 䜹䝔䝂䝸. 䠄ϯ䠅ᬯྕ໬䛥 䜜䛯ಶே᝟ ሗ͕䜹䝔䝂䝸 䜻䞊䛾᱁⣡. ᬯྕ໬῭䜏 䜹䝔䝂䝸. 䜹䝔䝂䝸. 䜹䝔䝂䝸 䜻䞊. 䠄Ϯ䠅Z^ ᬯྕ໬. ᬯྕ໬῭䜏 䜹䝔䝂䝸. ᝈ⪅᝟ሗ 䝃䞊䝞. 䜹䝔䝂䝸䜻䞊 䝃䞊䝞. 䜹䝔䝂䝸. ͙. PP ࣬‫ױ‬ PP PP ৬छ PP. 䜹䝔䝂䝸. 㛤♧チྍ䛩䜛 ་⒪௓ㆤᚑ஦⪅ 䛾බ㛤㘽. බ㛤㘽 䝃䞊䝞. ਤ 1 ‫ݸ‬ਓ৘ใͷ҉߸ԽʢRSA ํࣜʣ. γϦΞϧ൪߸ʹ͸ɼՃೖऀʹҰҙͳ൪߸Λ‫ؚ‬Ή͜ͱ͕Ͱ͖. ߸Խ͢Δɽ·ͨɼ։ࣔઌ୯Ґʹެ։‫߸҉ݤ‬ͷ‫ݤ‬Λੜ੒͠ɼ. Δɽ͜ͷ৔߹ɼ͜ͷγϦΞϧ൪߸ʹΑͬͯɼՃೖऀΛҰҙ. ͦͷ‫ʹݤ‬ΑͬͯΧςΰϦΩʔͷ഑ૹɼ؅ཧΛߦ͏͜ͱͰɼ. ʹࣝผ͢Δ͜ͱ͕Ͱ͖Δɽ. ‫ݸ‬ਓ৘ใΛΧςΰϦຖʹ։ࣔઌ੍‫ޚ‬Λߦ͏ɽ͜ΕΒͷखॱ. ·ͨɼ֦ுྖҬʹ͸ hcRole ଐੑͱ͍͏ ISO 17090 Ͱ‫ن‬. ͸ɼ‫ऀױ‬ओಋ‫ܕ‬ͷ։ࣔઌ੍‫ؔ͢ʹޚ‬Δ‫[ ڀݚ‬10] ʹ͓͚Δ҉. ఆ͞ΕΔࠃՈࢿ֨ʢද 1ʣ΍ҩྍ‫ؔػ‬ͷ؅ཧ੹೚ऀͷࢿ֨. ߸Խอ؅͞Εͨ৘ใͷ։ࣔઌ੍‫ޚ‬Λࢀߟʹ͍ͯ͠Δɽຊ‫ݚ‬. ৘ใ͕‫͞ࡌه‬ΕΔ [3]ɽ͜ͷ hcRole ଐੑʹΑΓՃೖऀͷࠃ. ‫Ͱڀ‬͸ɼ։ࣔઌ୯Ґʹੜ੒͢Δ‫͚͓ʹݤ‬Δެ։‫ʹ߸҉ݤ‬୅. Ոࢿ֨৘ใΛ֬ೝͰ͖Δ͜ͱ͸ HPKI ೝূ༻ূ໌ॻͷಛ௕. දతͰ͋Δ RSA Λར༻͢ΔํࣜͱɼCP-ABE Λར༻͢Δ. ͷͻͱͭͰ͋Δɽ. ํࣜΛఏҊ͢Δɽͳ͓ɼҎ߱ɼຊߘͰ͸͜ͷ 2 ํࣜΛͦΕ. 4. ࡏ୐ҩྍհ‫ޢ‬࿈‫͚͓ʹܞ‬Δ৘ใ‫ڞ‬༗ จ‫[ ݙ‬7] Ͱ͸ɼ‫୐ࡏʹط‬ҩྍͱհ‫ޢ‬ͷҩྍհ‫͕ऀࣄैޢ‬. ͧΕ RSA ํࣜͱ CP-ABE ํࣜͱද‫͢ه‬Δɽ. 5.2 RSA ํࣜ. ICT ʹΑΓ৘ใ‫ڞ‬༗Λ͍ͯ͠Δઌਐ஍ҬͰަΘ͞Εͨจ. RSA ํࣜͰ͸ɼ͋Β͔͡Ί։ࣔઌ୯Ґʹ RSA ެ։‫ݤ‬ϖ. ষɾ୯‫ޠ‬Λௐࠪ෼ੳ͍ͯ͠Δɽௐࠪର৅σʔλ͸ɼର৅஍. ΞΛੜ੒͢Δɽੜ੒ͨ͠ RSA ެ։‫ݤ‬ϖΞͷ͏ͪɼެ։‫ݤ‬. Ҭͷ‫ऀױ‬ຖʹνʔϜԽ͞Εͨҩྍհ‫͕ऀࣄैޢ‬ɼ177 ਓͷ. ͸ެ։‫ݤ‬αʔόͰɼൿີ‫ݤ‬͸ൿີ‫ݤ‬αʔόͰอ؅͢Δɽ. ‫ަʹࡍ࣮͍ͯͭʹऀױ‬Θ͞Εͨ 1 ೥ؒ෼ͷจষσʔλ 6342. ͜͜ͰɼRSA ެ։‫ݤ‬ϖΞΛੜ੒͢Δର৅ʹؔͯ͠ɼHPKI. ݅Ͱ͋Δɽද 2 ʹɼछྨͷ࣬‫ױ‬ʮ͕Μʯ ʮೝ஌঱ʯ ʮ৺࣬‫ױ‬ʯ. ʹΑΔೝূʹΑͬͯ୲อ͞ΕΔ৘ใͷར༻Λߟྀ͢Δͱɼ. ʮഏ࣬‫ױ‬ʯ ʮࠎંʯͷ‫ऀױ‬ผʹɼަΘ͞Εͨจষͷ૯਺ʹର. ҩྍհ‫ऀࣄैޢ‬୯Ґͷ৔߹ʹՃ͑ɼhcRole ଐੑͷར༻ʹΑ. ͢Δ֤৬छͷ৘ใൃ৴݅਺ͷׂ߹ (%) Λࣔ͢ɽʮ͕Μʯͷ. Γ৬छ୯Ґͷ৔߹͕ߟ͑ΒΕΔɽ͔͠͠ɼ্Ͱड़΂ͨΑ͏. ‫ʹऀױ‬ରͯ͠͸ɼ‫( ࢣޢ؃‬41.8%) ͱҩࢣ (39.4%) Ͱશମͷ. ʹɼࡏ୐ҩྍհ‫Ͱޢ‬͸ɼ‫ऀױ‬ͷ࣬‫ױ‬ͷछྨʹΑͬͯɼ৬छ. 81.2%Λ઎Ί͍ͯΔҰํɼ ʮഏ࣬‫ױ‬ʯͷ‫ʹऀױ‬ରͯ͠͸ɼ‫؃‬. ຖʹ‫΁ऀױ‬ͷؔΘΓํ͕ҟͳ͍ͬͯΔ͜ͱ͕໌Β͔ʹͳͬ. ‫( ࢣޢ‬37.8%) ͱհ‫ࢧޢ‬ԉઐ໳һ (33.3%) Ͱશମͷ 71.1%Λ. ͍ͯΔͨΊɼ৬छ୯Ґͷ։ࣔઌ੍‫͍͓ͯʹޚ‬͸ɼ֤ҩྍհ. ઎Ί͍ͯΔɽ͜ͷΑ͏ʹ‫ऀױ‬ͷ࣬‫ױ‬ͷछྨʹΑΓɼ৬छຖ. ‫ऀࣄैޢ‬Λ୲౰͍ͯ͠Δ‫ͱऀױ‬ඥ෇͚ɼͦͷ্Ͱ৬छ୯Ґ. ͷؔΘΓํ͸ҟͳΔ͜ͱ͕෼͔͍ͬͯΔɽ·ͨɼհ‫ࢧޢ‬ԉ. ͷ։ࣔઌ੍‫ޚ‬Λߦ͏͜ͱ͕ద੾Ͱ͋Δͱߟ͑ΒΕΔɽΑͬ. ઐ໳һʹ͍ͭͯɼ‫ݱ‬ঢ়Ͱ͸ɼhcRole ଐੑʢද 1ʣʹ‫·ؚ‬Ε. ͯɼ৬छ୯Ґʹ RSA ެ։‫ݤ‬ϖΞΛੜ੒͢Δࡍ͸ɼ‫ऀױ‬ຖ. ͍ͯͳ͍ɽ͔͠͠ɼ͜͜Ͱ෼͔ΔΑ͏ʹɼհ‫ࢧޢ‬ԉઐ໳һ. ͷ৬छ୯Ґʹੜ੒͢Δඞཁ͕͋Δɽ͕ͨͬͯ͠ɼRSA ެ։. ͸‫Ͱ͍࣍ʹࢣޢ؃‬৘ใൃ৴͍ͯ͠ΔɽΑͬͯɼຊߘͰ͸ɼ. ‫ݤ‬ϖΞΛҩྍैࣄऀ୯Ґʹੜ੒͢Δ৔߹ɼͦͷ૯਺͸ҩྍ. hcRole ଐੑʹհ‫ࢧޢ‬ԉઐ໳һΛ௥Ճߟྀ͢Δɽ. հ‫ऀࣄैޢ‬ͷ૯਺ͱͳΓɼ৬छ୯Ґʹੜ੒͢Δ৔߹ɼͦͷ. 5. ఏҊํࣜ 5.1 ֓ཁ. ૯਺͸‫ऀױ‬ͷ਺ × ‫ؔʹऀױ‬ΘΔ৬छ਺ͱͳΔɽ͜ͷ 2 ͭ ͷ৔߹ʹ͓͍ͯੜ੒͞ΕΔ RSA ެ։‫ݤ‬ϖΞͷ૯਺ʹ͍ͭ ͯɼ౷‫ܭ‬σʔλʹ‫ࢉ͖ͮج‬ग़ͨ͠ͱ͜Ζɼҩྍհ‫ऀࣄैޢ‬. ఏҊํࣜͰ͸ɼ‫ऀױ‬ͷ‫ݸ‬ਓ৘ใࣗମͷ҉߸Խ͸ɼެ։‫ݤ‬. ୯Ґʹੜ੒͢Δ৔߹ͷํ͕ͦͷ਺͕খ͍͜͞ͱ͕෼͔ͬͯ. ҉߸ʹൺ΂ॲཧ͕ߴ଎ͳ‫ڞ‬௨‫͍ߦͰ߸҉ݤ‬ɼAES Λར༻͢. ͍Δ [11]ɽΑͬͯɼ‫ݤ‬؅ཧίετͷ‫͔఺؍‬Βɼ͜͜Ͱ͸ҩ. Δɽ·ͨɼްੜ࿑ಇলʹΑΔҩྍ৘ใγεςϜʹؔ͢ΔΨ. ྍհ‫ऀࣄैޢ‬୯Ґʹ RSA ެ։‫ݤ‬ϖΞͱ ID Λੜ੒͠ɼͦ. ΠυϥΠϯ [8] ʹଇΓɼ։ࣔ͢Δ‫ݸ‬ਓ৘ใͷൣғΛ੍‫͢ޚ‬. ΕΒΛඥ෇͚ͯ։ࣔઌ੍‫ޚ‬Λߦ͏ɽҎԼʹɼ͜ͷํࣜʹ͓. ΔͨΊɼ‫ऀױ‬ͷ‫ݸ‬ਓ৘ใΛ‫ج‬ຊଐੑ΍Ո଒ɼҩྍɼհ‫[ ޢ‬9]. ͚Δ‫ݸ‬ਓ৘ใͷ҉߸Խͱ෮߸ɼ·ͨ։ࣔઌͷ௥Ճɾ࡟আʹ. ͳͲͷछผຖʹΧςΰϥΠζ͢Δɽͦͯ͠ɼΧςΰϦຖʹ. ͍ͭͯઆ໌͢Δɽ. ‫ݻ‬༗ͷΧςΰϦΩʔʢAES ‫ݤ‬ʣΛੜ੒͠ɼͦΕʹΑͬͯ҉. ‫ݸ‬ਓ৘ใͷ҉߸Խ. c 2017 Information Processing Society of Japan . 3.

