...
首页> 外文期刊>IEEE Transactions on Knowledge and Data Engineering >Secure Data Deduplication with Dynamic Ownership Management in Cloud Storage
【24h】

Secure Data Deduplication with Dynamic Ownership Management in Cloud Storage

机译:通过云存储中的动态所有权管理实现安全的重复数据删除

获取原文
获取原文并翻译 | 示例
           

摘要

In cloud storage services, deduplication technology is commonly used to reduce the space and bandwidth requirements of services by eliminating redundant data and storing only a single copy of them. Deduplication is most effective when multiple users outsource the same data to the cloud storage, but it raises issues relating to security and ownership. Proof-of-ownership schemes allow any owner of the same data to prove to the cloud storage server that he owns the data in a robust way. However, many users are likely to encrypt their data before outsourcing them to the cloud storage to preserve privacy, but this hampers deduplication because of the randomization property of encryption. Recently, several deduplication schemes have been proposed to solve this problem by allowing each owner to share the same encryption key for the same data. However, most of the schemes suffer from security flaws, since they do not consider the dynamic changes in the ownership of outsourced data that occur frequently in a practical cloud storage service. In this paper, we propose a novel server-side deduplication scheme for encrypted data. It allows the cloud server to control access to outsourced data even when the ownership changes dynamically by exploiting randomized convergent encryption and secure ownership group key distribution. This prevents data leakage not only to revoked users even though they previously owned that data, but also to an honest-but-curious cloud storage server. In addition, the proposed scheme guarantees data integrity against any tag inconsistency attack. Thus, security is enhanced in the proposed scheme. The efficiency analysis results demonstrate that the proposed scheme is almost as efficient as the previous schemes, while the additional computational overhead is negligible.
机译:在云存储服务中,重复数据删除技术通常用于通过消除冗余数据并仅存储它们的单个副本来减少服务的空间和带宽需求。当多个用户将同一数据外包给云存储时,重复数据删除是最有效的方法,但它会带来与安全性和所有权有关的问题。所有权证明方案允许相同数据的任何所有者以健壮的方式向云存储服务器证明其拥有数据。但是,许多用户可能在将数据外包给云存储之前先对其数据进行加密以保护隐私,但是由于加密的随机性,这会妨碍重复数据删除。最近,已经提出了几种重复数据删除方案来解决这个问题,方法是允许每个所有者为同一数据共享同一加密密钥。但是,大多数方案都存在安全缺陷,因为它们没有考虑在实际的云存储服务中经常发生的外包数据所有权的动态变化。在本文中,我们提出了一种用于加密数据的新型服务器端重复数据删除方案。即使所有权通过使用随机收敛的加密和安全的所有权组密钥分配而动态变化,它也允许云服务器控制对外包数据的访问。这不仅可以防止数据泄漏到被撤消的用户(即使他们以前拥有该数据),也可以泄漏到诚实但好奇的云存储服务器。另外,所提出的方案保证了针对任何标签不一致攻击的数据完整性。因此,在所提出的方案中增强了安全性。效率分析结果表明,提出的方案几乎与以前的方案一样有效,而额外的计算开销却可以忽略不计。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号