...
首页> 外文期刊>Journal of information security and applications >CSED: Client-Side encrypted deduplication scheme based on proofs of ownership for cloud storage
【24h】

CSED: Client-Side encrypted deduplication scheme based on proofs of ownership for cloud storage

机译:CSED:客户端加密重复数据删除方案,基于云存储的所有权证明

获取原文
获取原文并翻译 | 示例
           

摘要

As digital data are explosively generated nowadays, data management becomes a critical problem, which makes cloud storage services important and popular. In reality, the storage overhead can be reduced significantly by performing date deduplication. Among the outsourced data, some of them are very personal and sensitive, and should be prevented for any leakage. Generally, if clients conventionally encrypt the data, deduplication is lost. Message-locked encryption (MLE) is a cryptographic primitive supporting encrypted data deduplication. A secure client-side deduplication scheme can be built upon MLE to reduce both communication and computation overhead for cloud storage systems, where a client interacts with the cloud server to check the duplicate data and only the data which has not been outsourced by other clients before is required to be uploaded. However, existing client-side encrypted data deduplication schemes are confronted with brute-force attacks that can recover files falling into a known set. Furthermore, existing schemes are vulnerable to illegal content distribution attacks, where the adversary can distribute data to other users via the cloud server without detecting. In this paper, we propose a secure and efficient client-side encrypted data deduplication scheme (CSED). In CSED, a dedicated key server is introduced in generating MLE keys to resist brute-force attacks. We propose a Bloom filter-based proofs of ownership (PoW) mechanism and integrate it into CSED to resist illegal content distribution attacks. Moreover, a hierarchical storage architecture is employed to improve the I/O efficiency on the cloud server. Security analysis and performance evaluation demonstrate that CSED is secure and efficient. (C) 2019 Elsevier Ltd. All rights reserved.
机译:如今,随着数字数据的爆炸性地生成,数据管理成为一个关键问题,这使得云存储服务重要和流行。实际上,通过执行日期重复数据删除,可以显着减少存储开销。在外包数据中,其中一些是非常个人和敏感的,应该防止任何泄漏。通常,如果客户端传统上加密数据,则重复数据删除丢失。消息锁定的加密(MLE)是一个支持加密数据重复数据删除的加密原语。可以在MLE上构建安全的客户端重复数据删除方案,以减少云存储系统的通信和计算开销,其中客户端与云服务器交互以检查重复数据,并仅在其他客户端上尚未外包的数据需要上传。但是,现有的客户端加密数据重复数据删除方案面对可能会恢复到已知集中的文件的Brute-Force攻击。此外,现有方案容易受到非法内容分发攻击的影响,其中,对手可以通过云服务器将数据分发到其他用户而不检测。在本文中,我们提出了一种安全有效的客户端加密数据重复数据删除方案(CSED)。在CSED中,在生成MLE键时引入专用密钥服务器以抵制蛮力攻击。我们提出了一种盛会的基于过滤器的所有权证明(POW)机制,并将其集成到CSED中以抵制非法内容分发攻击。此外,采用分层存储体系结构来提高云服务器上的I / O效率。安全性分析和绩效评估表明CSED是安全和有效的。 (c)2019 Elsevier Ltd.保留所有权利。

著录项

获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号