(4) Vol.2017-CSEC-79 No.3 2017/12/4. ৘ใॲཧֶձ‫ڀݚ‬ใࠂ IPSJ SIG Technical Report 䠄ϭ䠅,W</䛻䜘䜚 ་⒪௓ㆤᚑ஦⪅䜢 㟁Ꮚㄆド. ,W</䜹䞊䝗. ㄆド⏝ ド᫂᭩. ,W</ㄆド 䝃䞊䝞. ㄆド⏝ ⛎ᐦ㘽. 䠄Ϯ䠅ㄆド䛥䜜䛯་⒪ ௓ㆤᚑ஦⪅䛻⣣௜䛔 䛯⛎ᐦ㘽䛾ྲྀ䜚ฟ䛧. ་⒪௓ㆤ ᚑ஦⪅㘽 䝃䞊䝞. 䠄ϭ䠅,W</䛻䜘䜚 ་⒪௓ㆤᚑ஦⪅䜢 㟁Ꮚㄆド. ་⒪௓ㆤᚑ஦⪅z䛻 ⣣௜䛡䜙䜜䛯⛎ᐦ㘽. 䜹䝔䝂䝸䜻䞊 䝃䞊䝞. 䠄3䠅ᬯྕ໬῭䜏 䛾䜹䝔䝂䝸䜻䞊 䛸ಶே᝟ሗ䛾 ྲྀ䜚ฟ䛧. 䠄4䠅䜹䝔䝂䝸 䜻䞊䛾RSA ᚟ྕ 䞉䞉䞉. ᬯྕ໬῭䜏䜹䝔䝂䝸䜻䞊. ㄆド⏝ ド᫂᭩. ,W</ㄆド 䝃䞊䝞. ་⒪௓ㆤᚑ஦⪅z. 䜹䝔䝂䝸䜻䞊. ,W</䜹䞊䝗. ་⒪௓ㆤ ᚑ஦⪅㘽 䝃䞊䝞. ་⒪௓ㆤᚑ஦⪅z䛻 ⣣௜䛡䜙䜜䛯⛎ᐦ㘽 䠄3䠅ᬯྕ໬῭䜏䛾 䜹䝔䝂䝸䜻䞊䛾ྲྀ䜚 ฟ䛧. 䜹䝔䝂䝸䜻䞊 䝃䞊䝞. ᬯྕ໬῭䜏 ಶே᝟ሗ. 䠄5䠅ಶே᝟ሗ 䛾AES ᚟ྕ. ་⒪௓ㆤᚑ஦⪅z. 䠄4䠅䜹䝔䝂䝸 䜻䞊䛾RSA ᚟ྕ. බ㛤㘽䝃䞊䝞. 㛤♧ඛ䛻㏣ຍ䛩䜛 ་⒪௓ㆤᚑ஦⪅ 䛾බ㛤㘽. 䠄5䠅RSA ᬯྕ໬ ᬯྕ໬῭䜏 䜹䝔䝂䝸䜻䞊. 䜹䝔䝂䝸䜻䞊. 䠄6䠅ᬯྕ໬䛥䜜䛯䜹䝔䝂䝸䜻䞊䛾᱁⣡. 䞉䞉䞉. ᝈ⪅᝟ሗ 䝃䞊䝞. ㄆド⏝ ⛎ᐦ㘽. 䠄Ϯ䠅ㄆド䛥䜜䛯་⒪ ௓ㆤᚑ஦⪅䛻⣣௜䛔 䛯⛎ᐦ㘽䛾ྲྀ䜚ฟ䛧. ᬯྕ໬῭䜏䜹䝔䝂䝸䜻䞊. ಶே᝟ሗ. ਤ 2 ‫ݸ‬ਓ৘ใͷ෮߸ʢRSA ํࣜʣ. ਤ 3 ։ࣔઌͷ௥ՃʢRSA ํࣜʣ. ʹΑͬͯ҉߸Խ͞Ε͍ͯΔ‫ݸ‬ਓ৘ใΛͦΕͧΕɼ. ‫ऀױ‬ͷ‫ݸ‬ਓ৘ใΛ҉߸Խ͢Δखॱ͸ਤ 1 ͷΑ͏ʹͳ. ΧςΰϦΩʔαʔόͱ‫ݸ‬ਓ৘ใαʔό͔ΒऔΓ. Δɽͳ͓ɼਤ 1 ͸ɼ͋Δ‫ ऀױ‬X ͷ‫ݸ‬ਓ৘ใͷҰͭͷΧ. ग़͢. ςΰϦ A ͷ҉߸ԽखॱΛ͍ࣔͯ͠Δɽ. ( 4 ) ൿີ‫Ͱݤ‬ΧςΰϦΩʔΛ RSA ෮߸͢Δ. ( 1 ) छผຖʹΧςΰϥΠζ͞Εͨ‫ݸ‬ਓ৘ใΛΧςΰϦ. ( 5 ) ։ࣔઌͱͯ͠௥Ճ͍ͨ͠ҩྍհ‫ऀࣄैޢ‬ͷ ID ʹ. ຖʹੜ੒ͨ͠ΧςΰϦΩʔͰ AES ҉߸Խ͢Δ. ( 2 ) ։ࣔ‫ڐ‬Մ͢Δҩྍհ‫ऀࣄैޢ‬ͷެ։‫ݤ‬Λެ։‫ݤ‬ αʔό͔ΒऔΓग़͠ɼͦͷެ։‫Ͱݤ‬ΧςΰϦΩʔ Λ RSA ҉߸Խ͢Δ. ( 3 ) ҉߸Խ͞Εͨɼ‫ݸ‬ਓ৘ใͱΧςΰϦΩʔΛͦΕͧ Εͷαʔόʹ֨ೲ͢Δ ‫ݸ‬ਓ৘ใͷ෮߸ ҩྍհ‫ ͕ऀࣄैޢ‬HPKI ʹΑΔೝূΛ‫ͯܦ‬ɼ‫ऀױ‬ͷ‫ݸ‬ ਓ৘ใΛ෮߸͢Δखॱ͸ਤ 2 ͷΑ͏ʹͳΔɽͳ͓ɼਤ. 2 ͸ɼ͋Δҩྍैࣄऀ Y ͕‫ݸ‬ਓ৘ใΛ෮߸͢ΔखॱΛ. ඥ෇͍ͨެ։‫ݤ‬Λެ։‫ݤ‬αʔό͔ΒऔΓग़͠ɼͦ ͷެ։‫Ͱݤ‬ΧςΰϦΩʔΛ RSA ҉߸Խ͢Δ. ( 6 ) ҉߸Խͨ͠ΧςΰϦΩʔΛΧςΰϦΩʔαʔόʹ ֨ೲ͢Δ ·ͨɼ‫ʹط‬։ࣔઌͱͯ͠௥Ճ͞Ε͍ͯΔҩྍհ‫ࣄैޢ‬ ऀΛ։ࣔઌ͔Β࡟আ͢Δ৔߹ʹ͸ɼͦͷ ID ʹඥ෇͍ ͨެ։‫ʹݤ‬Αͬͯ҉߸Խ͞Ε͍ͯΔΧςΰϦΩʔΛΧ ςΰϦΩʔαʔό͔Β࡟আ͢Δ͚ͩͰΑ͍.. 