首页 | 官方网站   微博 | 高级检索  
     

全生命周期的云外包数据安全审计协议
引用本文:柳玉东,王绪安,涂广升,王涵. 全生命周期的云外包数据安全审计协议[J]. 计算机应用, 2019, 39(7): 1954-1958. DOI: 10.11772/j.issn.1001-9081.2018122438
作者姓名:柳玉东  王绪安  涂广升  王涵
作者单位:武警工程大学研究生大队,西安710086;网络与信息安全武警部队重点实验室(武警工程大学),西安710086;网络与信息安全武警部队重点实验室(武警工程大学),西安,710086
基金项目:国家自然科学基金资助项目(61772550,U1636114,61572521);国家密码发展基金资助项目(MMJJ20170112);国家重点研发计划资助项目(2017YFB0802000);陕西省自然科学基础研究计划项目(2018JM6028)。
摘    要:海量数据的产生给用户带来了极大的存储和计算负担,云服务器的出现很好地解决了这一问题,但数据外包给用户带来便利的同时,也引起了一些的安全问题。针对数据在外包过程中的安全性问题,结合经典的字符串相等检测协议和基于等级的默克尔哈希树(RMHT)算法,设计并实现了一种理论更简化、效率更高的全生命周期的云外包数据安全审计协议。该协议不仅可以保证外包存储数据的完整性,用户可以定期对数据的完整性进行审计;而且可以保证数据的安全迁移;此外,还可以防止恶意的云服务器保留迁移数据的副本,更好地保护用户的隐私。安全性分析和效率分析显示,该协议足够安全并较为高效,外包数据在整个生命周期的安全性将得到较好的保护。

关 键 词:云存储  外包数据  全生命周期  可证明安全  审计协议
收稿时间:2018-12-10
修稿时间:2019-02-25

Cloud outsourcing data secure auditing protocol throughout whole lifecycle
LIU Yudong,WANG Xu'an,TU Guangsheng,WANG Han. Cloud outsourcing data secure auditing protocol throughout whole lifecycle[J]. Journal of Computer Applications, 2019, 39(7): 1954-1958. DOI: 10.11772/j.issn.1001-9081.2018122438
Authors:LIU Yudong  WANG Xu'an  TU Guangsheng  WANG Han
Affiliation:1. Graduate Team, Engineering University of PAP, Xi'an Shaanxi 710086, China;
2. Key Laboratory of Network and Information Security under the PAP(Engineering University of PAP), Xi'an Shaanxi 710086, China
Abstract:The generation of massive data brings a huge storage and computational burden to users, and the emergence of cloud servers solves this problem well. However, data outsourcing brings convenience to users while it also causes some security problems. In order to solve the security problem of data in the outsourcing process, a simpler and more efficient cloud outsourcing data security auditing protocol throughout whole lifecycle was designed and implemented, which was combined with classical distributed string equality checking protocol and Rank-based Merkel Hash Tree (RMHT) algorithm. The protocol not only can protect the integrity of outsourced storage data, allowing users periodically audit its integrity, but also can guarantee the secure transfer of cloud data. Besides, the copy of transfer data can avoid being reserved by malicious cloud servers, protecting users' privacy well. The analyses of security and efficiency show that the proposed protocol is sufficiently secure and comparatively efficient, the security of outsourcing data throughout its whole lifecycle will be protected well.
Keywords:cloud storage   outsourcing data   whole lifecycle   provable security   auditing protocol
本文献已被 万方数据 等数据库收录!
点击此处可从《计算机应用》浏览原始摘要信息
点击此处可从《计算机应用》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司    京ICP备09084417号-23

京公网安备 11010802026262号