5.2.1 RSA ํࣜͷܽ఺ ࡂ֐࣌΍‫ऀױ‬ͷ༰ଶͷ‫ٸ‬ม࣌ͳͲʹ͸ɼීஈ͸ͦͷ‫ऀױ‬. ͍ࣔͯ͠Δɽ. ʹؔΘ͍ͬͯͳ͍έΞνʔϜ֎ͷҩྍհ‫ͯͬ͋Ͱऀࣄैޢ‬. ( 1 ) HPKI ʹΑΓҩྍհ‫ऀࣄैޢ‬Λిࢠೝূ͢Δ. ΋ɼ͍ͪૣͦ͘ͷ‫ऀױ‬ͷ৘ใΛ೺Ѳ͠࠷దͳରԠΛ͢Δඞ. ( 2 ) ҩྍհ‫ݤऀࣄैޢ‬αʔό͔Βɼೝূ͞Εͨҩྍհ. ཁ͕͋ΔɽͦͷͨΊɼ‫ऀױ‬ͷঢ়‫ʹگ‬Ԡͨ͡‫ݸ‬ਓ৘ใͷ։ࣔ. ‫ऀࣄैޢ‬ͷ ID ʹඥ෇͚ΒΕͨൿີ‫ݤ‬ΛऔΓग़͢. ઌ੍‫͕ޚ‬ॏཁͰ͋Δ [12]ɽhcRole ଐੑΛ։ࣔઌ੍‫ʹޚ‬ར. ( 3 ) औΓग़ͨ͠ൿີ‫ʹݤ‬ରԠ͢Δެ։‫ʹݤ‬Αͬͯ҉߸. ༻͢Δ͜ͱ͸ՃೖऀΛҰҙʹಛఆ͢Δඞཁ͕ͳ͍ͨΊɼ‫ۓ‬. Խ͞Ε͍ͯΔΧςΰϦΩʔͱɼͦͷΧςΰϦΩʔ. ‫͚͓ʹ࣌ٸ‬Δઐ໳ࢿ֨Λ࣋ͭՃೖऀ΁ͷ‫ݸ‬ਓ৘ใͷ։ࣔ. ʹΑͬͯ҉߸Խ͞Ε͍ͯΔ‫ݸ‬ਓ৘ใΛͦΕͧΕɼ. ‫ڐ‬Մ౳ͷར༻৔໘ʹ༗༻Ͱ͋Δ [6]ɽ͔͠͠ɼRSA ํࣜͰ. ΧςΰϦΩʔαʔόͱ‫ݸ‬ਓ৘ใαʔό͔ΒऔΓ. ͸ɼҩྍհ‫ऀࣄैޢ‬͸͋Β͔͡Ίࣗ਎ʹඥ෇͚ΒΕͨެ։. ग़͢. ‫ʹݤ‬Αͬͯ҉߸Խͨ͠৘ใ͔͠෮߸Ͱ͖ͳ͍ͨΊɼ͜ͷΑ. ( 4 ) ൿີ‫Ͱݤ‬ΧςΰϦΩʔΛ RSA ෮߸͢Δ. ͏ͳ HPKI ͷಛ௕Λ‫͔ͨ͠׆‬։ࣔઌ੍‫͍ͳ͍͖ͯͰ͕ޚ‬ɽ. ( 5 ) ΧςΰϦΩʔͰ‫ݸ‬ਓ৘ใΛ AES ෮߸͢Δ. ·ͨɼҩྍհ‫ऀࣄैޢ‬ຖʹੜ੒ͨ͠ RSA ެ։‫ݤ‬ϖΞʹ͓. ։ࣔઌͷ௥Ճɾ࡟আ ‫ऀױ‬ͷ‫ݸ‬ਓ৘ใͷ։ࣔઌͷ௥Ճͷखॱ͸ਤ 3 ͷΑ͏ʹ. ͚Δൿີ‫ݤ‬͸ηΩϡΞʹ؅ཧ͞Εͳ͚Ε͹ͳΒͳ͘ɼγε ςϜΛӡ༻্͍ͯ͘͠Ͱߟྀ͢΂͖ίετͱͳΔɽ. ͳΔɽਤ 3 ͸ɼ͋Δҩྍհ‫ ऀࣄैޢ‬Y ͕‫ݸ‬ਓ৘ใͷҰ ͭͷΧςΰϦ A ͷ։ࣔઌΛ௥Ճ͢ΔखॱΛ͍ࣔͯ͠ Δɽͳ͓ɼ։ࣔઌͷ௥Ճʹ͍ͭͯ͸ɼ‫ʹط‬։ࣔ‫ڐ‬Մ͞. 5.3 CP-ABE ํࣜ CP-ABE ํࣜͰ΋ɼ͋Β͔͡Ί֤ҩྍհ‫ ʹऀࣄैޢ‬ID. Ε͍ͯΔ΋ͷ͕ߦ͏͜ͱͱ͢Δɽ. Λੜ੒͓ͯ͘͠ɽͦͯ͠ɼΧςΰϦΩʔΛ CP-ABE Ͱ҉. ( 1 ) HPKI ʹΑΓҩྍհ‫ऀࣄैޢ‬Λిࢠೝূ͢Δ. ߸Խ͢Δɽྫ͑͹ɼ։͍ࣔͨ͠ҩྍհ‫ ͕ऀࣄैޢ‬2 ਓͱ͠ɼ. ( 2 ) ҩྍհ‫ݤऀࣄैޢ‬αʔό͔Βɼೝূ͞Εͨҩྍհ. ͦΕͧΕͷ ID ͕ 330001ɼ330054 Ͱ͋Δͱ͢Δɽͦͷ৔. ‫ऀࣄैޢ‬ͷ ID ʹඥ෇͚ΒΕͨൿີ‫ݤ‬ΛऔΓग़͢. ߹ɼ҉߸จʹຒΊࠐΉ෮߸ϙϦγΛ “(ID =330001) or (ID. ( 3 ) औΓग़ͨ͠ൿີ‫ʹݤ‬ରԠ͢Δެ։‫ʹݤ‬Αͬͯ҉߸. =330054)” ͱ͍͏Α͏ʹ ID Λ OR Ͱ݁߹͢Δ‫هͰܗ‬ड़͢. Խ͞Ε͍ͯΔΧςΰϦΩʔͱɼͦͷΧςΰϦΩʔ. Δɽ·ͨɼγεςϜ಺Ͱ‫ऀױ‬ͷ‫࣌ٸۓ‬ঢ়ଶΛԿΒ͔ͷଐੑ. c 2017 Information Processing Society of Japan . 4.

(5) Vol.2017-CSEC-79 No.3 2017/12/4. ৘ใॲཧֶձ‫ڀݚ‬ใࠂ IPSJ SIG Technical Report 䠄ϭ䠅䜹䝔䝂䝸 ẖ䛾^ᬯ ྕ໬. ✀ูẖ䛾 䜹䝔䝂䝷䜲䝈. ᝈ⪅y䛾 ಶே᝟ሗ. 䜹䝔䝂䝸. ;ŝĚсϯϯϬϬϬϭͿŽƌ͙ 䠄ϯ䠅ᬯྕ໬䛥 䜜䛯ಶே᝟ ሗ͕䜹䝔䝂䝸 䜻䞊䛾᱁⣡. ᬯྕ໬῭䜏 䜹䝔䝂䝸. 䜹䝔䝂䝸. 䜹䝔䝂䝸 䜻䞊. 䠄Ϯ䠅WͲ ᬯྕ໬. ᬯྕ໬῭䜏 䜹䝔䝂䝸䜻䞊. ᝈ⪅᝟ሗ 䝃䞊䝞. 䝬䝇䝍බ㛤㘽. ㄆド⏝ ド᫂᭩. ,W</ㄆド 䝃䞊䝞. 䠄Ϯ䠅ㄆド䛥䜜䛯་⒪ ௓ㆤᚑ஦⪅䛻ᑐ䛩䜛 ᒓᛶ䜻䞊䛾⏕ᡂ. ͙. බ㛤㘽 䝃䞊䝞. ਤ 4 ‫ݸ‬ਓ৘ใͷ҉߸ԽʢCP-ABE ํࣜʣ. ་ᖌ. DĞĚŝĐĂůͺŽĐƚŽƌ 䠄4䠅䜹䝔䝂䝸 䜻䞊䛾CPABE ᚟ྕ. ་⒪௓ㆤᚑ஦⪅z 䛾ᒓᛶ䜻䞊. ᚟ྕ䝫䝸䝅. 䜹䝔䝂䝸䜻䞊 䝃䞊䝞. ㄆド⏝ ⛎ᐦ㘽. ᒓᛶ䠖;ŝĚсϯϯϬϬϬϭͿ. W<'. 䜹䝔䝂䝸. 䜹䝔䝂䝸. ,W</䜹䞊䝗. 䠄ϭ䠅,W</䛻䜘䜚 ་⒪௓ㆤᚑ஦⪅䜢 㟁Ꮚㄆド. ᚟ྕ䝫䝸䝅. ;ŝĚсϯϯϬϬϬϭͿŽƌ͙ 䜹䝔䝂䝸䜻䞊 䝃䞊䝞. 䞉䞉䞉. 䠄3䠅ᬯྕ໬῭䜏 䛾䜹䝔䝂䝸䜻䞊 䛸ಶே᝟ሗ䛾 ྲྀ䜚ฟ䛧. ᬯྕ໬῭䜏䜹䝔䝂䝸䜻䞊. 䜹䝔䝂䝸䜻䞊. 䞉䞉䞉. ᝈ⪅᝟ሗ 䝃䞊䝞. Ͱද͢͜ͱ͕Ͱ͖ɼ͜ΕΛ emergency ͱදͨ͠ͱ͢Δɽͦ. ᬯྕ໬῭䜏 ಶே᝟ሗ. 䠄5䠅ಶே᝟ሗ 䛾AES ᚟ྕ. ಶே᝟ሗ. ਤ 5 ‫ݸ‬ਓ৘ใͷ෮߸ʢCP-ABE ํࣜʣ. ͷ৔߹ɼhcRole ଐੑΛར༻͠ɼྫ͑͹ɼ“emergency and 䠄ϭ䠅,W</䛻䜘䜚 ་⒪௓ㆤᚑ஦⪅䜢 㟁Ꮚㄆド. Medical Doctor” Λ OR ݁߹͢Δ͜ͱͰɼ։ࣔ‫ڐ‬Մ͞Εͯ ͍ͳ͍ҩࢣͰ͋ͬͯ΋ɼ‫ʹ࣌ٸۓ‬͸ҩࢣͷࠃՈࢿ֨Λ࣋ͭ. ㄆド⏝ ド᫂᭩. ,W</ㄆド 䝃䞊䝞. 䠄Ϯ䠅ㄆド䛥䜜䛯་⒪ ௓ㆤᚑ஦⪅䛻ᑐ䛩䜛 ᒓᛶ䜻䞊䛾⏕ᡂ. ΋ͷʹ͸৘ใΛ։ࣔՄೳͱ͢Δ‫༻࣌ٸۓ‬ͷ෮߸ϙϦγΛ‫ه‬ ड़͢Δ͜ͱ͕Ͱ͖Δɽ. W<'. ·ͨɼҩྍհ‫ ͕ऀࣄैޢ‬HPKI ʹΑͬͯೝূ͞Εͨ৔ ߹ɼͦͷ ID ͱূ໌ॻ಺ͷ hcRole ଐੑΛଐੑ஋ͱͯ͠ຒ Ίࠐ·Εͨൿີ‫ݤ‬Λ PKG ͕ੜ੒͢Δɽͦͷൿີ‫ʹݤ‬Αͬ ͯɼରԠ͍ͯ͠Δଐੑू߹͕ຬͨ͢෮߸ϙϦγ͕ຒΊࠐ· Ε͍ͯΔΧςΰϦΩʔΛ෮߸͢Δ͜ͱ͕Ͱ͖Δɽ·ͨɼҩ ྍհ‫͕ऀࣄैޢ‬γεςϜ͔ΒϩάΞ΢τͨ͠ࡍʹൿີ‫ݤ‬Λ ࡟আ͢Δ͜ͱͰɼൿີ‫ݤ‬Λ؅ཧ͢Δඞཁ͕ͳ͘ͳΔɽ ҎԼʹɼ͜ͷํࣜʹ͓͚Δ‫ݸ‬ਓ৘ใͷ҉߸Խͱ෮߸ɼ· ͨ։ࣔઌͷ௥Ճɾ࡟আʹ͍ͭͯઆ໌͢Δɽͳ͓ɼҎԼʹࣔ ֤͢खॱʹ͓͍ͯɼRSA ํࣜͱಉ༷Ͱ͋Δ෦෼ʹؔͯ͠. ,W</䜹䞊䝗. 䠄3䠅ᬯྕ໬῭䜏䛾 䜹䝔䝂䝸䜻䞊䛾ྲྀ 䜚ฟ䛧 䜹䝔䝂䝸䜻䞊 䝃䞊䝞. ᚟ྕ䝫䝸䝅. ;ŝĚсϯϯϬϬϬϭͿ. ㄆド⏝ ⛎ᐦ㘽. ་⒪௓ㆤᚑ஦⪅z. ᒓᛶ䠖;ŝĚсϯϯϬϬϬϭͿ. DĞĚŝĐĂůͺŽĐƚŽƌ. ་⒪௓ㆤᚑ஦⪅z 䛾ᒓᛶ䜻䞊. 䠄4䠅䜹䝔䝂䝸 䜻䞊䛾AES ᚟ྕ. බ㛤㘽䝃䞊䝞. Whͺ<z 䠄5䠅WͲ ᬯྕ໬. ᬯྕ໬῭䜏 䜹䝔䝂䝸䜻䞊. 䜹䝔䝂䝸䜻䞊. 䠄6䠅ᬯྕ໬䛥䜜䛯䜹䝔䝂䝸䜻䞊䛾᱁⣡ ᚟ྕ䝫䝸䝅. ㏣ຍ᚟ྕ䝫䝸䝅. ;ŝĚсϯϯϬϬϬϭͿŽƌ;ŝĚсϯϯϬϬϬϮͿŽƌ ;ŝĚсϯϯϬϬϬϯͿ͙. ᚟ྕ䝫䝸䝅䞊䛾᭦᪂ ῭䜏䜹䝔䝂䝸䜻䞊. ਤ 6 ։ࣔઌͷ௥ՃʢCP-ABE ํࣜʣ. ෮߸͢Δ. ( 5 ) RSA ํࣜͱಉ༷ ։ࣔઌͷ௥Ճɼ࡟আ. ͸ “RSA ํࣜͱಉ༷” ͱ͢Δɽ. ‫ऀױ‬ͷ‫ݸ‬ਓ৘ใͷ։ࣔઌͷ௥Ճͷखॱ͸ਤ 6 ͷΑ͏ʹ. ‫ݸ‬ਓ৘ใͷ҉߸Խ. ͳΔɽਤ 6 ͸ɼ͋Δҩࢣ Z ͕‫ݸ‬ਓ৘ใͷҰͭͷΧςΰ. ‫ऀױ‬ͷ‫ݸ‬ਓ৘ใΛ҉߸Խ͢Δखॱ͸ਤ 4 ͷΑ͏ʹͳ. Ϧ A ͷ։ࣔઌΛ௥Ճ͢ΔखॱΛ͍ࣔͯ͠Δɽͳ͓ɼ։. Δɽͳ͓ɼਤ 4 ͸ɼ͋Δ‫ ऀױ‬X ͷ‫ݸ‬ਓ৘ใͷҰͭͷΧ. ࣔઌͷ௥Ճʹ͍ͭͯ͸ɼ‫ʹط‬։ࣔ‫ڐ‬Մ͞Ε͍ͯΔ΋ͷ. ςΰϦ A ͷ҉߸ԽखॱΛ͍ࣔͯ͠Δɽ. ͕ߦ͏͜ͱͱ͢Δɽ. ( 1 ) RSA ํࣜͱಉ༷. ( 1 ) RSA ํࣜͱಉ༷. ( 2 ) Ϛελެ։‫ݤ‬Λެ։‫ݤ‬αʔό͔ΒऔΓग़͠ɼ։. ( 2 ) PKG ͕ೝূ͞Εͨҩྍհ‫ऀࣄैޢ‬ͷ ID ͱূ໌. ࣔઌ‫ڐ‬Մ͢Δҩྍհ‫ऀࣄैޢ‬ͷ ID Λ OR ݁߹͠. ॻ಺ͷ hcRole ଐੑʹରԠͨ͠ൿີ‫ݤ‬Λੜ੒͢Δ. ͨ෮߸ϙϦγͰΧςΰϦΩʔΛ CP-ABE ҉߸Խ. ( 3 ) RSA ํࣜͱಉ༷. ͢Δ. ( 4 )ʢ̎ʣͰੜ੒ͨ͠ൿີ‫Ͱݤ‬ΧςΰϦΩʔΛ CP-ABE. ( 3 ) RSA ํࣜͱಉ༷ ‫ݸ‬ਓ৘ใͷ෮߸. ෮߸͢Δ. ( 5 ) Ϛελެ։‫ݤ‬Λެ։‫ݤ‬αʔό͔ΒऔΓग़͠ɼ։ࣔ. ҩྍհ‫ ͕ऀࣄैޢ‬HPKI ʹΑΔೝূΛ‫ͯܦ‬ɼ‫ऀױ‬ͷ‫ݸ‬. ઌͱͯ͠௥Ճ͍ͨ͠ҩྍհ‫ऀࣄैޢ‬ͷ ID Λ OR. ਓ৘ใΛ෮߸͢Δखॱ͸ਤ 5 ͷΑ͏ʹͳΔɽͳ͓ɼਤ. ݁߹ʹ௥Ճͯ͠෮߸ϙϦγΛߋ৽͠ɼΧςΰϦ. 5 ͸ɼ͋Δҩࢣ Z ͕‫ݸ‬ਓ৘ใΛ෮߸͢ΔखॱΛࣔͯ͠. ΩʔΛ CP-ABE ҉߸Խ͢Δ. ͍Δɽ. ( 6 ) RSA ํࣜͱಉ༷. ( 1 ) RSA ํࣜͱಉ༷. ·ͨɼ‫ʹط‬։ࣔ‫ڐ‬Մ͞Ε͍ͯΔҩྍհ‫ऀࣄैޢ‬Λ։ࣔ. ( 2 ) PKG ͕ೝূ͞Εͨҩྍհ‫ऀࣄैޢ‬ͷ ID ͱূ໌. ઌ͔Β࡟আ͢Δ৔߹͸ɼ ʢ̑ʣʹ͓͍ͯɼͦͷҩྍհ‫ޢ‬. ॻ಺ͷ hcRole ଐੑʹରԠͨ͠ൿີ‫ݤ‬Λੜ੒͢Δ. ैࣄऀͷ ID ͷ OR ݁߹Λ࡟আͯ͠෮߸ϙϦγΛߋ৽. ( 3 ) RSA ํࣜͱಉ༷. ͠ɼΧςΰϦΩʔΛ CP-ABE ҉߸Խ͢Δɽ. ( 4 )ʢ̎ʣͰੜ੒ͨ͠ൿີ‫Ͱݤ‬ΧςΰϦΩʔΛ CP-ABE. c 2017 Information Processing Society of Japan . 5.

(6) Vol.2017-CSEC-79 No.3 2017/12/4. ৘ใॲཧֶձ‫ڀݚ‬ใࠂ IPSJ SIG Technical Report ද 3 ඪ४తͳ‫ڞ‬༗৘ใ [9]. ‫ऀױ‬ଐੑ. WͲ᪉ᘧ. த߲. খ߲. ໨਺. ໨਺. େ. த. খ. 13. 32. ɹ0ɹ. ɹ0ɹ. ɹ 32 ɹ. ॅ‫ډ‬ɾՈ଒. 6. 23. ɹ0ɹ. ɹ0ɹ. ɹ 23 ɹ. ҩྍ. 16. 59. ɹ0ɹ. ɹ 29 ɹ. ɹ 30 ɹ. հ‫ޢ‬ɾੜ‫׆‬. 9. 71. ɹ0ɹ. ɹ 71 ɹ. ɹ0ɹ. ਍ྍɾέΞ. 8. 51. 22. ɹ 29 ɹ. ɹ0ɹ. Z^᪉ᘧ. Ϭ͘ϭϱ. มԽස౓ຖͷখ߲໨਺. ฎ⌮᫬㛫䠄⛊䠅. େ߲໨໊. Ϭ͘ϭϮϱ Ϭ͘ϭ Ϭ͘Ϭϳϱ Ϭ͘Ϭϱ Ϭ͘ϬϮϱ Ϭ Ϭ. ϱ. ϭϬ. ϭϱ. ϮϬ. 㛤♧チྍ䛩䜛ேᩘ䠄WͲ䛻䛚䛡䜛KZ⤖ྜ䛾ᒓᛶᩘ 䛚䜘䜃Z^ 䛻䛚䛡䜛ฎ⌮ᅇᩘ䠅. 6. RSA ํࣜͱ CP-ABE ํࣜͷॲཧ࣌ؒͷ ଌఆ. ਤ 7 1 ΧςΰϦ҉߸Խॲཧ࣌ؒ WͲ᪉ᘧ. ఏҊํࣜͰ͸ɼҰൠతͳ৘ใ‫ڞ‬༗γεςϜʹཁ͢Δॲཧ ཧ͕࣌ؒ‫ڐ‬༰ൣғ಺Ͱ͋Δ͔Ͳ͏͔Λ֬ೝ͢Δҝʹ֤ํࣜ ʹ͓͚Δ‫ݸ‬ਓ৘ใͷ҉߸Խͱ෮߸ͷखॱʹཁ͢Δॲཧͷ࣌ ؒΛଌఆͨ͠ɽ͜ΕΒͷॲཧ͸ɼΫϥΠΞϯτͷ୅ΘΓʹ ԋࢉαʔό͕࣮ߦ͢Δ͜ͱͱ͠ɼଌఆʹ͸ɼOS ͕ Ubuntu. ฎ⌮᫬㛫䠄⛊䠅. ʹՃ͑ɼ҉߸Խ΍෮߸ͷॲཧΛཁ͢ΔɽΑͬͯɼͦΕΒͷॲ. Z^᪉ᘧ. Ϭ͘ϬϮ Ϭ͘Ϭϭϱ Ϭ͘Ϭϭ Ϭ͘ϬϬϱ Ϭ. Ϭ. 14.04.5 LTS(64bit)ɼCPU ͕ Intel®Core™i7-6950X CPU. ϱ. ϭϬ. ϭϱ. ϮϬ. 㛤♧チྍ䛩䜛ேᩘ䠄WͲ䛻䛚䛡䜛KZ⤖ྜ䛾ᒓᛶᩘ䠅. @ 3.00GHzɼϝϞϦ͕ 64GB ͷαʔόΛར༻ͨ͠ɽ·ͨɼ. ਤ 8 1 ΧςΰϦ෮߸ॲཧ࣌ؒ. ֤ଌఆ͸ 100 ճࢼߦͷฏ‫ۉ‬஋Λͱ͍ͬͯΔɽ. CP-ABE ͷॲཧଌఆʹ͸ɼBethencourt[5] Β͕։ൃͨ͠ C ‫ޠݴ‬ͷΦʔϓϯιʔεͷϥΠϒϥϦ Ciphertext-Policy. ͜ͱ͕෼͔Δɽ ଌఆʹࡍͯ͠͸ɼখ߲໨Λ·ͱΊͨத߲໨ΛఏҊख๏ʹ. Attribute-Based Encryption Λར༻͢Δɽ͜ͷϥΠϒϥϦ. ͓͚Δ 1 ΧςΰϦͱͨ͠ɽ·ͨɼ1 ΧςΰϦΛ࠷େ 512 จ. ͸ɼ(k, nʣᮢ஋ൿີ෼ࢄ๏ʹΑͬͯ CP-ABE ʹ͓͚Δ෮. ࣈͱ‫ੵݟ‬΋Γɼଌఆʹ͓͚Δ҉߸Խର৅ϑΝΠϧ͸ 1 KB. ߸ϙϦγͷ࿦ཧԋࢉΛ࣮‫͍ͯ͠ݱ‬Δɽଐੑ਺Λ n ͱͨ͠. ͷςΩετϑΝΠϧͱͨ͠ɽ͜ͷͱ͖ɼAES ʹΑΔ҉߸Խ. ৔߹ɼൿີ৘ใΛ n ‫ʹݸ‬෼ࢄ͠ɼͦΕΒΛ֤ଐੑʹରԠ෇. ͓Αͼ෮߸ॲཧ࣌ؒ͸ RSA ͓Αͼ CP-ABE ʹൺ΂े෼খ. ͚ͨ‫߸҉Ͱݤ‬Խ͢Δɽ͜ΕΒͷଐੑͷ AND ݁߹Λߦ͏৔. ͘͞ɼແࢹ͢Δ͜ͱ͕Ͱ͖Δɽ. ߹ɼ෮߸ʹඞཁͳ෼ࢄ৘ใͷ਺ k = n ͱͳΓɼOR ݁߹Λ. ෮߸ϙϦγʹ‫ه‬ड़͢Δ OR ݁߹ͷଐੑ਺ΛมԽͤͯ͞ଌ. ߦ͏৔߹ɼk = 1 ͱͳΔɽ·ͨɼ͜ͷϥΠϒϥϦͰϑΝΠ. ఆΛߦͬͨɽ҉߸Խॲཧʹؔͯ͠͸ɼCP-ABE ํࣜʹ͓͍. ϧΛ҉߸Խ͢Δࡍ͸ɼϑΝΠϧࣗମ͸ AES (‫ݤ‬௕ 128bitɼ. ͯɼ͜ͷଐੑ਺ = ։ࣔ‫ڐ‬Մ͢Δҩྍհ‫ऀࣄैޢ‬ͷ਺ͱͳ. CBC Ϟʔυ) Ͱ҉߸Խ͠ɼAES ‫ݤ‬Λ CP-ABE Ͱ҉߸Խ͠. Γɼ·ͨɼ͜ͷ਺͸ RSA ํࣜʹ͓͚Δ RSA ҉߸Խॲཧͷ. ͍ͯΔ͕ɼ͜Εʹ͸ɼΦʔϓϯιʔεϥΠϒϥϦ OpenSSL. ‫܁‬Γฦ͠ճ਺ͱͳΔͨΊɼ2 ํࣜͷॲཧ࣌ؒΛಉҰ 2 ࣍‫ݩ‬. ͷ AES ҉߸Խؔ਺Λར༻͍ͯ͠Δɽ·ͨɼCP-ABE Ͱར. άϥϑʹද͢͜ͱ͕ՄೳͰ͋Δɽͦͷ݁ՌΛਤ 7 ʹࣔ͢ɽ. ༻͍ͯ͠ΔϖΞϦϯάԋࢉϥΠϒϥϦ಺Ͱ͸ɼRSA ʢ‫ݤ‬௕. ݁Ռͱͯ͠͸ɼ։ࣔઌਓ਺͕େ͖͘ͳΔ͜ͱͰɼCP-ABE. 2048bitʣ ͱಉ౳ͷ҉߸‫ͳͱ౓ڧ‬ΔύϥϝʔλΛઃఆͯ͠. ํ͓ࣜΑͼ RSA ํࣜͱ΋ʹ҉߸Խճ਺͕େ͖͘ͳΔͨΊɼ. ͍Δɽ. ॲཧ࣌ؒ͸େ͖͘ͳΔ͕ɼͦͷ܏͖͸ RSA ํࣜʹൺ΂ɼ. ΑͬͯɼRSA ͷॲཧଌఆʹ͸ɼOpenSSL Λར༻ͯ͠ɼ ͜Εʹ߹ΘͤͨϋΠϒϦου‫ܕ‬ͷॲཧΛߦ͏ϓϩάϥϜΛ ࣮૷͠ɼར༻ͨ͠ɽ. CP-ABE ํ͕ࣜେ͖͘ɼͦͷࠩ͸େ͖͘ͳ͍ͬͯ݁͘Ռͱ ͳͬͨɽ ·ͨɼ෮߸ॲཧ࣌ؒͷଌఆ݁ՌΛਤ 8 ʹࣔ͢ɽRSA ํ. ·ͨɼจ‫[ ݙ‬9] Ͱ͸ɼࡏ୐ҩྍհ‫ޢ‬࿈‫͚͓ʹܞ‬Δඪ४త. ࣜʹ͓͍ͯ͸ɼ෮߸ର৅ͷ։ࣔ‫ڐ‬Մਓ਺ͷӨ‫ڹ‬͸ड͚ͳ͍. ͳ‫ڞ‬༗৘ใΛ͓ࣔͯ͠ΓɼͦΕΒΛ 5 ͭͷେ߲໨ʹ෼ྨ෼. ͨΊɼ1 ΧςΰϦͷ෮߸ॲཧ࣌ؒ͸ҰఆͰ 0.004 ඵ Ͱ͋ͬ. ͚͠ɼ͞ΒʹͦΕΛத߲໨ɼখ߲໨Ͱ෼͚͍ͯΔʢද 3ʣɽ. ͨɽCP-ABE ํࣜʹ͓͍ͯ͸ɼ෮߸ର৅ͷ։ࣔ‫ڐ‬Մਓ਺͕. ·ͨɼ৘ใͷ࠷খ୯ҐͰ͋Δখ߲໨͸ɼมԽස౓͕େதখ. େ͖͘ͳΔ͜ͱͰɼ෮߸ϙϦγͷଐੑ਺͕େ͖͘ͳΔɽ͠. ͷ 3 ஈ֊ʹ෼͚ΒΕ͍ͯΔɽྫ͑͹ɼόΠλϧ৘ใͷΑ͏. ͔͠ɼఏҊํࣜʹ͓͍ͯ͸ OR ݁߹ͷΈͷ෮߸ϙϦγͱͳ. ʹ‫ऀױ‬ͷঢ়ଶʹΑͬͯසൟʹมԽ͢Δ৘ใ͸มԽස౓͕େ. ΔͨΊɼ1 ճͷ෮߸ॲཧͰ෮߸ϙϦγΛຬͨͨ͢Ίɼॲཧ. Ͱ͋ΔɽҰํͰɼࢯ໊΍ॅॴɼ͔͔Γ͚ͭҩʹؔ͢Δ৘ใ. ࣌ؒ͸ҰఆͱͳΔɽͦͷେ͖͞͸ฏ‫ Ͱۉ‬0.006 ඵ Ͱ͋Γɼ. ͳͲ͸มԽස౓͕খͱ͞Ε͍ͯΔɽมԽස౓͸ɼ‫ऀױ‬ଐੑ. RSA ෮߸ॲཧ࣌ؒͱಉ౳Ͱ͋Δ͜ͱ͕෼͔ͬͨɽ. ΍ॅ‫ډ‬ɾՈ଒͕খ͘͞ɼհ‫ޢ‬ɾੜ‫׆‬΍਍ྍɾέΞ͕େ͖͍. c 2017 Information Processing Society of Japan . ·ͨɼCP-ABE ํࣜʹ͓͍ͯ͸ɼHPKI ʹΑΔೝূ‫ޙ‬ɼ. 6.

(7) Vol.2017-CSEC-79 No.3 2017/12/4. ৘ใॲཧֶձ‫ڀݚ‬ใࠂ IPSJ SIG Technical Report. ID ͱ hcRole ଐੑʹରԠ͢ΔଐੑΩʔͷੜ੒ॲཧΛߦ͏. ͨɽ·ͨɼ2 ํࣜʹ͓͚Δ‫ݸ‬ਓ৘ใͷ҉߸Խͱ෮߸ॲཧͷ. ͕ɼͦͷλΠϛϯά͸෮߸ॲཧͱҟͳΔͨΊɼ͜͜Ͱ͸ߟ. खॱʹཁ͢Δॲཧ࣌ؒΛଌఆͨ͠ɽͦͷ݁Ռɼॲཧ࣌ؒͱ. ྀ͍ͯ͠ͳ͍ɽ·ͨɼͦͷॲཧ࣌ؒͷଌఆ݁Ռ͸ 0.219 ඵ. ͯ͠͸ɼ҉߸Խɼ෮߸ͱ΋ʹ RSA ํ͕ࣜߴ଎Ͱ͋ͬͨɽ. Ͱ͋Γɼӡ༻্͸໰୊ͳ͍ͱߟ͑ΒΕΔɽ. 7. γεςϜͷ࣮ӡ༻Λ૝ఆͨ͠ॲཧ࣌ؒʹؔ ͢Δߟ࡯. CP-ABE ํࣜʹ͓͍ͯ΋ɼӡ༻্໰୊ͳ͍଎౓Ͱ෮߸ॲཧ ͕ՄೳͰ͋Δ͜ͱ͕෼͔ͬͨɽ͔͠͠ɼ҉߸Խॲཧʹؔ͠ ͯ͸ɼ‫༻࣌ٸۓ‬ͷ෮߸ϙϦγ΍େਓ਺ͷνʔϜέΞʹΑΓɼ γεςϜͷϨεϙϯελΠϜʹ͓͍ͯɼॲཧ͕࣌ؒࢧ഑త. ࣮ࡍʹҩྍհ‫͕ऀࣄैޢ‬γεςϜΛར༻͢Δࡍɼද 3 ʹ. ʹͳΔՄೳੑ͕͋ΔɽΑͬͯɼRSA ํࣜ͸มԽස౓ͷେ. ͓͚Δେ߲໨ຖʹɼ৘ใΛ·ͱΊͯӾཡɼొ࿥͢Δɽ͜ͷ. ͖͍৘ใͷ։ࣔઌ੍‫ʹޚ‬ɼ·ͨɼCP-ABE ํࣜ͸มԽස౓. ৔߹ɼ1 ౓Ͱ࠷େ 16 ΧςΰϦʢҩྍ৘ใʣͷ҉߸Խ͓Α. ͷখ͘͞ɼ‫ʹ࣌ٸۓ‬ॏཁͳ৘ใͷ։ࣔઌ੍‫ʹޚ‬ద͍ͯ͠Δ. ͼ෮߸ॲཧ͕ඞཁͱͳΔɽ͜͜Ͱɼจ‫[ ݙ‬7] ͷௐࠪ‫ʹڀݚ‬. ͱߟ͑ΒΕΔɽ͔͠͠ɼ͜ͷ 2 ํࣜͷซ༻Ͱ͸ɼCP-ABE. ߹ΘͤɼҩࢣɼࣃՊҩࢣɼༀࡎࢣɼ‫ࢣޢ؃‬ɼհ‫ࢧޢ‬ԉઐ໳. ํࣜʹ͓͚Δ֤ҩྍհ‫ʹऀࣄैޢ‬ରԠ͢Δൿີ‫ݤ‬ͷ؅ཧͷ. һɼཧֶྍ๏࢜ɼࣃՊӴੜ࢜ɼհ‫ޢ‬෱ࢱ࢜ͷ 8 ৬छʹΑΔ. ௿‫͏͍ͱݮ‬ར఺ͷޮՌ͕ͳ͘ͳͬͯ͠·͏ɽ. έΞνʔϜΛ૝ఆ͢Δɽ·ͨɼ‫ͱࢣޢ؃‬հ‫ޢ‬෱ࢱ࢜͸ 3 ໊. Αͬͯɼࠓ‫ޙ‬ͷ՝୊͸มԽස౓͕େ͖͍৘ใʹରͯ͠ͷ. ͣͭʢͦͷଞͷ৬छ͸ 1 ໊ͣͭʣͱ͠ɼਓ਺͸‫ ܭ‬12 ໊ͱ. CP-ABE ํࣜͷద༻ํ๏ΛߟҊ͢Δ͜ͱ͕‫͛ڍ‬ΒΕΔɽ۩. ૝ఆ͢Δɽ. ମతʹ͸ɼ‫ݱ‬ঢ়͸෮߸ϙϦγͷ‫ه‬ड़ํ๏͕ҩྍհ‫ऀࣄैޢ‬. ෮߸ॲཧʹؔͯ͠͸ɼ1 ΧςΰϦ͋ͨΓͷॲཧ͕࣌ؒ. ͷ ID Λ OR ݁߹Ͱฒ΂Δ୯७ͳ΋ͷͰ͋ΔͨΊɼ෮߸ϙ. 0.006 ඵͰ͋ΔͷͰɼ16 ΧςΰϦͰ΋ 0.096 ඵఔ౓ͱߴ଎. Ϧγʹ͓͚Δଐੑ਺Λ࡟‫͢ݮ‬Δ͜ͱͰ҉߸Խॲཧͷߴ଎Խ. Ͱॲཧ͢Δ͜ͱ͕Ͱ͖Δɽ·ͨɼྫ͑͹ɼ‫ऀױ‬ͷόΠλϧ. ΛਤΔɽ·ͨɼRSA ํࣜʹ͓͚Δެ։‫ݤ‬ϖΞͷੜ੒ʹ͍ͭ. ৘ใ͸ɼଌఆͷ౓ʹσʔλ͕஝ੵ͍ͯ͘͠ɽ͜ͷΑ͏ͳ৘. ͯɼຊߘͰ͸ hcRole ଐੑΛར༻ͨ͠৬छຖͰ͸ͳ͘ɼΑ. ใ͸ɼա‫ڈ‬ͷσʔλΛෳ਺෮߸͠ɼ࣌‫ʹ্ྻܥ‬ฒ΂ͯӾཡ. Γੜ੒਺͕গͳ͍֤ҩྍैࣄऀ୯Ґͱͨ͠ɽ͔͠͠ɼ͜ͷ. ͢Δ৔߹͕͋Δɽ1 ඵఔ౓Ͱ෮߸͢Δ͜ͱ͕Ͱ͖Δσʔλ. ৔߹Ͱ΋ެ։‫ݤ‬ϖΞʹ hcRole ଐੑΛඥ෇͚͓͚ͯ͹ɼ‫ۓ‬. ͷ਺͸ 1 ÷ 0.006  166.7 ΑΓɼ166 Ͱ͋Δɽ͜Ε͸ଌఆ. ‫ʹ࣌ٸ‬͸έΞϝϯόʔ֎ͷऀͰ͋ͬͯ΋ hcRole ଐੑΛ֬. ճ਺͕िʹ 3 ճҎԼͰ͋Ε͹ɼ1 ೥ؒ෼ͷσʔλͱͳΔͨ. ೝ্ͨ͠ͰͦΕʹҰக͢Δϝϯόʔ಺ͷऀͷ‫ݤ‬Λར༻Մೳ. Ίɼӡ༻্େ͖ͳ໰୊͸ͳ͍ͱߟ͑ΒΕΔɽ. ͱ͢Ε͹ɼ‫ ʹ࣌ٸۓ‬hcRole ଐੑΛ‫͔ͨ͠׆‬։ࣔઌ੍‫ޚ‬Λ. ҉߸Խॲཧʹؔͯ͠͸ɼ։ࣔ‫ڐ‬Մਓ਺͕ 12 ໊ͷͱ͖ͷ. 1 ΧςΰϦ͋ͨΓͷॲཧ࣌ؒ͸ɼ0.096 ඵ Ͱ͋ͬͨɽΑͬ. ՄೳͰ͋ΔɽΑͬͯɼͦΕΛߟ্ྀͨ͠Ͱͷ CP-ABE ํ ࣜͱͷൺֱɾߟ࡯Λߦ͏͜ͱ΋‫͛ڍ‬ΒΕΔɽ. ͯɼ16 ΧςΰϦͰ͸ 1.536 ඵఔ౓Ͱ͋ΔͷͰɼ͜ͷέΞ νʔϜͷ૝ఆͰ͸ɼ҉߸Խॲཧʹؔͯ͠΋ӡ༻্க໋తͳ. ࢀߟจ‫ݙ‬. ໰୊͸ͳ͍ͱߟ͑ΒΕΔɽ͔͠͠ɼ҉߸Խॲཧʹؔͯ͠͸ɼ. [1]. ‫༻࣌ٸۓ‬ͷ෮߸ϙϦγΛ‫ه‬ड़͢Δ͜ͱ΍ɼΑΓେਓ਺ͷέ ΞνʔϜʹͳΔՄೳੑΛߟྀ͢ΔͱɼγεςϜͷϨεϙϯ ελΠϜʹ͓͍ͯɼCP-ABE ͷॲཧ͕࣌ؒࢧ഑తʹͳΔ. [2]. Մೳੑ͕͋ΔɽΑͬͯɼ‫ऀױ‬ͷ‫ݸ‬ਓ৘ใͷ͏ͪɼಛʹසൟ ʹγεςϜ΁ͷొ࿥Λඞཁͱ͢ΔɼมԽස౓ͷେ͖͍৘ใ. [3]. Λ CP-ABE ҉߸Խ͢Δͷ͸ద੾Ͱ͸ͳ͘ɼॲཧ͕ߴ଎ͳ. RSA ํ͕ࣜద͍ͯ͠ΔɽҰํͰɼมԽස౓͕খ͍͞৘ใ ʹؔͯ͠͸ɼ‫ج‬ຊతʹॳճొ࿥ͷࡍʹ͔͠҉߸ԽॲཧΛඞ ཁͱ͠ͳ͍ͨΊɼॲཧ͕࣌ؒେ͖͍৔߹Ͱ΋ӡ༻΁ͷӨ‫ڹ‬ ͕খ͍͞ɽՃ͑ͯɼ͜ΕΒͷ৘ใʹ͸ɼ‫ऀױ‬ଐੑ΍͔͔Γ. [4]. ͚ͭҩɼ‫ط‬පྺͳͲ͕‫·ؚ‬Εɼ‫ʹ࣌ٸۓ‬͸೺Ѳ͢΂͖৘ใ ͕ଟ͍ͨΊɼCP-ABE ํ͕ࣜద͍ͯ͠Δͱߟ͑ΒΕΔɽ. [5]. 8. ͓ΘΓʹ ຊߘͰ͸ɼࡏ୐ҩྍհ‫ޢ‬࿈‫ܞ‬γεςϜʹ͓͚Δ HPKI ʹ ΑΔೝূΛ૝ఆ͠ɼ͜ΕʹΑͬͯ୲อ͞ΕΔ৘ใʹ‫ͮج‬ ͍ͨ‫ऀױ‬ͷ‫ݸ‬ਓ৘ใͷ։ࣔઌ੍‫ޚ‬Λ RSA ҉߸ʹΑͬͯߏ ੒͢ΔํࣜͱɼCP-ABE ʹΑͬͯߏ੒͢ΔํࣜΛఏҊ͠. c 2017 Information Processing Society of Japan . [6]. ‫ࣜג‬ձࣾ৘ใ௨৴૯߹‫ॴڀݚ‬ɿ஍Ҭʹ͓͚Δ ICT ར ‫༻׆‬ͷ‫ݱ‬ঢ়ʹؔ͢Δௐࠪ‫ڀݚ‬ใࠂॻ (online)ɼೖखઌ http://www.soumu.go.jp/johotsusintokei/linkdata/h2 7 07 houkoku.pdfɼʢࢀর 2017-11-02ʣɽ ‫ ۀ ࢈ ࡁ ܦ‬লɿJIS Q 15001:2006(online)ɼೖ ख ઌ http://www.meti.go.jp/policy/it policy/privacy/jis s hian.pdfɼʢࢀর 2017-11-02ʣɽ ް ੜ ࿑ ಇ লɿอ ݈ ҩ ྍ ෱ ࢱ ෼ ໺ PKI ೝ ূ ‫ ہ‬ೝ ূ ༻ʢ ਓ ʣূ ໌ ॻ ϙ Ϧ γ 1.4 ൛ (online)ɼೖ ख ઌ http://www.mhlw.go.jp/file/05Shingikai-12601000-SeisakutoukatsukanSanjikanshitsu Shakaihoshoutantou/0000112704.pdfɼ ʢࢀর 2017-11-02ʣɽ ཱా ଠҰɼߔ‫ߤ ޱ‬ɼനੴ ળ໌΄͔ɿࡏ୐ҩྍհ‫ޢ‬৘ใ ࿈‫ܞ‬γεςϜʹ͓͚Δ࿈݁Մೳಗ໊ԽͱϋΠϒϦου҉ ߸ํࣜΛ૊Έ߹ΘͤͨηΩϡΞͳ‫ݸ‬ਓ৘ใ؅ཧख๏ɼ৴ ֶٕใɼvol.112ɼno.466ɼpp.65-70ʢ2013ʣ Bethencourt, J., Sahai, A. and Waters, B.: Ciphertextpolicy attribute-based encryption, Proc. IEEE Symposium on Security and Privacy, pp.321-334(2007). Ұൠࣾஂ๏ਓ อ‫ݥ‬ҩྍ෱ࢱ৘ใγεςϜ޻‫ۀ‬ձ ҩ ྍ γ ε ς Ϝ ෦ ձ η Ω ϡ Ϧ ς Ο ҕ һ ձɿJAHIS HPKI ి ࢠ ೝ ূ Ψ Π υ ϥ Π ϯ V1.1(online)ɼೖ ख ઌ https://www.jahis.jp/files/user/images/JAHIS HPKI V1.1.pdfɼʢࢀর 2017-11-02ʣɽ. 7.

(8) ৘ใॲཧֶձ‫ڀݚ‬ใࠂ IPSJ SIG Technical Report. Vol.2017-CSEC-79 No.3 2017/12/4. ࡏ୐ҩྍͱհ‫ޢ‬ͷଟ৬छ࿈‫ؔ͢ʹܞ‬Δௐࠪ‫ڀݚ‬ ҕ һ ձɿࡏ ୐ ҩ ྍ ͱ հ ‫ ޢ‬ͷ ࿈ ‫ ܞ‬ͷ ͨ Ί ͷ ৘ ใ γ ε ςϜͷ‫ڞ‬௨‫ج‬൫ͷ͋Γํʹؔ͢Δௐࠪ‫ڀݚ‬ใࠂ ॻ (online)ɼೖखઌ http://www.iog.u-tokyo.ac.jp/wpcontent/uploads/2015/04/01667ff78127f3599d21c25a 6906f782.pdfɼʢࢀর 2017-11-02ʣɽ [8] ް ੜ ࿑ ಇ লɿҩ ྍ ৘ ใ γ ε ς Ϝ ͷ ҆ શ ؅ ཧ ʹ ؔ ͢ Δ Ψ Π υ ϥ Π ϯ ୈ 5 ൛ (online)ɼೖ ख ઌ http://www.mhlw.go.jp/file/05-Shingikai-12601000Seisakutoukatsukan-Sanjikanshitsu Shakaihoshouta ntou/0000166260.pdfɼʢࢀর 2017-11-02ʣɽ [9] ࡏ୐ҩྍͱհ‫ޢ‬ͷ࿈‫͚͓ʹܞ‬Δ৘ใγεςϜར༻ʹؔ͢Δ ΨΠυϥΠϯ‫ݕ‬౼ҕһձɿࡏ୐ҩྍͱհ‫ޢ‬ͷ࿈‫͚͓ʹܞ‬Δ৘ ใγεςϜͷద੾ͳར༻Λଅਐ͢ΔͨΊͷΨΠυϥΠϯʢ૲ Ҋʣ(online)ɼೖखઌ http://www.iog.u-tokyo.ac.jp/wpcontent/uploads/2014/05/5435d2ad3a28ce3767b71b2 bfb764856.pdfɼʢࢀর 2017-11-02ʣɽ [10] Benaloh, J., Chase, M., and Lauter, K., et al. Patient controlled encryptionɿ ensuring privacy of electronic medical records, Proc. ACM CCSW 2009, pp.103114(2009). [11] Ҵ٢ ཅҰ࿕ɼനੴ ળ໌ɼ஛ඌ ३΄͔ɿHPKI ೝূΛ༻ ͍ͨࡏ୐ҩྍհ‫ޢ‬࿈‫ܞ‬γεςϜʹ͓͚Δ‫ݸ‬ਓ৘ใͷ։ࣔ ઌ੍‫ޚ‬ɼ৴ֶٕใɼvol.117ɼno.199ɼpp.51-56ʢ2017ʣ [12] ּҪ ‫ܟ‬հɼ઒ӽ ‫ګ‬ೋɿঢ়‫گ‬มԽΛߟྀͨ͠ར༻ऀ‫ݸ‬ਓ৘ ใͷΞΫηε੍‫ޚ‬ϞσϧͷߏஙɼCSS2009 ࿦จूɼpp.1-6 ʢ2009ʣ. [7]. c 2017 Information Processing Society of Japan . 8.

(9)

参照

関連したドキュメント

This study was performed to examine attitudes toward evacuation(wish to stay at home, access evacuation sites)among elderly community residents that were able to choose

Rumiko Kimura* College of Nursing and

Nursing care is the basis of human relationship, is supported by how to face patients and to philosophize about care as a

For the assessment of the care burden we used the Japanese Version of the Zarit Caregiver Burden Interview (J- ZBI) and compared it with the caregiver’s age, relationship, care term

It seems that the word “personality” includes both the universality of care and each care worker ’s originality with certain balance, and also shows there are unique relations

With a diverse portfolio of products and services, talented engineering staff with system expertise, a deep understanding of the quality, reliability and longevity requirements

International Association for Trauma Surgery and Intensive Care (IATSIC) World Congress on Disaster Medicine and Emergency Medicine (WADEM). International symposium on intensive

  The importance of middle leadership has been emphasized recently in early childhood education and care research. This paper aimed; 1) to determine the term “ ECEC middle leader ”